blockchainreporter
  • News
    • Altcoins
    • Bitcoin
    • Blockchain
    • Ethereum
    • Adoption
    • NFT
    • DeFi
    • Metaverse
  • Education
  • Glossary
  • Advertise
No Result
View All Result
Track Crypto
blockchainreporter
  • News
    • Altcoins
    • Bitcoin
    • Blockchain
    • Ethereum
    • Adoption
    • NFT
    • DeFi
    • Metaverse
  • Education
  • Glossary
  • Advertise
No Result
View All Result
blockchainreporter
Track Crypto
No Result
View All Result
Bitcoin
BTC
1d:
7d:
Ethereum
ETH
1d:
7d:
Polkadot
DOT
1d:
7d:
Solana
SOL
1d:
7d:
Ripple
XRP
1d:
7d:
Shiba INU
SHIB
1d:
7d:

Attacker Exploits CoW Swap DEX and Drains over $180K from its Contract Address

Shayan Chowdhury by Shayan Chowdhury
February 7, 2023 - 10:00 am
in defi news, altcoins news
0
CoW Swap
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

Recently, security firm PeckShield alerted that an exploiter drained over $180K worth of assets from CoW Swap DEX and transferred them to Tornado Cash. 

The decentralized finance (DeFi) industry has been growing rapidly in recent years, with millions of dollars being invested in various DeFi protocols. Despite this rapid growth, the DeFi sector is still relatively new and is facing numerous challenges, one of which is the threat of exploits. According to the latest report, CoW Swap, a decentralized exchange (DEX) built on Binance Smart Chain, experienced a significant exploit today, resulting in a loss of $180K from its contract address. 

CoW Swap Becomes The Latest Victim Of DeFi Exploit 2023

CoW Swap is the trailblazer in trading interfaces built on the CoW Protocol. CoW Swap is more than just a typical Meta DEX aggregator; it’s a game-changer. With its innovative technology, users can buy and sell tokens without the hassle of gas fees. All transactions are settled directly between peers or can be executed into any on-chain liquidity source, providing an extra layer of protection against MEV attacks. 

It seems (1) @CoWSwap's GPv2Settlement contract has been tricked 10 days ago to approve SwapGuard for DAI spending and (2) SwapGuard was just triggered to transfer out DAI from GPv2Settlement. Here are the two related txs: https://t.co/Tb8Sk5xqMR and https://t.co/JS7ejDhiAs https://t.co/Wpbeq4UoEP pic.twitter.com/oRWIzeOLzz

— PeckShield Inc. (@peckshield) February 7, 2023

However, the DEX has been recently exploited despite providing an enhanced encrypted layer. According to an on-chain security firm, PeckShield, the hacker successfully drained roughly 551 BNB from CoW Swap into Tornado Cash, which was valued around $181,600 at the time of writing. MevRefund, the sharp-eyed blockchain surveyor, noticed suspicious activity and sounded the alarm. The MEV searcher carefully tracked the movement of funds and found that they were moving away from CoW Swap. In a swift and diligent response, MevRefund warned the DEX and its users through a series of tweets, keeping everyone informed and protected against potential exploitation.

Hacker Triggers SwapGuard To Transfer DAI

Smart contract auditing firm BlockSec tracked a wallet address that was added as a solver of CoW Swap by a multisig. The daring attacker has struck CoWSwap and made off with a hefty sum. It seems that the attacker was able to outsmart CoWSwap’s GPv2Settlement contract by tricking it into approving SwapGuard for DAI spending. Then, like a thief in the night, the attacker triggered SwapGuard to transfer DAI from GPv2Settlement as SwapGuard allows anyone to make any function calls they please. The total amount exploited was a staggering $180,000: $123,000 in DAI, $50,000 in BNB, and $7,400 in ETH were moved using two wallets.

As news of the attack on CoWSwap spread, some members were quick to call for action, urging users to revoke approvals from the DEX. However, the decentralized finance (DeFi) experts at CoWSwap say there’s no need to hit the panic button. They assure everyone that everything is under control and revoking approvals is unnecessary. The DEX stated, “We are aware of an issue that has impacted the fees that CoW Protocol has collected over the past week. We have mitigated the issue and are conducting an investigation. Traders are in no way affected. More details to follow.”

Regarding revoking approvals, CoW Swap said, “Users don’t need to revoke approvals! The CoW Swap settlement contract only stores fees that the protocol accrued over the week. It cannot access user funds directly without providing an order signed by the user and giving them at least their limit-buy amount in return.”

Hacks and threats may be looming in the world of DeFi, but the industry isn’t backing down. In fact, it’s thriving like never before, as a recent report from DappRadar shows that DeFi had a blazing start to 2023. The data indicates that protocols in the space saw massive growth in their total value locked in the month of January. Despite the challenges, DeFi is proving to be a force to be reckoned with, and it’s only just getting started. 

Tags: AltcoinsBNBCryptocurrencyDeFiDEXHack
ShareTweet
Shayan Chowdhury

Shayan Chowdhury

Shayan Chowdhury is a freelance writer and digital nomad. He loves thinking, learning and writing about the crypto space. He is a crypto enthusiast who has gathered 3 years of writing experience. Through his in-depth research about the Web3 and analysis, he delivers high-quality engaging articles with clarity.Besides being a skilled journalist, he is a professional video editor. In the era of blockchain, he aspires to touch overwhelming success. He now works for BlockchainReporter as a news writer.

Recommended For You

The Network Corporation and TUSD Collaborate, to Offer Real-Time Attestation Services

by Umair Younas
March 29, 2023 - 12:28 pm
0
trueusd the network firm

The head of marketing for TUSD asserted that the company is confident in its capacity to stay in front of the curve.

Read more

BitKeep Fully Compensates $8M Loss from APK Exploit and Reinvents Itself with Bitget Rebranding

by Shayan Chowdhury
March 29, 2023 - 11:42 am
0
bitkeep

BitKeep has completed compensation for users affected by an $8 million exploit and announced a rebranding to Bitget. 

Read more

Burger King Hints at Accepting Dogecoin Payments: Is Mainstream Adoption Near?

by Mushu Butt
March 29, 2023 - 9:19 am
0
dogecoin price prediction

In a recent tweet, Burger King hints at accepting Dogecoin as a form of payment. Discover what exactly is happening and what it could mean for Doge.

Read more

Ariadne’s Integration of Celer IM Framework Facilitates Its Cross-Chain Yield Farming

by Umair Younas
March 28, 2023 - 11:35 am
0
celer network

The latest Celer IM integration enables Ariadne consumers to communicate with it from the supported chains in a convenient way.

Read more

Binance Experiences Massive Withdrawals Amid CFTC Crackdown

by Kester Odero
March 28, 2023 - 10:13 am
0
Binance

Amid a CFTC crackdown on Binance, the number of withdrawals on the firm jumped to over $640m within a day as the amount of BTC also dropped.

Read more
Next Post
Fuse network

Fuse Network Introduces New Update with SaaS Technology for Crypto Adoption via Web3 Payments

PARTNERS LIST

  • sp

PRESS RELEASE

BlogxqmUpIrVtq

OKX to Open Office in Australia

by chainwire
March 29, 2023 - 10:56 am
0

MELBOURNE, AUSTRALIA, 29th March, 2023, ChainwireBrand Ambassadors Daniel Ricciardo, Scotty James, and McLaren F1 driver Oscar Piastri join event at...

MetaverseStockWyFdFOXZEH

Metacade raises over $14.7M as presale set to close in 72 hours

by chainwire
March 29, 2023 - 7:42 am
0

London, UK, 29th March, 2023, ChainwireMetacade, one of the most exciting GameFi ventures of 2023, has now raised over $14.7m...

logoredscaled

TMRW Conference Announces Dates and Location for Its Second Belgrade Edition

by Max Clark
March 28, 2023 - 8:55 am
0

The largest emerging tech event in Europe TMRW conference brings the latest trends in AI, blockchain, metaverse and gaming.

WinklesFlamSeasonPromoImagehxiZRNWFL

Sphynx Ink and OpenSea Partner for “Winkles & Flam” Digital Collectibles

by chainwire
March 27, 2023 - 2:34 pm
0

Toronto, Canada, 27th March, 2023, ChainwireWinkles & Flam™, the ‘Cosplaying Canadian Kitties™,’ are the First Original Cartoon Duo of the...

n

BlockchainReporter is a trusted name in the cryptocurrency and blockchain technology news space, keeping its readers abreast of the latest and most significant trends in the industry.

Here at BlockchainReporter, our team of global writers is dedicated to providing price analysis on leading cryptocurrencies and covering the latest developments pertaining to bitcoin news, altcoins news, blockchain news, NFT news and cryptocurrency adoption news from around the world.

News

  • Altcoins
  • Bitcoin
  • Blockchain
  • Ethereum
  • Adoption
  • NFT
  • DeFi
  • Metaverse

Info

  • Education
  • Glossary
  • Market
  • Press Release

Company

  • About Us
  • Terms & Conditions
  • Advertise
  • Sitemap
  • Contact

@2022 – Blockchainreporter.net. All Right Reserved.

No Result
View All Result
  • News
    • Altcoins
    • Bitcoin
    • Blockchain
    • Ethereum
    • Adoption
    • NFT
    • DeFi
    • Metaverse
  • Education
  • Glossary
  • Advertise

@2023 - Blockchainreporter.net. All Right Reserved.