Stake DAO has suffered a significant security breach on the Arbitrum network, resulting in the illegal minting of approximately 5.44 trillion vsdCRV tokens. The attacker reportedly gained access to the protocol deployer's private key and altered the LayerZero v2 endpoint configuration, enabling the creation of fraudulent cross-chain messages. This exploit allowed the attacker to mint tokens directly to their wallet without market purchases.
Blockchain security firm Blockaid revealed that the attacker has already sold some of the tokens, converting them into about 43.78 ETH, which has been transferred back to the Ethereum mainnet. The Stake DAO team is actively investigating the breach, focusing on the private key compromise and potential impacts on other contracts. Users have been advised to revoke authorizations to mitigate further risks.
Stake DAO Hit by Arbitrum Attack, 5.44 Trillion vsdCRV Illegally Minted
免責事項: Phemexニュースで提供されるコンテンツは、あくまで情報提供を目的としたものであり、第三者の記事から取得した情報の正確性・完全性・信頼性について保証するものではありません。本コンテンツは金融または投資の助言を目的としたものではなく、投資に関する最終判断はご自身での調査と、信頼できる専門家への相談を踏まえて行ってください。
