Futuros
Aceda a centenas de contratos perpétuos
TradFi
Ouro
Plataforma de ativos tradicionais globais
Opções
Hot
Negoceie Opções Vanilla ao estilo europeu
Conta Unificada
Maximize a eficiência do seu capital
Negociação de demonstração
Introdução à negociação de futuros
Prepare-se para a sua negociação de futuros
Eventos de futuros
Participe em eventos para recompensas
Negociação de demonstração
Utilize fundos virtuais para experimentar uma negociação sem riscos
Lançamento
CandyDrop
Recolher doces para ganhar airdrops
Launchpool
Faça staking rapidamente, ganhe potenciais novos tokens
HODLer Airdrop
Detenha GT e obtenha airdrops maciços de graça
Launchpad
Chegue cedo ao próximo grande projeto de tokens
Pontos Alpha
Negoceie ativos on-chain para airdrops
Pontos de futuros
Ganhe pontos de futuros e receba recompensas de airdrop
Investimento
Simple Earn
Ganhe juros com tokens inativos
Investimento automático
Invista automaticamente de forma regular.
Investimento Duplo
Aproveite a volatilidade do mercado
Soft Staking
Ganhe recompensas com staking flexível
Empréstimo de criptomoedas
0 Fees
Dê em garantia uma criptomoeda para pedir outra emprestada
Centro de empréstimos
Centro de empréstimos integrado
Centro de Património VIP
Aumento de património premium
Gestão de património privado
Alocação de ativos premium
Fundo Quant
Estratégias quant de topo
Staking
Faça staking de criptomoedas para ganhar em produtos PoS
Alavancagem inteligente
New
Alavancagem sem liquidação
Cunhagem de GUSD
Cunhe GUSD para retornos RWA
OKX Loses Over $400,000 To Hackers
According to blockchain security company SlowMist, OKX DEX, a decentralized exchange aggregator platform, lost cryptocurrency valued at over $400,000.
An attacker was able to transfer tokens that users had not allowed by compromising the management privileges of a market maker contract, according to the explanation for the vulnerability.
On the OKX DEX aggregator platform, a deprecated proxy contract was the subject of a recent vulnerability that allowed a hacker to obtain administration access to the contract without authorization.
OKX DEX: Deprecated Contract Raises Concerns
When a protocol stops actively using a contract to carry out user transactions, it is considered deprecated. It appears that OKX has updated the contract but hasn’t entirely stopped using it.
The claimTokens function of the OKX DEX smart contract experienced a problem, according to blockchain security firm SlowMist. The TokenApprove contract, which required user authorization, invokes the ability to send cash to a trustworthy DEX Proxy.
On December 12, the SlowMist team reported that the OKX DEX Proxy Admin Owner upgraded the DEX Proxy contract with a new implementation. The purpose of this new implementation was to invoke the claimTokens function straight from the DEX contract.
The exchange said that 18 of the approved addresses for the contract had been compromised, and linked the event to the management rights of a cancelled OKX DEX market maker contract being compromised.
Additionally, the exchange pledged to pay back all impacted users. It would also carry out a comprehensive security examination in order to stop something similar from happening again.
OKX Hack: Actual Damages Unknown
According to PeckShield, another researcher specializing in blockchain security, this vulnerability has cost over $2.76 million.
In the last 30 days, OKX DEX is thought to have had over 50,000 active user wallets; however, it is unknown how many users were impacted by the most recent hack.
Users should employ caution while communicating with DeFi protocols, especially those supported by well-known firms in the industry, as highlighted by the OKX DEX breach.
Featured image from Shutterstock
Disclaimer: The article is provided for educational purposes only. It does not represent the opinions of NewsBTC on whether to buy, sell or hold any investments and naturally investing carries risks. You are advised to conduct your own research before making any investment decisions. Use information provided on this website entirely at your own risk.