Copycat Vyper Attack Exploits BNB Smart Chain, Resulting in $73K Stolen

4:13 am
July 31, 2023
Featured image for “Copycat Vyper Attack Exploits BNB Smart Chain, Resulting in $73K Stolen”

A vulnerability in the Vyper programming language has led to copycat attacks on the BNB Smart Chain (BSC), resulting in the theft of approximately $73,000 worth of cryptocurrencies. This follows a similar exploit on the Curve Finance decentralized finance (DeFi) protocol. Blockchain security firm BlockSec estimates that losses from exploits targeting Curve Finance liquidity pools have exceeded $41 million.

The vulnerability is caused by a malfunctioning reentrancy lock on Vyper versions 0.2.15, 0.2.16, and 0.3.0, which is used by several DeFi pools. The Vyper programming language is widely used in Web3 projects and was designed for Ethereum Virtual Machines (EVMs). Other protocols using the affected Vyper versions may also be at risk.

Since the exploit was discovered, white hat and black hat hackers have been engaging in on-chain battles to disrupt each other’s exploit attempts or recover stolen funds. One white hat hacker, known as “c0ffebabe.eth,” managed to retrieve some funds and sent a message on-chain offering to return them to the affected protocols.

So far, c0ffebabe.eth has returned nearly 2,900 Ether (ETH) worth over $5 million to Curve Finance. Another transaction showed 1,000 ETH being moved to a newly-created wallet, likely the cold wallet mentioned earlier.

Summary

The BNB Smart Chain (BSC) has been targeted by copycat attacks, exploiting a vulnerability in the Vyper programming language. Approximately $73,000 worth of cryptocurrencies has been stolen. The Vyper vulnerability is similar to the exploit on the Curve Finance DeFi protocol, which has resulted in losses exceeding $41 million. White hat and black hat hackers are battling on-chain to disrupt exploit attempts or recover stolen funds. One white hat hacker has managed to retrieve and return nearly $5 million worth of Ether to Curve Finance.

FAQs

What is the BNB Smart Chain?

The BNB Smart Chain (BSC) is a blockchain platform developed by Binance, which supports the creation of smart contracts and decentralized applications.

What is Vyper?

Vyper is a programming language used for writing smart contracts on the Ethereum platform. It is designed to be more secure and auditable compared to other programming languages used for smart contracts.

What is Curve Finance?

Curve Finance is a decentralized exchange (DEX) and automated market maker (AMM) protocol built on Ethereum. It focuses on providing low-slippage trades for stablecoins.

What are white hat and black hat hackers?

White hat hackers are ethical hackers who use their skills to identify and fix vulnerabilities in computer systems. Black hat hackers, on the other hand, use their skills for malicious purposes, such as exploiting vulnerabilities and stealing data or funds.

What is a reentrancy lock?

A reentrancy lock is a security measure used in smart contracts to prevent malicious contracts from repeatedly calling back into the target contract during the execution of a function. It helps protect against reentrancy attacks where an attacker exploits the reentrant nature of a contract to manipulate its state.


Share:

More in this category ...

11:44 pm October 2, 2023

Decentralization vs. Centralization: Balancing Power and Efficiency

10:22 pm October 2, 2023

Bitfarms Reports 7.3% Increase in Monthly Bitcoin Mining Output

7:43 pm October 2, 2023

Understanding the Benefits and Limitations of Smart Contracts

6:32 pm October 2, 2023

The U.S. Chamber of Commerce Foundation and IBM Collaborate to Explore AI’s Role in Skills-Based Hiring

5:32 pm October 2, 2023

Grayscale Files Request to Convert Ethereum Trust into Ethereum ETF

3:40 pm October 2, 2023

A Beginner’s Guide to Cryptocurrency Wallets: Keeping Your Digital Assets Safe

3:30 pm October 2, 2023

Sam Bankman-Fried Faces Trial: What You Need to Know

Featured image for “Sam Bankman-Fried Faces Trial: What You Need to Know”
1:59 pm October 2, 2023

FTX Auditor Prager Metis Faces SEC Legal Action for Violating Independence Rules

12:50 pm October 2, 2023

Top 7 DeFi Crypto Tokens with Potential for 10x Returns

11:35 am October 2, 2023

Blockchain and Cryptocurrency: Exploring the Future of Digital Finance

11:24 am October 2, 2023

Will XRP Collapse? Top 3 Cryptocurrencies to Consider for Promising Futures

7:32 am October 2, 2023

From Bitcoin to Blockchain: Understanding the Power of Distributed Ledger Technology

5:27 am October 2, 2023

FTX Exploiter Moves $17 Million in ETH in a Single Day in Ongoing Funds Exodus

Featured image for “FTX Exploiter Moves $17 Million in ETH in a Single Day in Ongoing Funds Exodus”
3:13 am October 2, 2023

Building Trust and Accountability: Exploring Blockchain’s Impact on Charity Sector

11:09 pm October 1, 2023

Investing in Tokenized Precious Metals: How to Get Started

7:27 pm October 1, 2023

Microsoft Forms Nuclear Power Team to Support AI Development

Featured image for “Microsoft Forms Nuclear Power Team to Support AI Development”
7:06 pm October 1, 2023

The Role of Blockchain in Strengthening Supply Chain Security and Trust

3:01 pm October 1, 2023

The Rise of Decentralized Video Streaming: Revolutionizing the Entertainment Industry

10:54 am October 1, 2023

Blockchain for Ethical Fashion: A Pathway to Sustainable Production

9:23 am October 1, 2023

MicroStrategy Boosts Bitcoin Holdings with $147 Million Purchase Amid Market Volatility

Featured image for “MicroStrategy Boosts Bitcoin Holdings with $147 Million Purchase Amid Market Volatility”
6:51 am October 1, 2023

The Role of Blockchain in Tokenizing Renewable Energy Certificates

2:49 am October 1, 2023

Exploring the Benefits of Blockchain-based Identity Solutions for Enhanced Security

11:21 pm September 30, 2023

10-Year US Treasury Yield Returns to Its Historical 4.5% Mark

Featured image for “10-Year US Treasury Yield Returns to Its Historical 4.5% Mark”
10:48 pm September 30, 2023

Exploring the Pros and Cons of Decentralized Cloud Computing

6:47 pm September 30, 2023

Blockchain for Wine Enthusiasts: How Decentralized Ledgers Transform the Industry

2:46 pm September 30, 2023

Democratizing Sports Investments: Understanding the Potential of Tokenized Assets

1:16 pm September 30, 2023

Terraform Labs Co-Founder Dismisses Slack Chat Records as Irrelevant Evidence

Featured image for “Terraform Labs Co-Founder Dismisses Slack Chat Records as Irrelevant Evidence”
10:45 am September 30, 2023

Unveiling the Hidden Journey: How Blockchain is Ensuring Authenticity in Luxury Goods

8:17 am September 30, 2023

Transforming the Shopper’s Journey with IBM’s Sterling Intelligent Promising

6:42 am September 30, 2023

Understanding the Role of Blockchain in Decentralized Content Distribution Networks