Low | Medium | High | Critical | Total | |
---|---|---|---|---|---|
Not fixed | 2 | - | - | - | 2 |
Fixed | 2 | 1 | 1 | - | 4 |
Total | 4 | 1 | 1 | 0 | 6 |
Click to show description
Quick Summary Euler Finance Suffers Hack Resulting in Loss of $196 Million USD in different assets. Details of the Exploit On March 13th, Euler Finance, an Ethereum-based noncustodial lending protocol, was attacked through a flash loan attack which resulted in the theft of millions in various cryptocurrencies, including Dai, USD Coin, staked Ether (StETH), and Wrapped Bitcoin (WBTC). According to on-chain data, the attacker carried out multiple transactions and was able to steal nearly $196 million ($8.7 million in Dai, $18.5 million in Wrapped Bitcoin, $135.8 million in Staked Ethereum, and $33.8 million in Circle's USD stablecoin, USDC). Meta Seluth, a crypto analytic firm, reported that the attack is similar to a deflation attack that took place one month prior. The attacker leveraged a multichain bridge to transfer funds from the BNB Smart Chain to Ethereum and then launched the attack. The funds were later deposited into Tornado Cash, a crypto mixer. Block Data Reference Exploit txs: https://etherscan.io/tx/0xc310a0affe2169d1f6feec1c63dbc7f7c62a887fa48795d327d4d2da2d6b111d https://etherscan.io/tx/0x47ac3527d02e6b9631c77fad1cdee7bfa77a8a7bfd4880dccbda5146ace4088f https://etherscan.io/tx/0x3097830e9921e4063d334acb82f6a79374f76f0b1a8f857e89b89bc58df1f311 https://etherscan.io/tx/0x465a6780145f1efe3ab52f94c006065575712d2003d83d85481f3d110ed131d9 https://etherscan.io/tx/0x62bd3d31a7b75c098ccf28bc4d4af8c4a191b4b9e451fab4232258079e8b18c4 https://etherscan.io/tx/0x71a908be0bef6174bccc3d493becdfd28395d78898e355d451cb52f7bac38617 Attacker addresses: https://etherscan.io/address/0x5f259d0b76665c337c6104145894f4d1d2758b8c https://etherscan.io/address/0xb2698c2d99ad2c302a95a8db26b08d17a77cedd4 Attacker contracts: https://etherscan.io/address/0xebc29199c817dc47ba12e3f86102564d640cbf99 https://etherscan.io/address/0x036cec1a199234fc02f72d29e596a09440825f1c
# | Name | Auditor | Date | Chains | Issues |
---|---|---|---|---|---|
1 | Swaap v2 Euler Adapter | ChainSecurity | 2024/11/08 | Off-Chain (Private) | No active critical issues |
2 | Euler Vault Kit | ChainSecurity | 2024/06/18 | Off-Chain (Private) | No active critical issues |
3 | Euler Ethereum Vault Connec... | OpenZeppelin | 2024/05/20 | Off-Chain (Private) | No active critical issues |
4 | Euler Price Oracle Audit | OpenZeppelin | 2024/05/20 | Off-Chain (Private) | No active critical issues |
5 | Euler Vault Kit (EVK) Audit | OpenZeppelin | 2024/05/20 | Off-Chain (Private) | No active critical issues |
6 | Price Oracles | ChainSecurity | 2024/05/15 | Off-Chain (Private) | No active critical issues |
7 | Ethereum Vault Connector | ChainSecurity | 2024/05/06 | Off-Chain (Private) | No active critical issues |