Home/News/Crypto Protocols Lose $35M in Multiple Attacks
CoinDesk2 min read

By Interestana AI Editorial — AI-drafted, human-overseen. How we report

Crypto Protocols Lose $35M in Multiple Attacks

Crypto Protocols Lose $35M in Multiple Attacks

Multiple cryptocurrency protocols, including Verus and B² Network, collectively lost approximately $35 million in a series of attacks that occurred within hours of each other. These incidents highlight vulnerabilities in cross-chain systems, where compromised administrative keys, unchecked upgrade powers, and insufficient validation mechanisms were exploited to drain protocol funds. The attacks did not involve breaking the underlying cryptographic security of the blockchains themselves, indicating a focus on exploiting operational and governance weaknesses.

On March 23, 2024, the Verus protocol experienced a significant exploit targeting its bridge functionality. Attackers reportedly gained control of administrative keys, allowing them to mint an unlimited amount of Verus Coin (VRSC) and swap it for other assets on decentralized exchanges, resulting in an estimated loss of $6.5 million. This incident underscored the critical importance of securing administrative access and implementing robust multi-signature controls for sensitive operations.

Shortly after the Verus attack, the B² Network, a Bitcoin Layer 2 solution, also fell victim to an exploit. This attack, which occurred on March 24, 2024, involved a vulnerability in the network's bridge contract. Reports indicate that attackers were able to manipulate the bridge to withdraw funds that were not legitimately deposited, leading to losses estimated at $20 million. The exploit exploited a flaw in how the bridge processed deposit and withdrawal requests, allowing for unauthorized fund transfers.

Beyond Verus and B² Network, other cross-chain protocols and decentralized finance (DeFi) applications also reported losses in the same period, contributing to the total of $35 million. These additional incidents, though less detailed in public reports, shared similar attack vectors, including the exploitation of smart contract logic and compromised administrative privileges. The repeated nature of these attacks within a short timeframe has raised concerns among security experts about the overall security posture of cross-chain infrastructure and the need for more stringent auditing and risk management practices within the DeFi ecosystem.

Original source — read the full reporting at the publisher:

Read on CoinDesk

Get the weekly AI digest

AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.

Read next