@RDNTCapital Suffers Major Exploit, Losing Millions In Market Attack
Last night, decentralized finance (DeFi) platform @RDNTCapital fell victim to a significant security breach that resulted in a massive loss of funds from its markets. The attack targeted the platform’s multisig wallet, which is responsible for critical tasks such as contract upgrades and transferring funds. The wallet, identified as 0x111ceeee040739fd91d29c34c33e6b3e112f2177, operates on a multisignature model that requires 3 out of 11 signatures to authorize transactions. https://twitter.com/CyversAlerts/status/1846798484063547468?t=nWyMujPe5QwwTTSsWS_t8Q&s=19 Unfortunately, the attacker managed to gain control of permissions for three of the wallet’s signers, bypassing security measures. By using these three compromised private keys to sign off-chain, the hacker was able to transfer ownership of the LendingPoolAddressesProvider to a malicious contract. The attacker then updated the lending pool’s logic to a backdoor contract, which allowed them to siphon funds from various lending markets. Funds Stolen Now Converted To ETH And BNB The stolen […]