Latest News

Aerodrome and Velodrome Suffer Front-End Security Breach

Source: Pixabay

Decentralized crypto exchanges Velodrome and Aerodrome have warned users about a front-end security breach on their websites.

In X posts published on Wednesday, Velodrome and Aerodrome warned users against interacting with their websites until further notice.

“Our frontend is currently compromised,” the Velodrome team wrote on X. “Please do not interact with Velodrome for the time being. The team are investigating and will communicate more here when we have it.”

The same warning was posted on Aerodrome’s X account.

The security breach seems to involve a domain name system (DNS) attack targeting the Aerodrome and Velodrome’s official websites. DNS is a widely utilized protocol crucial for the functioning of websites.

In DNS attacks, hackers seize control of a site and redirect users to a phishing site linked to a malicious contract, with the intention of illicitly acquiring users’ funds.

On-chain analyst ZachXBT identified two specific addresses that funds from Aerodrome and Velodrome were being sent to, providing a glimpse into the amount of damage the hackers caused. At time of writing, a combined $70,000 worth of crypto assets have been drained into these two addresses.

“Looks like stolen funds are going to these two addresses: 0x02BA13f39D7df9C3F7592257b636eD6C7CC4ae78 [and] 0xf64fCEdFCe714Bbe835761e54D7067f2f8231443,” ZachXBT wrote on X.

Aerodrome provided an alternate solution, asking its users to only access Aerodrome from its decentralized frontend.

“Please ensure you are accessing Aerodrome only from our decentralized frontend at http://aero.drome.eth.limo,” Aerodrome posted on X, while also noting that “protocol funds are safe and contracts are unaffected.”

Velodrome is the second-largest decentralized exchange protocol on the OP Mainnet (previously Optimism) based on total value locked and revenue. The company currently boasts over $139 million in total locked value.

Meanwhile, Aerodrome is the largest protocol on Base in terms of total value locked (TVL), holding over $63 million in funds.

Last month, Web3 credentials and rewards platform Galxe announced its intention to refund over $396,000 to more than 980 users who were impacted by a significant DNS attack.

The project has also pledged to supplement the refunded amount by an additional 10% as a gesture of goodwill, as outlined in a shared document.

 

The post Aerodrome and Velodrome Suffer Front-End Security Breach appeared first on Cryptonews.

You May Also Like

Investing

The Senate is expected to send a temporary spending package known as a Continuing Resolution (CR) to the White House, averting a government shutdown before...

Latest News

A bipartisan ethics report concludes there is “substantial evidence” that George Santos violated federal criminal laws, which will almost certainly trigger another attempt to...

Investing

Sen. Tommy Tuberville’s, R-Ala., colleagues pleaded on the Senate floor early Thursday morning – from midnight until nearly 4 a.m. – to drop his objection to...

Editor's Pick

Helium Evolution Incorporated (TSXV:HEVI) (‘ HEVI ‘ or the ‘ Company ‘), a Canadian-based helium exploration company focused on developing assets in southern Saskatchewan,...

Disclaimer: Goldenliontraders.com, its managers, its employees, and assigns (collectively “The Company”) do not make any guarantee or warranty about what is advertised above. Information provided by this website is for research purposes only and should not be considered as personalized financial advice. The Company is not affiliated with, nor does it receive compensation from, any specific security. The Company is not registered or licensed by any governing body in any jurisdiction to give investing advice or provide investment recommendation. Any investments recommended here should be taken into consideration only after consulting with your investment advisor and after reviewing the prospectus or financial statements of the company.

Copyright © 2023 Goldenliontraders.com

Exit mobile version