Malicious actors hacked into the system of the Nomad bridge, a crypto project that allows users to move digital assets between blockchains, draining nearly $200 million of their funds. Nomad addressed the hack in a tweet and said:
The breach took place on Monday evening, with $45 million getting hacked by 7:15 P.M. This is the latest incident that has caused severe damage to crypto bridges following similar attacks on Axie Infinity’s Ronin Bridge that lost over $600 million.
A crypto investment firm Paradigm researcher, @samczsun, explained that the breach may have been due to a recent update on Nomad’s smart contracts. The upgrade showed zero hash as a valid root. This might have led to the spoofing of messages on Nomad. It may have made it simpler for hackers to spoof transactions, allowing users to withdraw money that wasn’t theirs.
In a series of tweets, the researcher explained that the hack could have been completed by putting credentials of others whose transactions had been successful. All they needed was to replace the contact details to complete the fraudulent transaction, adding that it might have been as simple as copy-pasting credentials to fetch money from others’ accounts.
It is also speculated that the hack could be connected to the event of making the complete list of investors public with the likes of @coinbase, @Cryptocom_Cap and @0xPolygon being mentioned on it. Last week, Nomad expressed its goal of making communications across blockchains safer. They added that they believe that secure cross-chain messaging is key to uniting DeFi ecosystems and unlocking block space’s true power and potential.
AI fraud, deepfake probes, SME cyber warnings, and ransomware cases highlight rising global risks in this week’s Cyber Express roundup.
French national bank authority confirmed a major data breach affecting 1.2 million bank accounts after a malicious actor stole credentials…
The real success of AI will not only depend on how powerful the technology becomes, but on how safely, fairly,…
Israel data breach totals two petabytes, with phishing up 35% and cyber influence attacks rising 170%, says Yossi Karadi.
The UMMC cyberattack halted surgeries, closed clinics statewide and triggered a federal probe into potential patient data exposure.
ESET researchers discovered PromptSpy, the first known Android malware to integrate generative AI directly into its execution flow, marking a…
This website uses cookies. By continuing to use this website you are giving consent to cookies being used.
Read More
View Comments