• Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021
No Result
View All Result
CryptoABC.net
No Result
View All Result

DEX Aggregator Li.Finance Exploited For $600,000 But Users Reimbursed 

March 23, 2022
in Australian Crypto News
Reading Time: 3min read
0 0
A A
0
DEX Aggregator Li.Finance Exploited For $600,000 But Users Reimbursed 
0
SHARES
9
VIEWS
ShareShareShareShareShare

Li.Finance, a decentralised exchange (DEX) based in Germany, has had one of its smart contracts exploited, resulting in 29 users losing an estimated US$600,000 worth of various assets. The vulnerability has since been fixed and the majority of the affected users reimbursed.

According to the Li.Finance postmortem, on March 20 an attacker exploited a contract responsible for pre-bridge swaps and was able to steal an estimated 200 ETH in a single transaction:

The affected 29 wallets were emptied of a variety of tokens, with the attack based on wallets that had their token contracts set to give infinite approvals. The tokens included were USDC, MATIC, RPL, GNO, USDT, MVI, AUDIO, AAVE, JRT, and DAI. They were all converted to ETH and are still sitting in the hacker’s wallet.

Bug Bounty Option Ignored

The protocol also gave the hacker the option to claim a bug bounty, but there has been no response. The writer added in the post: “If you are reading this, we would be extremely grateful to provide a generous bounty and would obligate ourselves not to disclose any information about your identity.”

The thief’s wallet address containing the stolen funds. Source: Etherscan

Li.Fi Being a Nice Guy

The official post stated that the vulnerability had since been patched and the majority of affected users compensated within 24 hours. Out of the affected 29 wallets, 25 have been reimbursed for a total of US$80,000.

Owners of the remaining US$517,000 owed to four wallets have been given the option to transform the lost funds into an angel investment into Li.Fi, and thus future LI.FI tokens will be given to them under the same terms as an investor in the current funding round. Doing it this way reduces the damage to the platform’s treasury and also allows users to recover their investment with “an opportunity that would not be possible otherwise with huge upside potential”.

Importance of Audits and Security in DeFi

According to Li.Finance CEO Philipp Zentner, the platform was only a week away from its scheduled security audit. The audit might have been able to catch the bug before it was exploited, but nothing is assured:

This exploit has provided another example of why security must be of utmost importance. As builders in the space, it is our responsibility to ensure that users’ funds are safe above [all] else. Our users can rest assured that the audit is happening and LI.FI is safe to use

Li.Finance postmortem

This latest hack demonstrates how giving infinite approvals to smart contracts can potentially open up a user’s funds to a greater amount of risk. Infinite approvals allow users to swap coins at a decentralised exchange an unlimited amount of times without needing any further approval.

Earlier this month, Deus Finance also suffered an attack that cost the protocol US$3 million, following closely on the heels of the Fantasm Finance hack that cost the project US$2.6 million. The importance of security cannot be understated in the space; according to the 2021 Chainalysis Crypto Crime report, crypto stolen from DeFi has increased 1,330 percent since 2020.

Share this article

Join in the conversation on this article’s Twitter thread.

Disclaimer:
The content and views expressed in the articles are those of the original authors own and are not necessarily the views of Crypto News. We do actively check all our content for accuracy to help protect our readers. This article content and links to external third-parties is included for information and entertainment purposes. It is not financial advice. Please do your own research before participating.


Credit: Source link

ShareTweetSendPinShare
Previous Post

Crypto Exchange FTX Officially Launches In Australia

Next Post

Bitcoin Steadies Above $42K, What Could Spark More Upsides

Next Post
Bitcoin Steadies Near $60K, Why BTC Could Surpass $62K

Bitcoin Steadies Above $42K, What Could Spark More Upsides

You might also like

Bitcoin May Sink To $50K, Standard Chartered’s Kendrick Warns

Bitcoin May Sink To $50K, Standard Chartered’s Kendrick Warns

March 11, 2026
Bitcoin May Still Fall Under $10,000, Bloomberg’s McGlone Warns

Bitcoin May Still Fall Under $10,000, Bloomberg’s McGlone Warns

March 12, 2026
Uniswap (UNI) Price Rallies 6.53% – Is Now the Time to Buy? Comprehensive Analysis & Trading Insights

WIF Price Prediction: Targets $0.22 Breakout by April 2026

March 15, 2026
FBI Probes Malware Hidden in Steam Games Targeting PC Players

FBI Probes Malware Hidden in Steam Games Targeting PC Players

March 16, 2026
Uniswap (UNI) Price Rallies 6.53% – Is Now the Time to Buy? Comprehensive Analysis & Trading Insights

LDO Price Prediction: Targets $0.32 Bounce Before Potential Drop to $0.28 Support

March 14, 2026
Bitcoin Holdings in Public Company Treasuries Exceed 200,000 BTC

Legal AI Survey Reveals Platform vs Point Solution Battle Heating Up

March 13, 2026
CryptoABC.net

This is an Australian online news/education portal that aims to provide the latest crypto news, real-time updates, education and reviews within Australia and around the world. Feel free to get in touch with us!

What's New Here!

Bitcoin Buying Picks Up, But $79,962 Remains The Key Resistance

Bitcoin Buying Picks Up, But $79,962 Remains The Key Resistance

March 17, 2026
VeChain Foundation Releases Q1 2024 Treasury Report

World and Coinbase Launch AgentKit to Verify Humans Behind AI Agents

March 17, 2026

Subscribe Now

  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2021 cryptoabc.net - All rights reserved!

No Result
View All Result
  • Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021

© 2021 cryptoabc.net - All rights reserved!

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Please enter CoinGecko Free Api Key to get this plugin works.