Binance Smart Chain Halted Over 'Potential Exploit,' $100 Million Taken Off Chain - Decrypt (2024)

Decrypt’s Art, Fashion, and Entertainment Hub.

Discover SCENE

Transactions on the Binance blockchain, also known as BNB Chain and Binance Smart Chain, were halted today after a potential exploit in the network was detected through a spike in "irregular activity."

The initial announcement was posted to Twitter by BNB Chain at 9:19 pm EDT, saying there would be a temporary pause on the BSC network. By 9:35 pm EDT, however, the network pause turned into a halt.

"All systems are now contained, and we are immediately investigating the potential vulnerability,” the group tweeted. “We know the Community will assist and help freeze any transfers."

AD

AD

According to blockchain security firm SlowMist, the exploit allowed cybercriminals to get away with over $570 million in digital assets, including Ethereum, Polygon, BNB Chain, Avalanche, Fantom, Arbitrum, and Optimism.

"The attacker is spewing funds across liquidity pools and utilizing every bridge they can to get to safer chains," blockchain developer @0xfoobar tweeted, adding that there was "complete chaos on the chain."

This hack had the potential to be "either the first or second biggest hack of all time," @0xfoobar toldDecryptvia direct message, though the real impact will be significantly less given the mitigation efforts undertaken by the community.

The ultimate total value involved in the hack has yet to be determined, and currently varies based on how to account for the value of frozen versus transferred tokens.

AD

AD

BNB Chain assured the community that "all funds are safe." The BNB tokens were not pre-existing tokens stolen from wallets, but instead wholly created by the attacker.

According to Sam Sun, a researcher at Paradigm, the hacker somehow convinced the Binance Bridge to send out 1 million BNB tokens. When it worked, the hacker used the same exploit to have another 1 million BNB tokens sent to an address they controlled.

The answer was that the attacker had somehow convinced the Binance Bridge to simply send them 1,000,000 BNB. Twice. pic.twitter.com/kgafYlzIP2

— samczsun (@samczsun) October 6, 2022

By 10:20 pm EDT, BNB Chain said that $7 million in assets had been frozen before it could be transferred but acknowledged that between $70 million and $80 million were stolen from the Binance Smart Chain.

Initial estimates for funds taken off BSC are between $70M - $80M.

However, thanks to the community and our internal and external security partners, an estimated $7M has already been frozen

1/2

— BNB Chain (@BNBCHAIN) October 6, 2022

The group acknowledged the efforts of the Binance community and security personnel, and separately thanked a number of node providers "for their quick and decisive actions."

Binance CEO Changpeng Zhao later posted an update pointed to a thread on Reddit where the company provided more technical details, and saying that “the current impact estimate is around $100m USD equivalent."

"An exploit on a cross-chain bridge, BSC Token Hub, resulted in extra BNB," Zhao explained.

AD

AD

This hack is similar to the recent Ronin and Harmony Cross-Chain Horizon Bridge exploits, @0xfoobar tellsDecrypt. "Ronin was a private key exploit, [Harmony Bridge] was broken cryptography—the exact methodology differs a bit, but same general principles of broken cryptographic verification."

"Broken proof verification lets hackers forge arbitrary messages," he explained.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Binance Smart Chain Halted Over 'Potential Exploit,' $100 Million Taken Off Chain - Decrypt (2024)
Top Articles
Which one of the following is a land locked harbour ?KolkataVisakhapatnamChennaiMumbai
How to Watch - POV
Best Pizza Novato
Camera instructions (NEW)
Spn 1816 Fmi 9
12 Rue Gotlib 21St Arrondissem*nt
Jefferey Dahmer Autopsy Photos
Mylaheychart Login
Embassy Suites Wisconsin Dells
Cars For Sale Tampa Fl Craigslist
Over70Dating Login
Was sind ACH-Routingnummern? | Stripe
อพาร์ทเมนต์ 2 ห้องนอนในเกาะโคเปนเฮเกน
Zürich Stadion Letzigrund detailed interactive seating plan with seat & row numbers | Sitzplan Saalplan with Sitzplatz & Reihen Nummerierung
Identogo Brunswick Ga
Sonic Fan Games Hq
Billionaire Ken Griffin Doesn’t Like His Portrayal In GameStop Movie ‘Dumb Money,’ So He’s Throwing A Tantrum: Report
Equibase | International Results
Effingham Bookings Florence Sc
ABCproxy | World-Leading Provider of Residential IP Proxies
Noaa Duluth Mn
Timeforce Choctaw
Bennington County Criminal Court Calendar
Valic Eremit
Bidevv Evansville In Online Liquid
Airline Reception Meaning
Urban Dictionary Fov
Skymovieshd.ib
Marilyn Seipt Obituary
Bolly2Tolly Maari 2
Mark Ronchetti Daughters
Evil Dead Rise - Everything You Need To Know
6465319333
A Small Traveling Suitcase Figgerits
Ewwwww Gif
ATM Near Me | Find The Nearest ATM Location | ATM Locator NL
Alpha Asher Chapter 130
Sukihana Backshots
Verizon Outage Cuyahoga Falls Ohio
Casamba Mobile Login
Thor Majestic 23A Floor Plan
2Nd Corinthians 5 Nlt
American Bully Puppies for Sale | Lancaster Puppies
Advance Auto.parts Near Me
40X100 Barndominium Floor Plans With Shop
Heat Wave and Summer Temperature Data for Oklahoma City, Oklahoma
A Snowy Day In Oakland Showtimes Near Maya Pittsburg Cinemas
R Detroit Lions
Raley Scrubs - Midtown
BYU Football: Instant Observations From Blowout Win At Wyoming
Latest Posts
Article information

Author: Barbera Armstrong

Last Updated:

Views: 5824

Rating: 4.9 / 5 (59 voted)

Reviews: 82% of readers found this page helpful

Author information

Name: Barbera Armstrong

Birthday: 1992-09-12

Address: Suite 993 99852 Daugherty Causeway, Ritchiehaven, VT 49630

Phone: +5026838435397

Job: National Engineer

Hobby: Listening to music, Board games, Photography, Ice skating, LARPing, Kite flying, Rugby

Introduction: My name is Barbera Armstrong, I am a lovely, delightful, cooperative, funny, enchanting, vivacious, tender person who loves writing and wants to share my knowledge and understanding with you.