{"id":84450,"date":"2024-07-20T13:38:16","date_gmt":"2024-07-20T17:38:16","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=84450"},"modified":"2024-07-20T13:38:19","modified_gmt":"2024-07-20T17:38:19","slug":"rho-markets-faces-7-6m-loss-from-gray-hat-hackers","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/rho-markets-faces-7-6m-loss-from-gray-hat-hackers\/","title":{"rendered":"Rho Markets Faces $7.6M Loss from Gray Hat Hackers"},"content":{"rendered":"\n<p>Rho Markets experiences a temporary $7.6M loss of user assets due to gray hat hackers.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/rho-markets-1024x576.jpg\" alt=\"Rho Markets Faces $7.6M Loss from Gray Hat Hackers\" class=\"wp-image-84455\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/rho-markets-1024x576.jpg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/rho-markets-300x169.jpg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/rho-markets-768x432.jpg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/rho-markets-860x484.jpg 860w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/rho-markets.jpg 1280w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Rho Markets Faces $7.6M Loss from Gray Hat Hackers<\/figcaption><\/figure>\n\n\n\n<p>In an intriguing development, Rho Markets, a lending protocol that operates on the <a href=\"https:\/\/coinscreed.com\/staging\/cboe-confims-spot-ethereum-etf-new-listing-launch-date.html\" target=\"_blank\" rel=\"noreferrer noopener\">Ethereum layer<\/a> two networks Scroll, suffered a harrowing encounter with grey hat hackers that resulted in the temporary loss of $7.6 million in users' assets.<\/p>\n\n\n\n<p>Rho Markets announced in an X post on Friday that they had observed some suspicious activity on their platform, which prompted them to suspend all operations and initiate an investigation.<\/p>\n\n\n\n<p>The <a href=\"https:\/\/coinscreed.com\/staging\/ex-cantor-execs-launch-crypto-lending-platform.html\" target=\"_blank\" rel=\"noreferrer noopener\">crypto lending platform<\/a> guaranteed that most of its token pools were secure and that there was no reason for concern.<\/p>\n\n\n\n<p>Nevertheless, Cyvers Alerts disclosed that Rho Markets had been compromised, resulting in the theft of $7.6 million in assets from the platform's USDT and USDC token pools.<\/p>\n\n\n\n<p>They also claimed that the incident was the result of these peculiar actors obtaining access to Rho Markets's oracle control.<\/p>\n\n\n\n<p>An oracle is a mechanism that enables smart contracts to function efficiently by providing external data to a blockchain, thereby granting them access to real-time information.<\/p>\n\n\n\n<p>Therefore, the hackers could transfer assets off the <a href=\"https:\/\/coinscreed.com\/staging\/the-role-of-centralization-in-some-defi-platforms-concerns-and-considerations.html\" target=\"_blank\" rel=\"noreferrer noopener\">DeFi platform<\/a> by manipulating the oracle, which altered the data supplied to the smart contracts on Rho Markets.<\/p>\n\n\n\n<p>Nevertheless, the hackers promptly transmitted an on-chain message that indicated their readiness to restitute the stolen funds, subject to a specific stipulation. The message was as follows:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><em>Hello RHO team, our MEV bot has profited from your price oracle misconfiguration. We understand that the funds belong to users and are willing to fully return. But first we would like you to admit that it was not an exploit or a hack, but a misconfiguration on your end. Also, please provide what are you going to do to prevent it from happening again.<\/em><\/p>\n<\/blockquote>\n\n\n\n<p>This development suggested that Rho Markets was engaging with gray hat hackers, who attack platforms to expose potential system vulnerabilities.<\/p>\n\n\n\n<p>In contrast to white hat hackers, who are employed by platforms to identify potential security vulnerabilities, gray hat hackers typically operate without the consent of their targets.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large\"><img decoding=\"async\" width=\"1024\" height=\"618\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/p4uN0tpX-1-1024x618.png\" alt=\"\" class=\"wp-image-84454\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/p4uN0tpX-1-1024x618.png 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/p4uN0tpX-1-300x181.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/p4uN0tpX-1-768x464.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/p4uN0tpX-1-860x519.png 860w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/p4uN0tpX-1-1320x797.png 1320w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/p4uN0tpX-1.png 1479w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Rho Markets announced that they had effectively resolved the security incident, and all user assets were confirmed to be secure just a few hours later.<\/p>\n\n\n\n<p>Moving forward, they plan to refund their USDC, USDT, and <a href=\"https:\/\/app.balancer.fi\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">WETH pools<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a> and identify all active supply accounts at the time of the attack.<\/p>\n\n\n\n<p>Lastly, Rho Markets has announced that they will gradually recommence the borrowing and transfer services on the platform but will ensure that they adhere to stringent security protocols.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Rho Markets experiences a temporary $7.6M loss of user assets due to gray hat hackers. In an intriguing development, Rho Markets, a lending protocol that operates on the Ethereum layer two networks Scroll, suffered a harrowing encounter with grey hat hackers that resulted in the temporary loss of $7.6 million in users&#8217; assets. Rho Markets [&hellip;]<\/p>\n","protected":false},"author":36,"featured_media":84455,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[21],"tags":[20676,20674,20675],"class_list":["post-84450","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-7-6m","tag-gray-hat-hackers","tag-rho-markets"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/07\/rho-markets.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/84450","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/36"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=84450"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/84450\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/84455"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=84450"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=84450"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=84450"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}