Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
Curve Finance under siege again

Curve Finance under siege again

KriptoworldKriptoworld2025/05/16 00:00
By:By kriptoworld

Curve Finance just got hit, again. They suffered a breach earlier this week, and this is the second cyber attack this month.

The bad guys pulled a move called a DNS hijack, redirecting Curve’s website visitors to some shady, malicious site.

Instead of landing on Curve’s legit platform, users got sent straight into the lion’s den, risking their wallets getting drained.

Enemies at the gates

Curve was quick to jump on X, waving the red flag and warning users don’t interact, as the curve.fi DNS might be hijacked.

X

They clarified it wasn’t a hack on their smart contracts, those stayed untouched, but the website itself was compromised.

The hackers messed with the domain’s address, sending users to a fake site designed to steal funds. That’s the dirty trick here.

The Curve team reassured everyone that their passwords and two-factor authentication were intact, and they’re scrambling to wrest control back from the crooks.

Meanwhile, on-chain security watchdog Blockaid spotted the suspicious activity and warned users to freeze all interactions with Curve until the all-clear sounds. No signing transactions, no swapping tokens, just sit tight.

Victims

Unfortunately, the fallout doesn’t stop at Curve. Other DeFi projects, like Convex Finance and Resupply, which rely on Curve’s data feeds, got caught in the crossfire.

Their services stumbled, operations hiccupped, and users felt the ripple effects. Both teams said their core systems are safe, but until Curve’s domain is fully restored, the pain continued.

Now, if you’re wondering what DNS hijacking even means, think of it as the cyber equivalent of a crooked street sign.

Instead of pointing you to the right place, it sends you down a dark alley where the bad guys wait to rob you blind.

It’s a reminder that while DeFi’s smart contracts are tough nuts to crack, their web frontends? Maybe not so much.

Risk

Curve’s no stranger to the drama. Just last week, their official X account got hijacked, though luckily no user funds vanished.

And back in 2022, a similar DNS breach led to a $570,000 ETH theft, laundered faster than you can say blockchain. The scars run deep.

So, DeFi protocols gotta beef up front-end security, pronto. Because no matter how bulletproof smart contracts are, if the website’s a sitting duck, the whole house of cards can come tumbling down.


Disclosure:This article does not contain investment advice or recommendations. Every investment and trading move involves risk, and readers should conduct their own research when making a decision.

Kriptoworld.com accepts no liability for any errors in the articles or for any financial loss resulting from incorrect information.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

New spot margin trading pair — HOLO/USDT!

Bitget Announcement2025/09/12 07:46

FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

- FUN plunged 32.34% in 24 hours to $0.008938, marking a 541.8% monthly loss amid prolonged bearish trends. - Technical breakdowns, elevated selling pressure, and forced liquidations highlight deteriorating market sentiment and risk-off behavior. - Analysts identify key support below $0.0080 as critical, with bearish momentum confirmed by RSI (<30) and MACD indicators. - A trend-following backtest strategy proposes short positions based on technical signals to capitalize on extended downward trajectories.

Bitget-RWA2025/09/12 06:14
FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

OPEN has dropped by 189.51% within 24 hours during a significant market pullback

- OPEN's price plummeted 189.51% in 24 hours to $0.8907, marking its largest intraday decline in history. - The token fell 3793.63% over 7 days, matching identical monthly and yearly declines, signaling severe bearish momentum. - Technical analysts cite broken support levels and lack of bullish catalysts as key drivers of the sustained sell-off. - Absence of stabilizing volume or reversal patterns leaves the market vulnerable to further downward pressure.

Bitget-RWA2025/09/12 06:14
OPEN has dropped by 189.51% within 24 hours during a significant market pullback

New spot margin trading pair — LINEA/USDT!

Bitget Announcement2025/09/11 10:04