K线
数据链上
VIP
市值
API
排行
CoinOSNew
CoinClaw
语言
  • 简体中文
  • 繁体中文
  • English
全球行情数据应用领跑者,致力于更高效地提供有价值的信息。

功能

  • 实时行情
  • 特色功能
  • AI网格

服务

  • 资讯内容
  • 开放数据(API)
  • 机构服务

软件下载

  • PC版
  • Android版
  • iOS版

联系我们

  • 聊天室
  • 商务邮箱
  • 官方邮箱
  • 官方验证通道

加入社区

  • Telegram
  • Twitter
  • Discord

© Copyright 2013-2026. All rights reserved.

简体繁體English
|旧版

Solana DeFi Protocol Crema Loses $8.8M in Exploit

CN
coindesk
关注
3年前
AI 总结,5秒速览全文


Solana-based liquidity protocol Crema Finance had more than $8.78 million worth of cryptocurrencies stolen from its platform in an attack over the weekend, developers said in a tweet.


Crema said it had suspended its smart contract after the exploit. The protocol allows liquidity providers to set specific price ranges, add single-sided liquidity and conduct range order trading. This makes for a sophisticated and decentralized trading platform.


“We've been closely working with several experienced security institutes and relevant organizations to track the hacker's fund movements,” the developers said in a tweet.


Value locked on Crema plunged to $3 million on Monday from over $12 million on Saturday following the exploit, data shows. Crema has seen trading volumes of $1.34 billion since its inception in January.


The attacker started by creating a fake tick account. A tick account is "a dedicated account that stores price tick data in CLMM,” the developers said, referring to Crema's market making protocol. After that, the attacker exploited a command by writing the data on the fake account and circumventing security measures.


The attacker then used a flash loan to manipulate the prices of assets on liquidity pools. This, along with the false data entries, allowed the attacker to claim “a huge fee amount out from the pool.”


Flash loans allow traders to borrow unsecured loans from lenders by relying on smart contracts instead of third parties.


The stolen funds were swapped to 69422.9 solana (SOL) and 6,497,738 USD Coin (USDC). The Solana-based USDC was then bridged to the Ethereum network via Wormhole and swapped to 6,064 ether (ETH). These funds amount to over $8.5 million at current prices.


The attacker’s Ethereum address, 0x8021b2962dB803b73Aa874030B0B42c202E8458F as flagged by blockchain scanning tool Etherscan, had not moved the stolen funds or converted to other coins at writing time, the data show.




免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

|
|
APP下载
Windows
Mac
分享至:

X

Telegram

Facebook

Reddit

复制链接

|
|
APP下载
Windows
Mac
分享至:

X

Telegram

Facebook

Reddit

复制链接

coindesk的精选文章

1小时前
加密交易员看到Hyperliquid和人工智能代币引领下一个山寨币上涨。
2小时前
清晰法案可能会引发加密“收益即服务”的繁荣
5小时前
比特币暴跌至74,300美元,现货交易所交易基金在两周内损失22.6亿美元
查看更多

目录

|
|
APP下载
Windows
Mac
分享至:

X

Telegram

Facebook

Reddit

复制链接

相关文章

avatar
avatarbitcoin.com
1分钟前
ZEC 的上升,ARMA 法案,以及更多 - 一周回顾
avatar
avatarDecrypt
53分钟前
阿根廷推出了一款人工智能来预测未来。它无法预测一个错字。
avatar
avatarcoindesk
1小时前
加密交易员看到Hyperliquid和人工智能代币引领下一个山寨币上涨。
avatar
avatarbitcoin.com
2小时前
比特币滑落,Coinbase比特币溢价指数信号显示机构积累减少
avatar
avatarbitcoin.com
2小时前
比特币价格分析:BTC面临在74000美元下方更深的修正风险
APP下载
Windows
Mac

X

Telegram

Facebook

Reddit

复制链接