News Business: DeFi Protocol Ankr Exploited for Over $5M The attacker was able to mint 6 quadrillion aBNBc tokens, which they eventually turned into around 5 million USDC. #News #Business #Crypto

DeFi protocol Ankr, which called itself the first ‘node-as-a-service’ platform, has suffered a multi-million dollar exploit due to a bug in its code that allowed for unlimited minting of its token. According to security research firm PeckShield, the code behind the Ankr contract allows any user to mint an unlimited amount of the protocol’s reward-bearing staking tokens without any sort of verification. This allowed the attacker to mint six quadrillion of the aBNBc token. Since minting the quadrillions of aBNBc token, the attacker was able to swap 20 trillion of the aBNBc token for BNB, then move it to Tornado Cash. The attacker then swapped the BNB tokens for 5 million USDC. As the hacker has nearly completely drained the aBNBc liquidity pools on PancakeSwap and ApeSwap, the token has lost nearly 99% of its value, according to CoinGecko data. Ankr tweeted that all staked assets within the protocol are currently safe. On-chain analyst firm Lookonchain reported that one opportunistic trader was able to cash in on the exploit and turn 10 BNB ($2,885) into 15.5 million BUSD. The trader did this by taking advantage of DeFi lending protocol Helio, which did not have up-to-date pricing on aBNBc post-crash. The trader was also able to use the pre-crash pricing for aBNBc to borrow $16 million of the little-traded HAY stablecoin and convert that into BUSD. Since then, the HAY stablecoin has been tossed off its peg, hitting a low of 20 cents, and is now recovering, according to CoinMarketCap, with a price of 77 cents. By Sam Reynolds, Dec 2, 2022, https://www.coindesk.com/markets/2022/12/02/defi-protocol-ankr-exploited-for-over-5m/

vya4slav's Recent Blog Posts

Just in time for Ethereum’s consequential Shanghai update, which will soon allow users to withdraw ether (ETH) they’ve “staked” to help secure the network, popular wallet provider MetaMask is taking…
1 year ago
After a heated community debate last month, Polygon Labs appears to be moving forward with plans to hard fork the network early next week, according to a blog post published on Polygon’s website…
1 year ago
The beleaguered Gemini Earn program is now the linchpin in a new set of charges filed by the Securities and Exchange Commission against both Genesis and Gemini. In announcing the charges, the SEC…
1 year ago
Crypto market maker CyberX has raised $15 million in a strategic investment from Foresight Ventures, a crypto venture capital firm with about $400 million in assets under management. CyberX will use…
1 year ago
Yuga Labs, the creative studio behind Bored Ape Yacht Club (BAYC), has announced an expansion to its non-fungible token (NFT) ecosystem that starts with a free mint and a skill-based game. The…
1 year ago