SlowMist: The multi-signature mechanism was modified more than a week before the Drift theft, followed by an administrator privilege leak

robot
Abstract generation in progress

ME News Report, April 2nd (UTC+8), SlowMist published an analysis of the Drift theft incident, pointing out that one week before the attack, Drift adjusted its multi-signature mechanism to “2/5” (1 old signer + 4 new signers), and did not set a timelock. The attacker then gained admin privileges, forged CVT tokens, manipulated oracles, disabled security mechanisms, and transferred high-value assets from the liquidity pool. Currently, the stolen funds have mainly been consolidated into an Ethereum address, totaling approximately 105,969 ETH (about $226 million). SlowMist stated that the related fund flows are still being actively tracked. (Source: ChainCatcher)

ETH2,35%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin