Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Chainsaw Man Watch Makima Almost Become Slender Man With This Disturbing Fan Art

    February 5, 2023

    Impressive: This is how the small island Kame House of Dragon Ball would look like in real life

    February 5, 2023

    Who has more land in the world? The face to face between the Catholic Church, Bill Gates and McDonald’s

    February 5, 2023
    Facebook Twitter Instagram
    Facebook Twitter Instagram
    Bullfrag Bullfrag
    Subscribe
    • Entertainment
      • Fashion
      • Lifestyle
        • Home Decor
    • Gaming
    • Health
    • News
      • Business
        • Marketing
      • Cryptocurrency
      • Sports
    • Recipes
    • Technology
      • Science
      • Automobiles
      • Internet
      • Software
    Bullfrag Bullfrag
    Home»News»Cryptocurrency»Raydium is attacked, loses USD 2 million

    Raydium is attacked, loses USD 2 million

    MatthewBy MatthewDecember 17, 2022No Comments4 Mins Read
    Raydium is attacked, loses USD 2 million
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The decentralized finance protocol Raydium, based on Solana, has suffered an attack, according to a statement from the developer. An initial investigation by the team revealed that the attacker gained control of the exchange owner’s account. The team said “authority” over the automated market maker and farming programs have been put on hold “for now.”

    An exploit on Raydium is being investigated that affected liquidity pools. Details to follow as more is known

    ⁰Initial understanding is owner authority was overwhelmed by attacker, but authority has been halted on AMM & farm programs for now
    Attacker accnthttps://t.co/ZnEgL1KSwz

    — Raydium (@RaydiumProtocol) December 16, 2022

    An exploit in Raydium that affected liquidity pools is being investigated. Details to follow as more is known

    Initially it is understood that the owner’s authority was overridden by the attacker, but authority has stopped at AMMs and farming programs for now.
    attacker account

    Twitter user and researcher ZachXBT reported that the attacker has transferred $2 million to Ethereum “so far”

    Then bridged to ETH (~$2m so far)https://t.co/3OYxDThv7I

    — ZachXBT (@zachxbt) December 16, 2022

    Around 2 pm UTC on December 16, a Raydium manager account posted almost 1,000 transactions on the Solana network.

    Each transaction withdrew liquidity from Raydium without depositing the corresponding LP token, thereby seizing funds from liquidity providers. Various tokens were stolen in the attack, such as US Dollar Coin (USDC), Wrapped SOL (wSOL), Raydium and others.

    Transactions from the management wallets that were used in the attack. Source: Solscan.io

    The exploit appears to have been first discovered by the Prism development team. They posted a warning at 2:01 that an attacker was draining Raydium’s liquidity without depositing or burning LP tokens. Prism has warned its users to remove their Prism and USDC tokens from the exchange immediately.

    There seems to be a wallet is draining LP Pools from Raydium liquidity pools using admin wallet as a signer without having/burning LP tokens.

    We withdrew protocol provided PRISM/USDC liquidity from Raydium

    WITHDRAW YOUR PRISM/USDC LIQUIDITY FROM RAYDIUM

    — PRISM (@prism_ag) December 16, 2022

    It seems that a wallet is draining LP Pools from Raydium liquidity pools using admin wallet as signer without holding/burning LP tokens.

    We removed the liquidity of the PRISM/USDC pair provided by the Raydium protocol

    WITHDRAW YOUR PRISM/USDC LIQUIDITY FROM RAYDIUM

    40 minutes later, the Raydium team took to Twitter to confirm that the exchange had been hacked.

    According to cryptocurrency auditing firm Ottersec, the attacker has drained the funds invoking the contract’s withdraw_pnl function, which is used by the developer to withdraw commissions. The firm did not specify if this function can be used to withdraw all the liquidity or only a small percentage of the funds.

    Nansen Portfolio, a cryptocurrency analytics firm, has confirmed that the attacker drained more than $2.2 million from the exchange.

    The wallet draining LP Pools from Raydium liquidity pools has received over $2.2M now, including $1.6M $SUN

    Track here: https://t.co/IQedsOstPE pic.twitter.com/OAQJgaq5Mc

    — Nansen Portfolio (@nansenportfolio) December 16, 2022

    As of this writing, the Raydium team is still investigating the exploit and has not yet announced whether compensation will be offered to the victims of the attack.

    Admin account hacks have been a recurring problem in the crypto space recently. On December 2, the Ankr protocol deployment key was stolen and the attacker used it to withdraw $5 million worth of BNB. At the beginning of the year, the Ronin network bridge was hacked by similar means. In this case, the attacker fled with loot of more than $600 million in cryptocurrency.

    Ankr has since reimbursed victims, and Ronin developer Axie Infinity has promised to do the same.

    Clarification: The information and/or opinions expressed in this article do not necessarily represent the views or editorial line of Cointelegraph. The information presented here should not be taken as financial advice or investment recommendation. All investment and commercial movement involve risks and it is the responsibility of each person to do their due research before making an investment decision.

    Investments in crypto assets are not regulated. They may not be suitable for retail investors and the entire amount invested may be lost. The services or products offered are not directed or accessible to investors in Spain.

    Related Posts

    A report indicates that the UK is “likely” to need a digital currency, according to the Bank of England and the Treasury

    February 5, 2023

    Genesis Committee of Unsecured Creditors Appointed

    February 5, 2023

    According to a report, an FTX-linked property in Washington DC was taken off the market

    February 5, 2023
    Add A Comment

    Leave a Reply Cancel reply

    Editors Picks

    Chainsaw Man Watch Makima Almost Become Slender Man With This Disturbing Fan Art

    February 5, 2023

    Impressive: This is how the small island Kame House of Dragon Ball would look like in real life

    February 5, 2023

    Who has more land in the world? The face to face between the Catholic Church, Bill Gates and McDonald’s

    February 5, 2023

    This is Karlos Arguiñano’s version of the traditional seasoned potatoes, with few ingredients and his infallible tricks

    February 5, 2023
    Advertisement
    Facebook Twitter Instagram
    © 2023 Bullfrag. Designed by Bullfrag.

    Type above and press Enter to search. Press Esc to cancel.