Ola Finance’s DeFi Lending Protocol Gets Exploited for $3.6 Million

An open-source, decentralised financial system called Ola Finance has been the victim of a re-entry assault that resulted in the loss of $3.6 million in cryptocurrency.
As Ola Finance summarised the attack and revealed that the stolen protocol value was around $4.67M in ETH, BTC, and FUSE pricing. There were 216,964 USDC, 507,216 BUSD, 200,000 fUSD, 550.45 WETH, 26.25 WBTC, and 1.24 million FUSE stolen by the hackers.

We will soon be publishing an official report detailing the exploit that occurred on the @voltfinance Lending Network and the plan for recourse.
Thank you to @peckshield for providing swift coverage and helping us analyze the root of the exploit.
Read Primer 🧵: https://t.co/UDU10C2YSa
— Ola.finance (@ola_finance) March 31, 2022

About the re-entrancy attack
PeckShield, a blockchain security startup, released a detailed analysis and diagnosis of the vulnerability.
In a re-entrancy attack, a threat actor exploited flaws in Ola Finance’s smart contracts to give a loan based on bogus collateral to the protocol’s decentralised lending platform.
According to the security company. Tornado Cash, an anonymous transfer mechanism, was used by the threat actor to withdraw cash.
Loans were withdrawn from Ola Finance’s decentralised lending platform when the cash from Tornado Cash was moved to the Fuse network, on which Ola Finance operates. 
Using the built-in callback methods of ERC677 and ERC777 tokens, the hack was made possible because of the incompatibility between the Compound fork and these tokens.
Axie Infinity’s Ronin sidechain was attacked for $625 million in a previous assault on decentralised finance (DeFi) systems, making this the latest in a series of attacks. 
After a number of high-profile hacks on DeFi systems, several experts have called for an enhanced examination of smart contract programming.
Hackers Have Their Eyes on DeFi
The $625 million Ronin network attack by Axie Infinity was just a few days before the Ola Finance hack. Ronin has been hacked to the tune of 173,600 ETH and 25.5 million USDC, making it one of DeFi’s biggest ever hacks.
Since the Ola Finance hack, reentrancy attacks have been utilised in several high-profile breaches. A reentry fault and a flash loan vulnerability were used to steal over $11 million from Agave and Hundred Finance on March 16, according to FXEmpire.
DeFi thefts are becoming more widespread, despite the fact that Ola Finance’s intrusion is less than those previously reported.
***

Avatar

Related Articles

- Advertisement -

Latest Articles

bitcoin
Bitcoin (BTC) $ 66,516.82
ethereum
Ethereum (ETH) $ 3,614.80
tether
Tether (USDT) $ 0.998671
bnb
BNB (BNB) $ 609.41
solana
Solana (SOL) $ 150.23
staked-ether
Lido Staked Ether (STETH) $ 3,614.71
usd-coin
USDC (USDC) $ 0.999515
xrp
XRP (XRP) $ 0.488312
dogecoin
Dogecoin (DOGE) $ 0.136991
the-open-network
Toncoin (TON) $ 7.99
cardano
Cardano (ADA) $ 0.416298
shiba-inu
Shiba Inu (SHIB) $ 0.000021
avalanche-2
Avalanche (AVAX) $ 30.07
tron
TRON (TRX) $ 0.117793
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 66,712.87
chainlink
Chainlink (LINK) $ 15.05
polkadot
Polkadot (DOT) $ 6.36
uniswap
Uniswap (UNI) $ 11.39
bitcoin-cash
Bitcoin Cash (BCH) $ 426.16
near
NEAR Protocol (NEAR) $ 5.66
litecoin
Litecoin (LTC) $ 78.94
matic-network
Polygon (MATIC) $ 0.614695
wrapped-eeth
Wrapped eETH (WEETH) $ 3,764.13
leo-token
LEO Token (LEO) $ 5.88
dai
Dai (DAI) $ 0.998778
pepe
Pepe (PEPE) $ 0.000012
internet-computer
Internet Computer (ICP) $ 9.55
kaspa
Kaspa (KAS) $ 0.160655
ethereum-classic
Ethereum Classic (ETC) $ 25.38
fetch-ai
Fetch.ai (FET) $ 1.47
renzo-restaked-eth
Renzo Restaked ETH (EZETH) $ 3,607.84
aptos
Aptos (APT) $ 7.86
ethena-usde
Ethena USDe (USDE) $ 1.00
monero
Monero (XMR) $ 177.93
render-token
Render (RNDR) $ 8.37
hedera-hashgraph
Hedera (HBAR) $ 0.086009
filecoin
Filecoin (FIL) $ 5.23
mantle
Mantle (MNT) $ 0.897461
stellar
Stellar (XLM) $ 0.098799
cosmos
Cosmos Hub (ATOM) $ 7.20
blockstack
Stacks (STX) $ 1.90
okb
OKB (OKB) $ 46.17
arbitrum
Arbitrum (ARB) $ 0.921942
crypto-com-chain
Cronos (CRO) $ 0.098313
dogwifcoin
dogwifhat (WIF) $ 2.59
immutable-x
Immutable (IMX) $ 1.70
first-digital-usd
First Digital USD (FDUSD) $ 0.998197
injective-protocol
Injective (INJ) $ 25.02
sui
Sui (SUI) $ 0.976416
optimism
Optimism (OP) $ 2.08