{"id":143204,"date":"2023-09-01T18:14:58","date_gmt":"2023-09-01T12:44:58","guid":{"rendered":"https:\/\/dripp.zone\/news\/?p=143204"},"modified":"2023-09-01T18:14:58","modified_gmt":"2023-09-01T12:44:58","slug":"balancer-exploited-in-nearly-900k-after-vulnerability-warning-crypto-news","status":"publish","type":"post","link":"https:\/\/dripp.zone\/news\/balancer-exploited-in-nearly-900k-after-vulnerability-warning-crypto-news\/","title":{"rendered":"Balancer exploited in nearly $900k after vulnerability warning &#8211; Crypto News"},"content":{"rendered":"<div data-v-2649fa34=\"\">\n<p>Ethereum automated market maker and decentralized finance protocol Balancer was exploited for nearly $900,000, the protocol confirmed on X (formerly Twitter) on Aug. 27, just days after disclosing a vulnerability that affected several pools.<\/p>\n<p>An Ethereum address allegedly belonging to the attacker has been<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/Meir_Dv\/status\/1695786374186549540\/photo\/1\"> revealed<\/a> by blockchain security expert Meier Dolev. Following the exploit, the address <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/etherscan.io\/address\/0xB23711b9D92C0f1c7b211c4E2DC69791c2df38c1#tokentxns\">received<\/a> two transfers of Dai (<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/cointelegraph.com\/dai-price-index\">DAI<\/a>) stablecoin worth $636,812 and $257,527, respectively, bringing its total balance to over $893,978. <\/p>\n<p>&#8220;Balancer is aware of an exploit related to the vulnerability below,&#8221; the protocol&#8217;s team posted on X, adding that while mitigation measures taken in recent days had drastically reduced risks, affected pools could not be paused. &#8220;To prevent further exploits, users must withdraw from affected LPs,&#8221; it advised.\u00a0<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Balancer is aware of an exploit related to the vulnerability below.<\/p>\n<p>Mitigation procedures have drastically reduced risks, but are unable to pause affected pools.<\/p>\n<p>To prevent further exploits, users must withdraw from affected LPs.<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/t.co\/PDzX32gqeS\">https:\/\/t.co\/PDzX32gqeS<\/a> <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/t.co\/b4CSqVFbDg\">https:\/\/t.co\/b4CSqVFbDg<\/a><\/p>\n<p>\u2014 Balancer (@Balancer) <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/Balancer\/status\/1695777503699435751?ref_src=twsrc%5Etfw\">August 27, 2023<\/a><\/p><\/blockquote>\n<p>Balancer first<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/forum.balancer.fi\/t\/vulnerability-found-in-some-pools\/5102?u=endymionjkb\"> disclosed<\/a> a critical vulnerability affecting its boosted pools on Aug. 22, urging users to withdraw funds from liquidity providers (LPs) and pausing pools to mitigate potential damage. At risk were assets deployed on Ethereum, Polygon, Arbitrum, Optimism, Avalanche, Gnosis, Fantom, and zkEVM. <\/p>\n<p>On the day of the vulnerability discovery, only 1.4% of its total assets were at risk, representing over $5 million worth of asset exposure. On Aug. 24, at least $2.8 million, or 0.42% of its total value locked (TVL),<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/balancer-says-2-8-million-still-at-risk-after-vulnerability-warning\"> were still at risk<\/a>. Balancer warned its users on X:<\/p>\n<blockquote><p>\u201cWe believe funds in the mitigated pools (labeled \u201cmitigated\u201d) are safe, but nevertheless strongly recommend timely migration to safe pools, or withdrawal. Pools that could not be mitigated are labeled \u2019at risk&#8217;. If you are an LP in any of these pools, please exit immediately.&#8221;<\/p><\/blockquote>\n<p>The protocol\u00a0<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/balancer-launches-on-ethereum-l2-network-optimism\">was deployed on the Optimism network<\/a> in June last year, seeking to increase user functionality and reduce fees.<\/p>\n<p><em><strong><em><a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/mint.cointelegraph.com\/?url=https:\/\/cointelegraph.com\/news\/north-korean-hackers-steal-2b-of-crypto-since-2018-report&amp;utm_source=cointelegraph_com&amp;utm_medium=appendix&amp;utm_campaign=articles\">Collect this article as an NFT<\/a><\/em><\/strong><em> to preserve this moment in history and show your support for independent journalism in the crypto space.<\/em><\/em><\/p>\n<p><strong><em>Magazine:<\/em><\/strong> <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/cointelegraph.com\/magazine\/recursive-inscriptions-bitcoin-supercomputer-defi-aws-possible\/\"><strong><em>Recursive inscriptions \u2014 Bitcoin \u2018supercomputer\u2019 and BTC DeFi coming soon<\/em><\/strong><\/a><\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Ethereum automated market maker and decentralized finance protocol Balancer was exploited for nearly $900,000, the protocol confirmed on X (formerly Twitter) on Aug. 27, just days after disclosing a vulnerability that affected several pools. An Ethereum address allegedly belonging to the attacker has been revealed by blockchain security expert Meier Dolev. Following the exploit, the [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":143205,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[235,203,210,234,231,232,237,238,236,233],"class_list":["post-143204","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blockchain","tag-bitcoin","tag-crypto-currency","tag-elon-musk","tag-ethereum","tag-hyperledger","tag-ibm","tag-mining","tag-nodes","tag-spacex","tag-tesla"],"_links":{"self":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/143204","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/comments?post=143204"}],"version-history":[{"count":2,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/143204\/revisions"}],"predecessor-version":[{"id":146372,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/143204\/revisions\/146372"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media\/143205"}],"wp:attachment":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media?parent=143204"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/categories?post=143204"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/tags?post=143204"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}