Protocolo Onyx perde US$ 2.1 milhões após última violação de segurança
On 27 October, the decentralized peer-to-peer lending platform Onyx Protocol became the victim of a significant exploit, resulting in the loss of approximately $2.1 million. This exploit exposed a well-known bug related to a popular CompoundV2 fork, a vulnerability that had previously been leveraged in another attack in April. Blockchain investigator PeckShield brought attention to this security breach and the underlying bug. Despite the potential for financial devastation, this event went unnoticed by the protocol. An attacker exploited a known rounding issue in the Onyx Protocol to steal $2.1M. The Onyx Protocol hack was the result of a known rounding issue in the popular CompoundV2 fork. The attacker exploited this issue to steal $2.1M from the oPEPE market, which had been deployed just… — Polyzoa (@Polyzoa_xyz) 1 de novembro de 2023. The security breach centered around an oPEPE market on Onyx Protocol, which suffered from a liquidity deficit. The attacker seized upon this vulnerability, taking advantage of the markets liquidity shortfall and a known rounding issue. The attack was initiated by making donations to borrow funds from other markets with healthier liquidity, diverting these acquired funds to the compromised oPEPE market. Once in this market, the bad actors exploited the rounding issue, making it possible to