• bitcoinBitcoin (BTC) $ 74,643.00
  • ethereumEthereum (ETH) $ 2,340.87
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 1.41
  • bnbBNB (BNB) $ 621.61
  • usd-coinUSDC (USDC) $ 0.999749
  • solanaSolana (SOL) $ 85.34
  • tronTRON (TRX) $ 0.326667
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.03
  • dogecoinDogecoin (DOGE) $ 0.096831
  • whitebitWhiteBIT Coin (WBT) $ 54.36
  • usdsUSDS (USDS) $ 0.999786
  • hyperliquidHyperliquid (HYPE) $ 45.05
  • leo-tokenLEO Token (LEO) $ 10.15
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • cardanoCardano (ADA) $ 0.250342
  • bitcoin-cashBitcoin Cash (BCH) $ 439.67
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • chainlinkChainlink (LINK) $ 9.33
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • moneroMonero (XMR) $ 342.66
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • ethena-usdeEthena USDe (USDE) $ 0.999732
  • zcashZcash (ZEC) $ 343.52
  • canton-networkCanton (CC) $ 0.147044
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • stellarStellar (XLM) $ 0.161638
  • memecoreMemeCore (M) $ 3.05
  • susdssUSDS (SUSDS) $ 1.08
  • daiDai (DAI) $ 0.999689
  • litecoinLitecoin (LTC) $ 55.42
  • paypal-usdPayPal USD (PYUSD) $ 0.999907
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • avalanche-2Avalanche (AVAX) $ 9.51
  • usd1-wlfiUSD1 (USD1) $ 1.00
  • rainRain (RAIN) $ 0.008088
  • wethWETH (WETH) $ 2,268.37
  • suiSui (SUI) $ 0.977782
  • hedera-hashgraphHedera (HBAR) $ 0.088157
  • ravedaoRaveDAO (RAVE) $ 15.30
  • usdt0USDT0 (USDT0) $ 0.998824
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • the-open-networkToncoin (TON) $ 1.40
  • crypto-com-chainCronos (CRO) $ 0.070208
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • tether-goldTether Gold (XAUT) $ 4,797.62
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.080817
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • pax-goldPAX Gold (PAXG) $ 4,805.68
  • bittensorBittensor (TAO) $ 240.76
  • global-dollarGlobal Dollar (USDG) $ 0.999830
  • mantleMantle (MNT) $ 0.662628
  • polkadotPolkadot (DOT) $ 1.28
  • uniswapUniswap (UNI) $ 3.30
  • nearNEAR Protocol (NEAR) $ 1.40
  • okbOKB (OKB) $ 85.35
  • falcon-financeFalcon USD (USDF) $ 0.998026
  • skySky (SKY) $ 0.074512
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • pi-networkPi Network (PI) $ 0.169355
  • aster-2Aster (ASTER) $ 0.671736
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • htx-daoHTX DAO (HTX) $ 0.000002
  • aaveAave (AAVE) $ 106.84
  • pepePepe (PEPE) $ 0.000004
  • usddUSDD (USDD) $ 1.00
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • ripple-usdRipple USD (RLUSD) $ 0.999986
  • internet-computerInternet Computer (ICP) $ 2.57
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.13
  • ethereum-classicEthereum Classic (ETC) $ 8.55
  • bitget-tokenBitget Token (BGB) $ 1.90
  • bfusdBFUSD (BFUSD) $ 0.999693
  • ondo-financeOndo (ONDO) $ 0.265307
  • pump-funPump.fun (PUMP) $ 0.001957
  • kucoin-sharesKuCoin (KCS) $ 8.57
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • gatechain-tokenGate (GT) $ 7.14
  • quant-networkQuant (QNT) $ 74.76
  • worldcoin-wldWorldcoin (WLD) $ 0.311775
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.24
  • algorandAlgorand (ALGO) $ 0.112396
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • render-tokenRender (RENDER) $ 1.87
  • united-stablesUnited Stables (U) $ 0.999470
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • morphoMorpho (MORPHO) $ 1.74
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.088004
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • kaspaKaspa (KAS) $ 0.033368
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • cosmosCosmos Hub (ATOM) $ 1.80
  • ethenaEthena (ENA) $ 0.102830
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • nexoNEXO (NEXO) $ 0.899042
  • usdtbUSDtb (USDTB) $ 0.999720
  • wbnbWrapped BNB (WBNB) $ 759.61
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.05
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • filecoinFilecoin (FIL) $ 0.983813
  • aptosAptos (APT) $ 0.938657
  • blockchain-capitalBlockchain Capital (BCAP) $ 82.76
  • arbitrumArbitrum (ARB) $ 0.121163
  • flare-networksFlare (FLR) $ 0.008192
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • official-trumpOfficial Trump (TRUMP) $ 2.94
  • hash-2Provenance Blockchain (HASH) $ 0.011321
  • siren-2Siren (SIREN) $ 0.877337
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • xdce-crowd-saleXDC Network (XDC) $ 0.031819
  • beldexBeldex (BDX) $ 0.080162
  • vechainVeChain (VET) $ 0.007147
  • jupiter-exchange-solanaJupiter (JUP) $ 0.171372
  • ousgOUSG (OUSG) $ 114.93
  • midnight-3Midnight (NIGHT) $ 0.035399
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • ghoGHO (GHO) $ 0.999701
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • yldsYLDS (YLDS) $ 0.999736
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • stable-2​​Stable (STABLE) $ 0.026048
  • usual-usdUsual USD (USD0) $ 0.998250
  • bonkBonk (BONK) $ 0.000006
  • clbtcclBTC (CLBTC) $ 76,920.00
  • dexeDeXe (DEXE) $ 11.36
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.60
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.232303
  • justJUST (JST) $ 0.059353
  • true-usdTrueUSD (TUSD) $ 0.998907
  • layerzeroLayerZero (ZRO) $ 1.95
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • a7a5A7A5 (A7A5) $ 0.012433
  • dashDash (DASH) $ 37.35
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.715642
  • tbtctBTC (TBTC) $ 70,942.00
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.007445
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • chilizChiliz (CHZ) $ 0.043461
  • adi-tokenADI (ADI) $ 4.25
  • edgexedgeX (EDGE) $ 1.24
  • blockstackStacks (STX) $ 0.236444
  • monadMonad (MON) $ 0.036154
  • euro-coinEURC (EURC) $ 1.18
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999769
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.03
  • venice-tokenVenice Token (VVV) $ 8.71
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • tezosTezos (XTZ) $ 0.363988
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • sei-networkSei (SEI) $ 0.057065
  • cocaCOCA (COCA) $ 1.30
  • usxUSX (USX) $ 0.999794
  • kinesis-goldKinesis Gold (KAU) $ 153.71
  • decredDecred (DCR) $ 21.03
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • ether-fiEther.fi (ETHFI) $ 0.464419
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • hastra-primePRIME (PRIME) $ 1.03
  • sun-tokenSun Token (SUN) $ 0.018436
  • aerodrome-financeAerodrome Finance (AERO) $ 0.378968
  • curve-dao-tokenCurve DAO (CRV) $ 0.226241
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • bianrensheng币安人生 (BinanceLife) (币安人生) $ 0.340600
  • lido-daoLido DAO (LDO) $ 0.396593
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • injective-protocolInjective (INJ) $ 3.37
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • apenftAINFT (NFT) $ 0.00000033
  • celestiaCelestia (TIA) $ 0.364988
  • mantra-daoMANTRA [Old] (OM) $ 0.066813
  • plasmaPlasma (XPL) $ 0.136829
  • bittorrentBitTorrent (BTT) $ 0.00000033
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • conflux-tokenConflux (CFX) $ 0.061914
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • spx6900SPX6900 (SPX) $ 0.345006
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • bitcoin-svBitcoin SV (BSV) $ 15.84
  • gnosisGnosis (GNO) $ 119.50
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • kinesis-silverKinesis Silver (KAG) $ 79.23
  • usdaiUSDai (USDAI) $ 0.999782
  • doublezeroDoubleZero (2Z) $ 0.085127
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • flokiFLOKI (FLOKI) $ 0.000030
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • kaiaKaia (KAIA) $ 0.047541
  • crvusdcrvUSD (CRVUSD) $ 0.999749
  • fraxLegacy Frax Dollar (FRAX) $ 0.994385
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • kite-2Kite (KITE) $ 0.151656
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06

“Human error” cited in LI.FI’s $11.6 million exploit

0 148

“Human error” cited in LI.FI’s $11.6 million exploit

Interoperability protocol LI.FI revealed that its recent exploit was caused by an infinite token approval attack vector. On July 16, 2024, it experienced a security breach resulting in the theft of approximately $11.6 million after affecting 153 wallets that used LI.FI to interact with Ethereum and Arbitrum networks.

The vulnerability emerged shortly after the deployment of a new smart contract facet, which was disabled by LiFi’s team across all chains to prevent further unauthorized access.

Moreover, the exploit stemmed from a lack of validation checks in the new facet, allowing attackers to make arbitrary calls to any contract. The company attributed this to “an individual human error in overseeing the deployment process.”

Assets drained included USDC, USDT, and DAI. LI.FI emphasized that the vulnerability only impacted infinite approvals, not finite approvals, which is the default setting in their API, SDK, and widget.

Additionally, they are working with law enforcement and industry security teams to trace and recover the stolen funds.

“LiFi, with the backing of its major investors, is currently evaluating options to fully compensate affected users as soon as possible,” they stated in the report

In response to the incident, LI.FI reiterated its commitment to security, highlighting existing measures such as multiple audits, monthly auditor retainers, pen-testing, and bug bounties. The company is also reaching out to affected wallet holders for direct communication.

Source

Leave A Reply

Your email address will not be published.