CertiK issues a security alert: VerusCoin’s Ethereum cross-chain bridge appears to have been attacked, with approximately $7.53 million in assets transferred to the attacker’s address. CertiK said the incident may be similar to a vulnerability in May this year, in which the cross-chain bridge failed to verify whether the assets input on the Verus side were sufficient to cover the amount paid.

ETH-1.33%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 7
  • 2
  • Share
Comment
Add a comment
Add a comment
DefiDegenerate
· 7h ago
The pain point of cross-chain bridges is always the verification logic—this time, the $7.53 million expense is teaching the industry a lesson too, and it’s heartbreaking.
View OriginalReply0
CandlestickSculptor
· 7h ago
After looking at the details, the problem lies in insufficient validation of the side input assets—this kind of basic vulnerability is still showing up in 2024. Ridiculous.
View OriginalReply0
MAHunter
· 7h ago
Another cross-chain bridge incident—$7.53 million is gone just like that, and even security audits can’t save this DeFi era.
View OriginalReply0
ShrugMeme
· 7h ago
Every time a vulnerability like this happens, it follows the same pattern: the cross-chain bridge doesn’t verify whether the sidechain assets are sufficient. The technology stack needs a comprehensive upgrade.
View OriginalReply0
HashWatcher
· 7h ago
$7.53 million is enough to buy a lot of pizzas, but unfortunately they all ended up in the hackers’ pockets, and the security team has to work overnight to patch things up.
View OriginalReply0
CapitalGuardian
· 7h ago
CertiK’s warning was timely, but the attacker has already succeeded—now it’s all about reaction speed and subsequent handling.
View OriginalReply0
  • Pinned