Blockchain security firm releases Cetus hack post-mortem report

26.05.25 00:15 Uhr

Werte in diesem Artikel
Devisen

93.517,8856 CHF -74,6262 CHF -0,08%

100.476,9256 EUR -80,1794 EUR -0,08%

87.011,4908 GBP -69,4342 GBP -0,08%

17.310.806,0176 JPY -13.813,8253 JPY -0,08%

117.448,1890 USD -93,7223 USD -0,08%

2.342,2789 CHF -12,5821 CHF -0,53%

2.516,5772 EUR -13,5184 EUR -0,53%

2.179,3177 GBP -11,7067 GBP -0,53%

433.571,9892 JPY -2.329,0403 JPY -0,53%

2.941,6449 USD -15,8018 USD -0,53%

0,0000 BTC 0,0000 BTC 0,12%

0,0004 ETH 0,0000 ETH 0,54%

0,0000 BTC 0,0000 BTC 0,13%

0,0004 ETH 0,0000 ETH 0,54%

0,0000 BTC 0,0000 BTC 0,11%

0,0005 ETH 0,0000 ETH 0,54%

0,0000 BTC -0,0000 BTC -3,72%

0,0000 ETH 0,0000 ETH 0,72%

0,0000 BTC 0,0000 BTC 0,05%

0,0003 ETH 0,0000 ETH 0,54%

Blockchain security firm Dedaub released a post-mortem report on the Cetus decentralized exchange hack, identifying the root cause of the attack as an exploit of the liquidity parameters used by the Cetus automated market maker (AMM), which went undetected by a code "overflow" check.According to the report, the hackers exploited a flaw in the most significant bits (MSB) check, allowing them to manipulate the values for the liquidity parameters by orders of magnitude and establish relatively large positions with a keystroke. The Dedaub security researchers wrote:"This allowed them to add massive liquidity positions with just one unit of token input, subsequently draining pools collectively containing hundreds of millions of dollars worth of tokens."The incident and the post-mortem update reflect the unfortunate trend of cybersecurity exploits and hacks impacting crypto and the Web3 industry.  Executives in the industry have continually warned that industry firms must establish safeguards and protect users before regulators clamp down and impose safeguards on the industry.The flawed MSB check. Source: DedaubRelated: Twice lucky? Cetus’ recovery plan on Sui mirrors a Solana blueprintThe Cetus decentralized exchange hacked, triggering $223 million in lossesOn May 22, the Cetus exchange was hacked, causing $223 million in user losses within a 24-hour period.Cetus and the Sui Foundation also announced that Sui network validators froze a majority of the stolen assets. $163 million of the $223 million was frozen by validators and ecosystem partners on the same day as the hack, according to the Cetus team.Response draws criticisms and allegations of centralizationThe decision to freeze the stolen funds drew mixed reactions from the crypto community, with decentralization advocates criticizing the validators for stepping in and controlling the chain."Sui validators are actively censoring transactions across the blockchain," one user wrote on X, echoing many other posts.Source: Sui"This completely undermines the principles of decentralization and transforms the network into nothing more than a centralized, permissioned database," the post continued."It’s interesting how many Web3 projects backed by VCs lean heavily on centralization, despite borrowing Bitcoin’s ethos," Steve Bowyer wrote in a May 23 X post.Magazine: Fake Rabby Wallet scam linked to Dubai crypto CEO and many more victimsWeiter zum vollständigen Artikel bei Cointelegraph Weiter zum vollständigen Artikel bei Cointelegraph Weiter zum vollständigen Artikel bei Cointelegraph

Quelle: Cointelegraph