Poly Network Loses $600M in Cross-Chain Attack

  • Poly Network lost roughly $273 million worth of tokens from Ethereum, $253 million from BSC, and $85 million from Polygon.
  • While different crypto and DeFi figures have expressed their desire to help in the situation, only Tether was able to freeze around $33 million in USDT from one of the addresses.
Hacker with gloves

Freepik

Cross-chain decentralized finance (DeFi) protocol Poly Network has become the victim of one of the largest exploits in DeFi history, with the platform loosing around $600 million from three chains, Poly Network said on Twitter on 10 August.

According to the announcement, the unknown attacker targeted the three blockchains Poly Network operated on — namely Ethereum, Binance Smart Chain, and Polygon — from which he was able to steal around $600 million in digital assets. More precisely, he was able to obtain roughly $273 million worth of tokens from Ethereum, $253 million from BSC, and around $85 million from Polygon. Poly Network tweeted:

“We call on miners of affected blockchain and crypto exchanges to blacklist tokens coming from the above addresses.”

The platform also urged the attacker to establish contact with them and return the stolen funds, otherwise it would be forced to take legal actions, and considering the size of the exploit “law enforcement in any country will regard this as a major economic crime and you will be pursued”.

Various figures in the crypto and DeFi space have already started providing assistance and support to Poly Network. The CEO of OKEx, Jay Hao, said his team was now “watching the flow of coins, and will do our best to manage the situation”, while Changpeng “CZ” Zhao, Binance’s CEO, stated that Binance was coordinating with “all our security partners” to proactively help Poly Network. Tether, on the other hand, has reportedly already frozen around $33 million in USDT in one of the addresses.

Discussion
Related Coverage
Unibot to Compensate Users Affected by Exploit
  • Popular Telegram bot Unibot, which is used to snipe trades on Uniswap, became a victim of a token approval exploit earlier today, when it was switching to a new router.
  • After confirming the exploit, Unibot assured users that their keys and wallets were safe, and that the project will compensate all affected users.
October 31, 2023, 3:01 PM
unlock

Shutterstock

Balancer Exploited After Giving Warning
  • DeFi protocol Balancer confirmed it was exploited almost a week after disclosing a critical vulnerability affecting several of its boosted pools.
  • The platform did its best to mitigate some of the risks but was unable to pause the affected pools, and an estimated $980,000 in DAI were stolen in an attack.
Kroll Data Breach Compromises FTX, BlockFi Customer Information
  • A cyber security incident at bankruptcy service provider Kroll has resulted in the exposure of “non-sensitive” customer data for claimants involved in the FTX and BlockFi cases.
  • Both companies confirmed that account passwords, systems, and funds remained safe, but warned customers to be on the lookout for phishing scams.