Share this text
Based on a Could 14 report from blockchain safety platform CertiK, the Alex protocol bridge on the BNB community skilled $4.3 million in suspicious withdrawals following a shock contract improve.
We now have recognized suspicious transactions affecting @ALEXLabBTC
The primary piece of proof factors to a doable compromise of the personal key.
The deployer at 0xb3955302E58FFFdf2da247E999Cd9755f652b13b upgrades to the suspect implementation.
In whole, belongings price roughly $4.3 million… pic.twitter.com/02kiw2dFrm
— CertiK Alert (@CertiKAlert) May 14, 2024
The incident, which CertiK categorized as a “doable personal key compromise,” raised considerations concerning the safety of Bitcoin’s Layer 2 protocol bridge. As of this writing, Alex’s group has not but confirmed this exploit.
Knowledge from BscScan is collected by Alex Deployer. started 5 upgrades to the platform’s bridge endpoint settlement on the BNB Good Chain. Following these upgrades, roughly $4.3 million price of Binance Pegged Bitcoin (BTC), USD Coin (USDC), and Sugar Kingdom Odyssey (SKO) have been faraway from his BNB Good Chain facet of the bridge.
The improve transaction name successfully modified the implementation deal with to an unverified bytecode, making the change invisible to human language.
Additional investigation of the 05ed account revealed that it created one unconfirmed contract on Could tenth and two extra unconfirmed contracts on Could 14th, regardless of no prior exercise. has turn out to be clear. This suspicious conduct means that the account could also be managed by a malicious attacker making an attempt to take advantage of the Alex protocol throughout a number of networks.
Lower than an hour after the improve started, the bridge contract’s proxy deal with known as an unverified operate on one other deal with, leading to 16 BTC ($983,000), 2.7 million SKO ($75,000), and transferred USDC price $3.3 million. Shortly after, an account ending in 05ed, which had no transaction historical past earlier than Could 10, tried two withdrawals from the “group deal with.” Nonetheless, these withdrawal makes an attempt fail and end in an error message saying “You aren’t the proprietor.”
Based on CertiK, given {that a} comparable improve of the Alex protocol was additionally seen on Ethereum shortly after the preliminary change, it’s doable that the attackers have been seeking to drain funds from different networks as nicely.
Share this text