LI.FI publishes incident report about nearly $12 million hack, blames ‘human error'
Quick Take 153 wallets connected to LI.FI lost around $12 million worth of USDC, USDT and DAI stablecoins and other cryptocurrencies in an exploit on Tuesday. The team attributed the vulnerability to “an individual human error in overseeing the deployment process.”
LI.FI, the popular cross-chain blockchain protocol, exploited on Tuesday , has published an incident report showing that an “individual human error” during a smart contract update left the protocol vulnerable to bad actors. An estimated 153 wallets were affected, with losses nearing $12 million worth of USDC, USDT and DAI stablecoins.
“Upon detecting the security breach, our team immediately activated the incident response plan, successfully disabling the vulnerable facet across all chains. This action contained the threat and prevented any further unauthorized access,” the team wrote in the report published Thursday.
The team goes on to say they were able to quickly detect the security breach, activate an “incident response plan” and disable the faulty code, thereby containing the threat and preventing “any further unauthorized access.”
According to the report, the vulnerability stemmed from an issue with validating transactions through an issue with how the protocol interacted with a shared LibSwap code library used by multiple decentralized exchanges and other DeFi protocols due to “an individual human error in overseeing the deployment process.”
Security firm Decurity previously suggested the “root cause” appeared to be an issue with an update to one of LI.FI’s smart contracts.
LI.FI said its primary concern now is assisting in the recovery of user funds, and is collaborating with law enforcement authorities and web3 security firms on that front.
“If you are an affected wallet holder, please complete the following form so that we can get in touch with you directly. Your cooperation is greatly appreciated,” the team wrote.
LI.FI is a protocol that allows users to trade across various blockchains and is integrated into a number of wallets. Security firm PeckShield found the protocol suffered a similar exploit resulting in a $600,000 loss in 2022.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Scroll refutes allegations of ‘predatory’ airdrop
Crypto user convinces AI bot Freysa to transfer $47K prize pool
Google asks appeals court to reverse Epic Games’ antitrust case win
Ether ETFs are beating their Bitcoin counterparts amid recent ETH rally