{"id":65311,"date":"2023-11-23T06:15:34","date_gmt":"2023-11-23T10:15:34","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=65311"},"modified":"2023-11-23T06:15:38","modified_gmt":"2023-11-23T10:15:38","slug":"kyberswap-hacked-for-46m-users-advised-to-withdraw-funds","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/kyberswap-hacked-for-46m-users-advised-to-withdraw-funds\/","title":{"rendered":"KyberSwap Hacked for $46M, Users Advised to Withdraw Funds"},"content":{"rendered":"\n<p>KyberSwap, a <a href=\"https:\/\/coinscreed.com\/staging\/how-decentralized-exchanges-are-upping-their-security-game.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">decentralized exchange,<\/a> has suffered a major security breach, resulting in the loss of around $46 million in various cryptocurrencies. The attack targeted the KyberSwap Elastic protocol, which offers speed, efficiency, and top-tier governance.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-1024x576.png\" alt=\"KyberSwap Hacked for $46M, Users Told to Withdraw\" class=\"wp-image-65313\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-1024x576.png 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-300x169.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-768x432.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-18x10.png 18w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-1320x743.png 1320w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-750x422.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap-1140x642.png 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap.png 1400w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>KyberSwap, which operates on the Kyber Network, has been hit by a massive exploit that drained about <strong>$46 million worth<\/strong> of crypto assets from its platform. <\/p>\n\n\n\n<p>The hack, which occurred on X, affected the KyberSwap Elastic protocol, a cross-chain token swap service that enables users to exchange tokens between Ethereum, Arbitrum, Optimism, and other blockchains.<br><br>According to <a href=\"https:\/\/twitter.com\/KyberNetwork\/status\/1727475235342217682\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">KyberSwap\u2019s official announcement,<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a> the exploit was caused by a vulnerability in the KyberSwap Elastic smart contract, which allowed the attacker to manipulate the price of the tokens and withdraw them from the liquidity pools. <\/p>\n\n\n\n<p>KyberSwap said that it had paused the KyberSwap Elastic protocol and notified all the affected liquidity providers. The platform also urged all users to withdraw their funds from KyberSwap as a precautionary measure.<\/p>\n\n\n\n<p>The attacker, who used multiple addresses to carry out the hack, reportedly left some on-chain messages on the Ethereum blockchain, suggesting that they were willing to negotiate with the KyberSwap team, employees, DAO members, and liquidity providers. <\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large\"><img decoding=\"async\" width=\"1024\" height=\"499\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-1024x499.jpeg\" alt=\"KyberSwap Hacked for $46M, Users Advised to Withdraw Funds\" class=\"wp-image-65314\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-1024x499.jpeg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-300x146.jpeg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-768x374.jpeg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-1536x748.jpeg 1536w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-18x9.jpeg 18w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-1320x643.jpeg 1320w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-750x365.jpeg 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter-1140x555.jpeg 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/Kyberswap-exploiter.jpeg 1651w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Kyberswap exploiter reaches out with a message: <em>Dear Kyberswap Developers, Employees, DAO members and LPS, Negotiations will start in a few hours when I am fully rested. Thank you.<\/em><\/figcaption><\/figure>\n\n\n\n<p>The messages also claimed that the attacker did not intend to harm the platform or the users but only wanted to expose the security flaw.<br><br>The exploit had a significant impact on the platform\u2019s total value locked (TVL), which is a measure of the amount of crypto assets locked in a DeFi protocol. <\/p>\n\n\n\n<p>According to <a href=\"https:\/\/defillama.com\/protocol\/kyberswap\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">DeFiLlama,<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> a website that tracks DeFi data, KyberSwap\u2019s TVL dropped by nearly <strong>70%<\/strong> within hours of the hack, from $84.9 million to $14.32 million. <\/p>\n\n\n\n<p>The top affected assets in the exploit were Arbitrum (ARB), Optimism (OP), Ethereum (ETH), and Base, according to <a href=\"https:\/\/debank.com\/profile\/0xc9b826bad20872eb29f9b1d8af4befe8460b50c6\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">DeBank.<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> The attacker stole around <strong>$18.85 million<\/strong> in Arbitrum, <strong>$15.36 million <\/strong>in Optimism, and <strong>$7.44 million <\/strong>in Ethereum, among other tokens.<\/p>\n\n\n\n<p>The hack also had a negative effect on the price of Kyber Network Crystal (KNC), the native token of the Kyber Network, which powers KyberSwap and other DeFi applications. <\/p>\n\n\n\n<p>According to CoinGecko, <a href=\"https:\/\/www.coingecko.com\/en\/coins\/kyber-network-crystal\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">KNC\u2019s price<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> fell by 2.86% in the last 24 hours, trading at $0.72 at the time of writing. However, the token\u2019s trading volume surged by 154.39% to $58.48 million, indicating increased market activity.<\/p>\n\n\n\n<p>The incident at KyberSwap is the latest in a series of hacks and exploits that have plagued the DeFi space in recent months, exposing the vulnerabilities and risks of the emerging sector. <\/p>\n\n\n\n<p>In October, Coinscreed reported that <a href=\"https:\/\/coinscreed.com\/staging\/cream-finances-defi-platform-suffers-a-19-million-loss-as-a-result-of-a-flash-loan-hack.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Cream Finance,<\/a> a DeFi platform, lost $130 million in a flash loan attack. In September, <a href=\"https:\/\/www.coindesk.com\/business\/2021\/09\/20\/cross-chain-protocol-pnetwork-loses-12m-to-hack\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">pNetwork,<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> a cross-chain bridge service, was hacked for $12.7 million in Bitcoin. <\/p>\n\n\n\n<p>These incidents have raised concerns about the security and regulation of DeFi platforms, which operate without intermediaries or centralized authorities.<\/p>\n\n\n\n<p>As the crypto industry faces increasing scrutiny and challenges from regulators, lawmakers, and hackers, the KyberSwap hack serves as a stark reminder of the need for more robust and reliable security measures and standards in the DeFi ecosystem. <\/p>\n\n\n\n<p>Meanwhile, users and investors are advised to exercise caution and due diligence when interacting with DeFi platforms and protocols.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>KyberSwap, a decentralized exchange, has suffered a major security breach, resulting in the loss of around $46 million in various cryptocurrencies. The attack targeted the KyberSwap Elastic protocol, which offers speed, efficiency, and top-tier governance. KyberSwap, which operates on the Kyber Network, has been hit by a massive exploit that drained about $46 million worth [&hellip;]<\/p>\n","protected":false},"author":44,"featured_media":65313,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11476,73],"tags":[197,2156,7907],"class_list":["post-65311","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hacks-and-scams","category-defi-news","tag-defi","tag-exploit","tag-kyberswap"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2023\/11\/KyberSwap.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/65311","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/44"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=65311"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/65311\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/65313"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=65311"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=65311"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=65311"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}