CryptoWorld News reports that, according to blockaid monitoring, the Alephium Tokenbridge on Ethereum was hacked. Due to 3 of the 4 guardian keys being leaked, the attacker signed a forged VAA and stole assets worth approximately $815,000 within about 7 minutes. During this process, the hacker minted 13.76 million wrapped ALPH out of thin air, and never unlocked the frozen USDT, USDC, WBTC, and WETH from the custodial contract. This incident was not due to a smart contract vulnerability; it was caused by the key leak. Currently, the hacker’s address still holds the stolen assets worth approximately $815,000, as well as 13.76 million uncollateralized supported wrapped ALPH.

ETH-0.33%
ALPH-3.71%
WBTC-0.7%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 9
  • Repost
  • Share
Comment
Add a comment
Add a comment
OutsiderOfZhiyuandao
· 3h ago
Cross-chain bridges have once again encountered issues; funds are still safest on the native chain.
View OriginalReply0
Don'tMessWithSlippage.
· 3h ago
It's not a contract bug, but a key leak, indicating that people are more vulnerable than the code.
View OriginalReply0
DegenWithNotebook
· 3h ago
Multi-signature to single-signature change, this guardian configuration is too outrageous.
View OriginalReply0
MountainShadowsBeforeTheStorm
· 4h ago
Losing 3 out of 4 keys is an even crazier probability than winning the lottery.
View OriginalReply0
0XNightRun
· 4h ago
Guardian key management is done like this; the project team should do a thorough review.
View OriginalReply0
AirdropOrganizer
· 4h ago
I advise everyone not to use this bridge for now; wait for the audit report.
View OriginalReply0
PickingUpCatsInTheContract
· 4h ago
The security ceiling for asset encapsulation depends on the weakest key.
View OriginalReply0
GateUser-5d719aba
· 4h ago
7 minutes, $810k stolen; hackers are faster than bank robbers.
View OriginalReply0
GoToSleepAfterMinting
· 4h ago
13.76 million uncollateralized ALPH, this is playing with the art of printing money out of thin air.
View OriginalReply0
View More
  • Pinned