Hack of little-known Poly Network highlights East-West crypto divide – Cointelegraph Magazine


This weekly roundup of news from Mainland China, Taiwan, and Hong Kong attempts to curate the industry’s most important news, including influential projects, changes in the regulatory landscape, and enterprise blockchain integrations.  After ThorCHAIN and Chainswap were exploited, it’s safe to say that hacking cross-chain bridges seems to be the style of the season. This week, it was local project Poly Network that was fleeced of $615 million before leading the crypto community on a dramatic witch hunt to track down the attacker. While most news outlets have covered this story extensively, there are still a few points worth dissecting. Who are these projects?The first point is that most western DeFi users had never heard of Poly Network despite them amassing over $600 million in total value locked. Dovey Wan of Primitive Capital covered this on Twitter when she noted that the, “Chinese crypto community always have their own version to utilize the same blockchain infra, for good and for bad, most are unseen and lack of accessibility to westerners.” Only after Poly got hacked most CT came to know this “crosschain” project with over $500m TVL, just as the PlusToken case in 2018There are a VERY vibrant but completely different “Defi” communities happening in mainland China, despite the ban, despite many rugs and hacks— Dovey “Rug The Fiat” Wan🪐🦖 (@DoveyWan) August 11, 2021 So why are Chinese projects flying so far under the radar? The first reason might be a cultural and language barrier as Chinese marketing teams struggle to integrate into the fast-moving and esoteric world of Crypto Twitter. Instead of trying to win over global communities, they focus on integrations that can bring users over directly.According to SimilarWeb, Poly Network attracted over 58% of its web traffic from third-party website referrals, with Chinese DApps OpenOcean, O3 Swap, and Wing Finance at the top of the list. By contrast, Compound Finance receives more than half of its visits from direct hits, with only 16% coming via third-party websites. Compound’s two main websites for referrals are CoinMarketCap and CoinGecko. This shows that the difference in how Chinese and international users behave is quite tangible and that to capture both audiences requires two very distinct strategies.    A DeFi island: Chinese dApps and websites are the major onramps for users to Poly Network. Source: SimilarwebUntangling the web Another more taboo talking point is that many of these large Chinese DeFi projects have ties to other projects. Poly Network has ties to the O3 network, which itself is incubated by Neo. The extent to which Neo is involved is indistinct but it explains why it’s rare to see Poly Network founders marketing in public. These ‘founders’ are often just figureheads for the parent company. The parent company gets all the benefits of launching a second token without taking the reputational or legal risk of being tied to it. If the side project succeeds, it can support the main network. If it fails, everyone moves on with their lives and pretends it never happened. It’s a big PR problem for O3Swap now that many of their user’s assets were compromised in the attack. This isn’t the first time that the team has had to deal with negativity, as they were accused of having a backdoor function written into their code that would allow them to rug pull. Although this has never been exploited, it does raise eyebrows about the intentions of the developers. After the hack, a lot of negativity flooded local social media, with comments calling into question the integrity of Chinese-made projects. One user on Weibo stated that you could beat him to death before he touched a Chinese project while another user just called it an inside job.   A user points out a potential backdoor in O3Swap’s code. Source: Weibo The bigger issue here is that prior to DeFi, substandard projects would never get off the ground, leading to a slow and painful soft decline in value for token holders. In this model, investors might still get the chance to recover some of their funds by selling on secondary markets. In the new model of DeFi forks, code can be deployed and amass hundreds of millions of dollars in TVL very rapidly and without adequate risk controls. Audits can be superficial, and staggeringly high yields can seduce retail investors into providing liquidity. If the code is compromised, all the assets are lost, resulting in a much more swift and comprehensive loss for investors.  Looking for silver liningsThe major positive in all this was the quick and united response of the Chinese blockchain community. Smart contract auditor Slowmist worked quickly with exchanges to limit the options of the attacker to liquidate funds. The company blog notes:“Special thanks to the teams such as Hoo, Poly Network, Huobi ZLabs, ChainNews, WePiggy, TokenPocket, Bibox, OkLink and many individual partners for synchronizing relevant attacker information with the SlowMist security team on time under the premise of compliance, and buying valuable time for tracking attacker.” Huobi’s co-founder Du June choed this on social media as well, stating that they would do everything in their power to protect the crypto community. This will be a welcome sign to Chinese DeFi users who want to see trust being rebuilt among the local players.   Huobi has taken notice of the large sum stolen from the #PolyNetwork tonight. Our risk control and security teams are already tracking and identifying the addresses involved. We’ll do everything in our power to assist and protect the crypto community. #StrongerTogether— Du Jun (@DujunX) August 10, 2021  

Avatar

Related Articles

- Advertisement -

Latest Articles

bitcoin
Bitcoin (BTC) $ 64,579.30
ethereum
Ethereum (ETH) $ 3,154.76
tether
Tether (USDT) $ 1.00
bnb
BNB (BNB) $ 606.99
solana
Solana (SOL) $ 148.67
usd-coin
USDC (USDC) $ 1.00
staked-ether
Lido Staked Ether (STETH) $ 3,151.43
xrp
XRP (XRP) $ 0.529253
dogecoin
Dogecoin (DOGE) $ 0.152466
the-open-network
Toncoin (TON) $ 5.60
cardano
Cardano (ADA) $ 0.478785
shiba-inu
Shiba Inu (SHIB) $ 0.000026
avalanche-2
Avalanche (AVAX) $ 36.61
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 64,623.31
tron
TRON (TRX) $ 0.113686
bitcoin-cash
Bitcoin Cash (BCH) $ 483.65
polkadot
Polkadot (DOT) $ 6.98
chainlink
Chainlink (LINK) $ 14.60
near
NEAR Protocol (NEAR) $ 6.87
matic-network
Polygon (MATIC) $ 0.712174
internet-computer
Internet Computer (ICP) $ 13.79
litecoin
Litecoin (LTC) $ 83.54
uniswap
Uniswap (UNI) $ 7.75
leo-token
LEO Token (LEO) $ 5.76
dai
Dai (DAI) $ 1.00
first-digital-usd
First Digital USD (FDUSD) $ 1.00
hedera-hashgraph
Hedera (HBAR) $ 0.125172
blockstack
Stacks (STX) $ 2.75
aptos
Aptos (APT) $ 9.19
ethereum-classic
Ethereum Classic (ETC) $ 26.44
mantle
Mantle (MNT) $ 1.11
crypto-com-chain
Cronos (CRO) $ 0.124886
stellar
Stellar (XLM) $ 0.114863
cosmos
Cosmos Hub (ATOM) $ 8.48
filecoin
Filecoin (FIL) $ 6.07
render-token
Render (RNDR) $ 8.54
okb
OKB (OKB) $ 54.67
immutable-x
Immutable (IMX) $ 2.23
pepe
Pepe (PEPE) $ 0.000007
dogwifcoin
dogwifhat (WIF) $ 3.12
renzo-restaked-eth
Renzo Restaked ETH (EZETH) $ 3,071.49
bittensor
Bittensor (TAO) $ 457.76
xtcom-token
XT.com (XT) $ 2.99
arbitrum
Arbitrum (ARB) $ 1.12
vechain
VeChain (VET) $ 0.040111
kaspa
Kaspa (KAS) $ 0.124313
maker
Maker (MKR) $ 2,885.44
the-graph
The Graph (GRT) $ 0.271217
optimism
Optimism (OP) $ 2.44
wrapped-eeth
Wrapped eETH (WEETH) $ 3,263.67