Beosin: Xave Finance hacked, leading to 1000x increase in RNBW

Oct 09,2022
KingData News: According to the Beosin EagleEye platform monitoring, the Xave Finance project was hacked, resulting in a 1,000-fold increase in RNBW. The attack transaction is 0xc18ec2eb7d41638d9982281e766945d0428aaeda6211b4ccb6626ea7cff31f4a. Beosin security team analysis found that the attacker first creates the attack contract 0xe167cdaac8718b90c03cf2cb75dc976e24ee86d3, the attack contract first calls the executeProposalWithIndex() function of DaoModule contract 0x8f90 to execute the proposal, the proposal content is to call the mint() function to cast 100,000, 000,000,000 RNBW and transfer ownership rights to the attacker. Finally the hacker converts it to xRNBW and stores it on the attacker's address (0x0f44f3489D17e42ab13A6beb76E57813081fc1E2). The stolen funds are still stored at the attacker's address and Beosin Trace will keep track of the stolen funds.
This metrics provides a follow-up of hack incidents such as the exploitation of the Harmony-eco cross-chain bridge Horizon and the NFT lending protocol XCarnival.
20,861Follow
29,965

Recommend

More