{"id":39431,"date":"2022-11-03T13:48:51","date_gmt":"2022-11-03T17:48:51","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=39431"},"modified":"2022-11-13T14:50:34","modified_gmt":"2022-11-13T18:50:34","slug":"skyward-finance-exploit-results-in-3m-loss","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/skyward-finance-exploit-results-in-3m-loss\/","title":{"rendered":"Skyward Finance Exploit Results In $3M Loss"},"content":{"rendered":"\n<h5 class=\"wp-block-heading\" id=\"h-according-to-reports-the-hacker-removed-1-1-million-near-tokens-from-skyward-finance-which-were-worth-3-million-at-the-time-of-publication\">According to reports, the hacker removed 1.1 million NEAR <a href=\"https:\/\/coinscreed.com\/staging\/nubank-plans-to-issue-loyalty-tokens-on-polygon-blockchain.html\" target=\"_blank\" rel=\"noreferrer noopener\">tokens <\/a>from Skyward finance, which were worth $3 million at the time of publication.<\/h5>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000-1024x576.jpg\" alt=\"Skyward Finance Exploit Results In $3M Loss\" class=\"wp-image-39433\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000-1024x576.jpg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000-300x169.jpg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000-768x432.jpg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000-150x84.jpg 150w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000-750x422.jpg 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000-1140x641.jpg 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000.jpg 1200w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Skyward Finance Exploit Results In $3M Loss<\/figcaption><\/figure>\n\n\n\n<p>According to reports, 1.1 million Near Protocol (NEAR $3.04) tokens\u2014worth an estimated $3 at the time of publication\u2014have apparently been stolen from Skyward Finance an initial DEX offering (IDO) platform that enables equitable token distribution for companies on the <a href=\"https:\/\/coinscreed.com\/staging\/aurora-raises-90-million-fund-to-finance-defi-apps-on-near-protocol.html\" target=\"_blank\" rel=\"noreferrer noopener\">Near Protocol<\/a>. Sanket Naikwadi, a community moderator for Aurora Lab, posted the information on Twitter. He claimed that the exploit was discovered by a member of the Near Protocol community who goes by the handle Nearscout.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">The <a href=\"https:\/\/twitter.com\/skywardfinance?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">@skywardfinance<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a> was just exploited for ~1.1M <a href=\"https:\/\/twitter.com\/search?q=%24NEAR&src=ctag&ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">$NEAR<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> Tokens (Worth ~3M) . \ud83d\ude22<br><br>Thnx to <a href=\"https:\/\/twitter.com\/NearScout?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">@NearScout<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> for noticing the treasury drain, he pinged me asking if something is wrong with skyward&#8230; then we looked into contract txns and found out about the exploit and sus txns.<br><br>smol \ud83e\uddf5<\/p>&mdash; Sank\u039et \u24c3 | sanketn81.polygon \/ near \/ lens (\ud83d\udc32,\ud83d\udc9a) (@sanket_naikwadi) <a href=\"https:\/\/twitter.com\/sanket_naikwadi\/status\/1587854474587930624?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">November 2, 2022<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>Ref finance, a community-led multi-purpose decentralized finance (DeFi) platform built on the Near Protocol, and the Skyward team have been informed of the drain, per the chain of tweets on the<a href=\"https:\/\/www.google.com\/search?q=Skyward+Finance+Exploit+Results+In+%243M+Loss&oq=Skyward+Finance+Exploit+Results+In+%243M+Loss&aqs=chrome..69i57j0i546j69i59j69i60.712j0j7&sourceid=chrome&ie=UTF-8\" target=\"_blank\" rel=\"noreferrer noopener\"> vulnerable<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a>. The exploiter reportedly initiated the drain by buying lots of skyward tokens on Ref Finance, and \u201cthen redeemed it through Treasury on Skyward Finance,\u201d where they appear to have \u201cgot lots of NEAR than what 1 SKYWARD was worth&#8221;. <\/p>\n\n\n\n<p>Holders of SKYWARD Tokens are advised to exchange or redeem their tokens elsewhere and should stop communicating with the platform according to Naikwadi, who also noted that the \u201chacker has already withdrawn NEAR to lots of different wallets.&#8221; <\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">Then he repeated the same process a few more times until all wNEAR from the treasury was not redeemed.<br><br>Although the Skyward team responded instantly, but since treasury contracts are locked those can&#39;t be paused by anyone, not even team. <a href=\"https:\/\/t.co\/1BTalhYo51\" target=\"_blank\">pic.twitter.com\/1BTalhYo51<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/p>&mdash; Sank\u039et \u24c3 | sanketn81.polygon \/ near \/ lens (\ud83d\udc32,\ud83d\udc9a) (@sanket_naikwadi) <a href=\"https:\/\/twitter.com\/sanket_naikwadi\/status\/1587854499921551360?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">November 2, 2022<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>The DeFi ecosystem appears to be experiencing an increase in exploits. October 2022 has been dubbed &#8220;the biggest month of the biggest year ever for hacker activity&#8221; by blockchain analytics company Chainalysis. On October 12, it was reported that Mango Markets, a DeFi exchange based in <a href=\"https:\/\/coinscreed.com\/staging\/solana-struggles-below-key-resistance.html\" target=\"_blank\" rel=\"noreferrer noopener\">Solana<\/a>, had lost $100 million worth of bitcoin, causing its token to fall by 52%. TempleDAO was defrauded of $2 million on the same day as the Mango Markets.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>According to reports, the hacker removed 1.1 million NEAR tokens from Skyward finance, which were worth $3 million at the time of publication. According to reports, 1.1 million Near Protocol (NEAR $3.04) tokens\u2014worth an estimated $3 at the time of publication\u2014have apparently been stolen from Skyward Finance an initial DEX offering (IDO) platform that enables [&hellip;]<\/p>\n","protected":false},"author":43,"featured_media":39433,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11476],"tags":[202,197,12002],"class_list":["post-39431","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hacks-and-scams","tag-blockchain","tag-defi","tag-hacks"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/11\/jpg_20221103_181443_0000.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/39431","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/43"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=39431"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/39431\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/39433"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=39431"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=39431"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=39431"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}