Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesCopyBotsEarn
Beosin: The reason for the attack on WazirX may be the leakage of the administrators private key of the multi-signature wallet

Beosin: The reason for the attack on WazirX may be the leakage of the administrators private key of the multi-signature wallet

Odaily2024/07/18 09:09
By:Odaily
Odaily News On July 18, 2024, according to Beosin Alert monitoring and warning, the Indian exchange WazirX was attacked. The attacker obtained the signature data of the exchanges multi-signature wallet administrator, modified the wallets logic contract, and made the wallet execute the wrong logic to steal assets. Attacker address: 0x6eedf92fb92dd68a270c3205e96dccc527728066 Attacked address: 0x27fd43babfbe83a81d14665b1a6fb8030a60c9b4 Based on the attackers attack behavior, it is speculated that the cause is the leakage of the administrators private key of the multi-signature wallet. Beosin briefly analyzes the cause of the attack as follows: 1. The attacker deployed the attack contract: 0x27fd43babfbe83a81d14665b1a6fb8030a60c9b4. The function of this contract is to extract the token assets specified by this contract. 2. The attacker obtains the signature data of the administrator of the wazirx multi-signature wallet and modifies the logical contract of the wallet to the deployed attack contract. The corresponding transaction is: https://etherscan.io/tx/0x48164d3adbab78c2cb9876f6e17f88e321097fcd14cadd57556866e4ef3e185d 3. The attacker submits a token extraction transaction to the wazirx multi-signature wallet. Due to the mechanism of the proxy mode, the wallet contract will use delegatecall to call the relevant functions of the attack contract and transfer the wallet tokens. Beosin Trace is tracking the stolen funds.
0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Locked for new tokens.
APR up to 10%. Always on, always get airdrop.
Lock now!

You may also like

The Daily: Dogecoin investors drop class-action lawsuit against Elon Musk, Michael Saylor plans $100K bitcoin party and more

Dogecoin investors have dropped their class-action lawsuit against Elon Musk, which accused him of manipulating the price of DOGE during its 2021 surge from less than $0.10 to around $0.70.JPMorgan analysts anticipate positive regulatory changes for crypto under President-elect Donald Trump, with clearer frameworks likely to benefit the industry.President-elect Donald Trump nominated bitcoin advocate Robert F. Kennedy Jr. for U.S. Secretary of Health and Human Services on Thursday.The following article is

The Block2024/11/15 20:23

Matrixport Included Developments That Will Affect Bitcoin in December in Its Weekly Report! Here Are the Details

Matrixport's latest weekly report highlights a number of positive factors that have underpinned Bitcoin's recent strong performance.

Bitcoinsistemi2024/11/15 20:00

Trump's Inflow Wave Has Ended! Spot Bitcoin and Ethereum ETFs Experience First Outflows Since Election!

It ended a wave of inflows and outflows in spot Bitcoin and Ethereum ETFs that has been ongoing since Donald Trump was elected president on November 5.

Bitcoinsistemi2024/11/15 19:55