{"id":74933,"date":"2024-03-30T12:43:33","date_gmt":"2024-03-30T16:43:33","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=74933"},"modified":"2024-03-30T12:44:32","modified_gmt":"2024-03-30T16:44:32","slug":"solana-users-urged-to-revoke-app-permissions-amid-drain-attack","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/solana-users-urged-to-revoke-app-permissions-amid-drain-attack\/","title":{"rendered":"Solana Users Urged to Revoke App Permissions Amid Drain Attack"},"content":{"rendered":"\n<p>Solana is allegedly facing <a href=\"https:\/\/coinscreed.com\/staging\/crypto-phishing-attacks-over-1-million-decrease-75-in-february.html\" target=\"_blank\" rel=\"noreferrer noopener\">large-scale drain attacks<\/a> tied to meme coins, with developers urging users to secure assets by revoking app permissions.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441-1024x576.jpg\" alt=\"Solana Users Urged to Revoke App Permissions Amid Drain Attack\" class=\"wp-image-74935\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441-1024x576.jpg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441-300x169.jpg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441-768x432.jpg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441-750x422.jpg 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441-1140x641.jpg 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441.jpg 1200w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Solana Users Urged to Revoke App Permissions Amid Drain Attack<\/figcaption><\/figure>\n\n\n\n<p>They advise users to protect their assets by removing permissions from their apps. There have been multiple claims of financial losses due to illegal access, purportedly stemming from a wave of drain attacks against the <a href=\"https:\/\/coinscreed.com\/staging\/solana-becomes-ecosystem-partner-for-dmcc.html\" target=\"_blank\" rel=\"noreferrer noopener\">Solana ecosystem<\/a>. <\/p>\n\n\n\n<p>Blockchain developers have asked users on X to cancel their rights from decentralized applications to protect their assets from potential misuse by bad actors. <\/p>\n\n\n\n<p>While the exact source of the attack is still unknown, BONKbot, a <a href=\"https:\/\/www.google.com\/search?q=Solana+Users+Urged+to+Revoke+App+Permissions+Amid+Drain+Attack&rlz=1C1JJTC_enNG1049NG1049&sourceid=chrome&ie=UTF-8\" target=\"_blank\" rel=\"noreferrer noopener\">trading bot on Telegram<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a> that functions on the Solana network, has been suggested by several as a possible trigger for the hack. <\/p>\n\n\n\n<p>Though they acknowledge that the &#8220;exploits&#8221; have surfaced inside the larger ecosystem, the project's developers have refuted any charges. <\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">TLDR: BONKbot is SAFE &#8211; but there are exploits being triggered elsewhere in the ecosystem!<br><br>Our logs show that every user account being drained has previously exported their private keys. There are also non-BONKbot wallets being drained. BONKbot users who did not export their\u2026<\/p>&mdash; BONKbot (@bonkbot_io) <a href=\"https:\/\/twitter.com\/bonkbot_io\/status\/1773655415760588997?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">March 29, 2024<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>\n<\/div><\/figure>\n\n\n\n<p>The victims whose wallets were compromised have previously exported their <a href=\"https:\/\/coinscreed.com\/staging\/a-users-guide-importing-and-exporting-private-keys-in-web3-wallets.html\" target=\"_blank\" rel=\"noreferrer noopener\">private keys<\/a>, according to remarks made by the BONKbot team. The team further stated that &#8220;BONKbot users who did not export their keys are SAFE,&#8221; emphasizing that users who abstained from taking such activities are unaffected. <\/p>\n\n\n\n<p>There have been previous instances of a major drain attack on the Solana ecosystem similar to this one. A significant ecosystem exploit that affected thousands of users and resulted in losses of over $5 million was publicized in October 2022. <\/p>\n\n\n\n<p>The event is said to have come from Slope Finance, and many of the impacted addresses are associated with its establishment, importation, or use in the <a href=\"https:\/\/coinscreed.com\/staging\/uniswap-unveils-mobile-wallet-app-to-boost-defi-adoption.html\" target=\"_blank\" rel=\"noreferrer noopener\">mobile wallet app<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Solana is allegedly facing large-scale drain attacks tied to meme coins, with developers urging users to secure assets by revoking app permissions. They advise users to protect their assets by removing permissions from their apps. There have been multiple claims of financial losses due to illegal access, purportedly stemming from a wave of drain attacks [&hellip;]<\/p>\n","protected":false},"author":43,"featured_media":74935,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[21,11476],"tags":[12002,275],"class_list":["post-74933","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-hacks-and-scams","tag-hacks","tag-solana"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/croc_1711814285441.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/74933","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/43"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=74933"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/74933\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/74935"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=74933"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=74933"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=74933"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}