Across released its July 17 Relayer security incident post-event report. The attacker exploited a vulnerability in software used to read off-chain events in Risk Labs’ Solana offline incident, forging 1,627 fake deposit events with a total notional value of about $41.7 million. Before pausing the Solana service, the Relayer completed advances for 581 of them, involving about $4.5 million of its own funds; the remaining approximately $37.0 million of fake deposits have all been rendered invalid.



Across says this incident did not involve any smart contract vulnerabilities, and all user transfers were completed that day or fully refunded. About $500k of the attacker’s funds have been locked within the protocol; Risk Labs’ current net loss is below $4 million and continues to decrease as funds are recovered. Currently, Solana order flow has been switched to be routed entirely via CCTP, and the ACX token acquisition plan is unaffected.
SOL-0.37%
ACX0.63%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned