• bitcoinBitcoin (BTC) $ 112,824.00
  • ethereumEthereum (ETH) $ 4,111.19
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 1,214.91
  • xrpXRP (XRP) $ 2.48
  • solanaSolana (SOL) $ 199.79
  • usd-coinUSDC (USDC) $ 0.999906
  • staked-etherLido Staked Ether (STETH) $ 4,107.07
  • dogecoinDogecoin (DOGE) $ 0.203808
  • tronTRON (TRX) $ 0.315655
  • cardanoCardano (ADA) $ 0.695173
  • wrapped-stethWrapped stETH (WSTETH) $ 4,996.11
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 4,424.78
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 112,791.00
  • chainlinkChainlink (LINK) $ 18.92
  • figure-helocFigure Heloc (FIGR_HELOC) $ 0.991161
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • wrapped-eethWrapped eETH (WEETH) $ 4,433.46
  • stellarStellar (XLM) $ 0.333731
  • bitcoin-cashBitcoin Cash (BCH) $ 535.12
  • hyperliquidHyperliquid (HYPE) $ 39.36
  • suiSui (SUI) $ 2.81
  • avalanche-2Avalanche (AVAX) $ 22.60
  • wethWETH (WETH) $ 4,110.22
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • leo-tokenLEO Token (LEO) $ 9.63
  • usdsUSDS (USDS) $ 1.00
  • hedera-hashgraphHedera (HBAR) $ 0.185962
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 112,914.00
  • litecoinLitecoin (LTC) $ 97.78
  • usdt0USDT0 (USDT0) $ 1.00
  • mantleMantle (MNT) $ 2.02
  • shiba-inuShiba Inu (SHIB) $ 0.000011
  • whitebitWhiteBIT Coin (WBT) $ 42.81
  • the-open-networkToncoin (TON) $ 2.29
  • moneroMonero (XMR) $ 309.64
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • crypto-com-chainCronos (CRO) $ 0.162918
  • polkadotPolkadot (DOT) $ 3.24
  • daiDai (DAI) $ 0.999838
  • bittensorBittensor (TAO) $ 450.37
  • uniswapUniswap (UNI) $ 6.75
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.143733
  • zcashZcash (ZEC) $ 237.11
  • aaveAave (AAVE) $ 252.37
  • okbOKB (OKB) $ 179.23
  • memecoreMemeCore (M) $ 2.04
  • bitget-tokenBitget Token (BGB) $ 4.85
  • pepePepe (PEPE) $ 0.000007
  • ethenaEthena (ENA) $ 0.434409
  • nearNEAR Protocol (NEAR) $ 2.46
  • aster-2Aster (ASTER) $ 1.48
  • jito-staked-solJito Staked SOL (JITOSOL) $ 246.65
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • usd1-wlfiUSD1 (USD1) $ 1.00
  • susdssUSDS (SUSDS) $ 1.07
  • aptosAptos (APT) $ 3.65
  • ethereum-classicEthereum Classic (ETC) $ 16.85
  • paypal-usdPayPal USD (PYUSD) $ 0.999915
  • c1usdCurrency One USD (C1USD) $ 1.00
  • ondo-financeOndo (ONDO) $ 0.792477
  • binance-peg-wethBinance-Peg WETH (WETH) $ 4,113.54
  • falcon-financeFalcon USD (USDF) $ 0.999399
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 5.56
  • story-2Story (IP) $ 6.58
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.200778
  • worldcoin-wldWorldcoin (WLD) $ 0.956624
  • binance-staked-solBinance Staked SOL (BNSOL) $ 214.82
  • gatechain-tokenGate (GT) $ 16.13
  • internet-computerInternet Computer (ICP) $ 3.54
  • htx-daoHTX DAO (HTX) $ 0.000002
  • kucoin-sharesKuCoin (KCS) $ 14.33
  • arbitrumArbitrum (ARB) $ 0.341233
  • rocket-pool-ethRocket Pool ETH (RETH) $ 4,689.33
  • usdtbUSDtb (USDTB) $ 1.00
  • algorandAlgorand (ALGO) $ 0.203575
  • pi-networkPi Network (PI) $ 0.214729
  • hash-2Provenance Blockchain (HASH) $ 0.035268
  • bfusdBFUSD (BFUSD) $ 1.00
  • chainopera-aiChainOpera AI (COAI) $ 8.59
  • cosmosCosmos Hub (ATOM) $ 3.48
  • vechainVeChain (VET) $ 0.019127
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 4,338.11
  • wbnbWrapped BNB (WBNB) $ 1,214.88
  • kaspaKaspa (KAS) $ 0.060609
  • tether-goldTether Gold (XAUT) $ 4,155.38
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 4,335.56
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.024631
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 39.28
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 4,439.69
  • render-tokenRender (RENDER) $ 2.83
  • skySky (SKY) $ 0.062385
  • pump-funPump.fun (PUMP) $ 0.004084
  • flare-networksFlare (FLR) $ 0.018872
  • sei-networkSei (SEI) $ 0.224116
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 112,828.00
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 4,357.55
  • pax-goldPAX Gold (PAXG) $ 4,157.61
  • official-trumpOfficial Trump (TRUMP) $ 6.30
  • bonkBonk (BONK) $ 0.000016
  • nexoNEXO (NEXO) $ 1.22
  • pancakeswap-tokenPancakeSwap (CAKE) $ 3.49
  • jupiter-exchange-solanaJupiter (JUP) $ 0.374119
  • filecoinFilecoin (FIL) $ 1.67
  • syrupusdcSyrup USDC (SYRUPUSDC) $ 1.13
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 1.00
  • spx6900SPX6900 (SPX) $ 1.22
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 112,818.00
  • immutable-xImmutable (IMX) $ 0.572954
  • xdce-crowd-saleXDC Network (XDC) $ 0.060312
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.996998
  • mantle-staked-etherMantle Staked Ether (METH) $ 4,428.48
  • morphoMorpho (MORPHO) $ 1.93
  • doublezeroDoubleZero (2Z) $ 0.285837
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 228.24
  • celestiaCelestia (TIA) $ 1.15
  • injective-protocolInjective (INJ) $ 9.53
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 112,989.00
  • clbtcclBTC (CLBTC) $ 115,984.00
  • solmevSolMev (SN116) $ 2,398.72
  • fasttokenFasttoken (FTN) $ 2.01
  • lido-daoLido DAO (LDO) $ 0.962349
  • optimismOptimism (OP) $ 0.480849
  • ripple-usdRipple USD (RLUSD) $ 1.00
  • blockstackStacks (STX) $ 0.467142
  • msolMarinade Staked SOL (MSOL) $ 265.38
  • curve-dao-tokenCurve DAO (CRV) $ 0.589500
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.318381
  • plasmaPlasma (XPL) $ 0.448947
  • aerodrome-financeAerodrome Finance (AERO) $ 0.886965
  • ousgOUSG (OUSG) $ 112.93
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 3,925.65
  • sonic-3Sonic (S) $ 0.200361
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 4,107.37
  • the-graphThe Graph (GRT) $ 0.069673
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.85
  • global-dollarGlobal Dollar (USDG) $ 1.00
  • flokiFLOKI (FLOKI) $ 0.000074
  • pyth-networkPyth Network (PYTH) $ 0.123901
  • havvenSynthetix (SNX) $ 2.02
  • usdx-money-usdxStables Labs USDX (USDX) $ 1.00
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.10
  • saros-financeSaros (SAROS) $ 0.259092
  • kaiaKaia (KAIA) $ 0.112733
  • tezosTezos (XTZ) $ 0.621809
  • tbtctBTC (TBTC) $ 112,500.00
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 4,110.25
  • ether-fiEther.fi (ETHFI) $ 1.24
  • stader-ethxStader ETHx (ETHX) $ 4,403.04
  • gtethGTETH (GTETH) $ 4,105.63
  • aethirAethir (ATH) $ 0.044054
  • newton-projectAB (AB) $ 0.007591
  • pendlePendle (PENDLE) $ 3.65
  • iotaIOTA (IOTA) $ 0.150699
  • myx-financeMYX Finance (MYX) $ 3.16
  • conflux-tokenConflux (CFX) $ 0.116861
  • usdaiUSDai (USDAI) $ 1.03
  • beldexBeldex (BDX) $ 0.079099
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.39
  • dogwifcoindogwifhat (WIF) $ 0.575639
  • theta-tokenTheta Network (THETA) $ 0.571161
  • dashDash (DASH) $ 45.22
  • ethereum-name-serviceEthereum Name Service (ENS) $ 16.93
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 4,521.27
  • galaGALA (GALA) $ 0.012016
  • the-sandboxThe Sandbox (SAND) $ 0.225620
  • usual-usdUsual USD (USD0) $ 0.998743
  • starknetStarknet (STRK) $ 0.126574
  • swethSwell Ethereum (SWETH) $ 4,499.61
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 4,422.40
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.820791
  • raydiumRaydium (RAY) $ 2.00
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 112,776.00
  • jasmycoinJasmyCoin (JASMY) $ 0.010823
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.204037
  • rna-2RNA (SN117) $ 4,708.96
  • decentralandDecentraland (MANA) $ 0.271240
  • bittorrentBitTorrent (BTT) $ 0.00000052
  • swissborgSwissBorg (BORG) $ 0.524057
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 1.01
  • eigenlayerEigenCloud (prev. EigenLayer) (EIGEN) $ 1.34
  • vaultaVaulta (A) $ 0.313985
  • astherus-staked-bnbAster Staked BNB (ASBNB) $ 1,283.20
  • true-usdTrueUSD (TUSD) $ 0.998072
  • arbitrum-bridged-wrapped-eethArbitrum Bridged Wrapped eETH (Arbitrum) (WEETH) $ 4,426.77
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.10
  • syrupMaple Finance (SYRUP) $ 0.430392
  • usddUSDD (USDD) $ 1.00
  • flowFlow (FLOW) $ 0.296415
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999906
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999867
  • zero-gravity0G (0G) $ 2.20
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 4,099.00
  • sun-tokenSun Token (SUN) $ 0.024118
  • ai-companionsAI Companions (AIC) $ 0.459168
  • bitcoin-svBitcoin SV (BSV) $ 22.65
  • jito-governance-tokenJito (JTO) $ 1.16
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 4,107.56
  • frax-etherFrax Ether (FRXETH) $ 4,072.03
  • crvusdcrvUSD (CRVUSD) $ 1.00

Ronin Gaming Network Recovers Swiped Ethereum After $12 Million Bridge Attack

0 90

Ronin Gaming Network Recovers Swiped Ethereum After $12 Million Bridge Attack

The bridge between Ethereum and gaming-focused Ronin sidechain was halted early Tuesday following another exploit, leading to the loss of approximately $12 million worth of assets—but most of the funds have already been returned.

The incident, described as a potential “MEV exploit,” was brought to light early Tuesday by ethical hackers, Ronin co-founder Aleksander Larsen said on Twitter. He reassured users that the bridge, which secures over $850 million in assets, remains safe.

The Ronin account noted that approximately 4,000 ETH and $2 million worth of the dollar-pegged USDC stablecoin were swiped, adding up to about $12 million worth of stolen assets. The damage was limited by safeguards that cap the size of any Ronin withdrawal in a single transaction.

Late Tuesday morning, the Ronin team announced that all of the ETH—approximately $10 million worth—had been returned, and that they expected the USDC to be returned later in the day. Ronin’s developers will reward the white hat hackers with a $500,000 reward for reporting the exploit and returning the swiped funds.

Update:

The ETH (~$10 M) has been returned and we expect that the USDC will be returned later today. We thank the white hats for their vigilance and integrity. The Bug Bounty Program will reward the white hats with a 500 K bounty.

The bridge will undergo an audit before it is…

— Ronin (@Ronin_Network) August 6, 2024

Ronin’s team blamed a problem with a bridge upgrade launched earlier in the day, which it said “introduced an issue leading the bridge to misinterpret the required bridge operators vote threshold to withdraw funds.”

Adrian Hetman, head of triaging at blockchain security firm Immunefi, told Decrypt that bridge upgrades are common avenues for attacks as they can introduce new ways to exploit the connection between chains and steal funds.

“An upgrade introduces a new attack surface and, if implemented without the necessary security measures, could potentially lead to the complete collapse of the project,” Hetman said, pointing to 2022’s attack of the Nomad protocol as a key example.

In the follow-up tweet, Ronin’s developers said that the bridge code will be audited before it’s brought back online, and that they intend to work with network validators to “shift operation of the bridge away from the current structure.”

Ronin is the gaming-focused network that was originally launched for Axie Infinity, the monster-battling game that racked up billions of dollars’ worth of NFT trading volume in 2021. Since then, it has expanded to feature games from other studios besides Sky Mavis, including the popular social farming game Pixels.

As of now, Ronin’s native token, RON, appears only modestly affected by the news. While the price did broadly decline in the hours following the attack, RON rebounded slightly and remains up more than 2% over the past day amid a broader market rebound after Monday’s plunge. The token is priced at $1.43 as of press time, down 27% over the last week.

This is not the first time that the Ronin bridge has been compromised. In late March 2022, a major hack resulted in the loss of $622 million from the network in an attack that the U.S. Treasury pinned on North Korea’s infamous Lazarus hacking group. The bridge was down for months, but was ultimately revived with added decentralization measures as Sky Mavis refunded affected users.

A more recent February incident, though smaller, saw $9.5 million worth of ETH taken from Ronin wallets, including those of Sky Mavis and Ronin Network co-founder Jeff Zirlin.

Earlier today, we were notified by white-hats about a potential exploit on the Ronin bridge. After verifying the reports, the bridge was paused approximately 40 minutes after the first on-chain action was spotted.

The actors withdrew ~4K ETH and 2M USDC, valued at ~$12M, which…

— Ronin (@Ronin_Network) August 6, 2024

Ronin representatives declined further comment to Decrypt following the tweeted statement. A full postmortem report on the attack is expected to be released next week.

By MEV, Larsen was referring to maximum extractable value bots, which are software tools developed to monitor blockchains to find profit opportunities and automatically exploit them through automated transactions. The controversy around MEV bots centers on fairness and network integrity.

Critics have argued these bots exploit users, increase fees, and centralize power to tech-savvy operators by facilitating front running, sandwich attacks, and back running, among other features. Supporters claim that they provide necessary market efficiency. The debate highlights tensions between profit-seeking behavior and blockchain ideals of equal access.

This incident comes amid growing concerns over the security of blockchain bridges. Immunefi recently reported that over $1.19 billion has been lost due to hacks and fraud in the year to date, marking a 16.3% increase compared to the same period last year. Bridges remain a key avenue for attacks.

“The bridge contains lots of money and is moving large amounts of funds every day,” Immunefi’s Hetman told Decrypt. “This is a juicy piece of code for any black hat trying to find a way in and steal a portion of it or all of it, the same as for the white hats trying to protect the users and the project. Apply appropriate internal and external procedures to this to make it as secure as possible.”

Edited by Stacy Elliott and Andrew Hayward

Source

Leave A Reply

Your email address will not be published.