Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
Decentralized Web3 Project Onyx Hacked for $3,800,000 Worth of Crypto: PeckShield

Decentralized Web3 Project Onyx Hacked for $3,800,000 Worth of Crypto: PeckShield

Daily HodlDaily Hodl2024/09/26 16:00
By:by Rhodilee Jean Dolor

Decentralized liquidity protocol Onyx has suffered a security breach that siphoned millions worth of crypto assets from the platform.

Blockchain security firm  PeckShield says the perpetrators made off with over $3.8 million in crypto assets, which include  7.35 million of the protocol’s utility token Onyxcoin ( XCN ), 50,000 Tether ( USDT ), 4.1 million Virtual USD ( VUSD ), 5,000 DAI and 0.23 Wrapped Bitcoin ( WBTC ).

The attackers also swapped the tokens for Ethereum ( ETH ).

“Here are the latest whereabouts of the stolen $3.8 million funds from OnyxDAO.”

Decentralized Web3 Project Onyx Hacked for $3,800,000 Worth of Crypto: PeckShield image 0 Source: PeckShield

PeckShield identifies an  issue  that enabled the hackers to compromise the platform.

“It seems today’s victim OnyxDAO (w/ >$3.8m loss) falls prey to a known precision issue in forked CompoundV2 code base… The bug is exploited to leverage a nearly empty market to manipulate the exchange rate.”

Aside from the bug in the forked Compound V2 code base, the attackers also took advantage of another vulnerability.

“Another issue that facilitates the hack is related to the NFTLiquidation contract, which does not properly validate (untrusted) user input and was exploited to inflate the self-liquidation reward amount.”

Decentralized Web3 Project Onyx Hacked for $3,800,000 Worth of Crypto: PeckShield image 1 Source: PeckShield

Onyx, which conducted an investigation following the incident,  says  the primary issue is the NFTLiquidation contract.

“Onyx Protocol was subject to a security incident where a nefarious actor exploited the protocol to drain VUSD from the protocol. This exploit can be identified and understood from a vulnerability in the NFT Liquidation contract.”

Don't Miss a Beat – Subscribe to get email alerts delivered directly to your inbox

Check Price Action

Follow us on X , Facebook and Telegram

Surf The Daily Hodl Mix

Generated Image: Midjourney

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Bitget Incentive Program: Win up to 1,100 USDT Per Week

Bitget Announcement2025/10/25 16:00

CandyBomb x MET: Trade futures to share 20,000 MET!

Bitget Announcement2025/10/24 09:00

CandyBomb x MET: Trade futures to share 20,000 MET!

Bitget Announcement2025/10/24 09:00

CandyBomb x APR: Trade futures to share 88,888 APR!

Bitget Announcement2025/10/24 09:00