Radiant Capital Hit by $50 Million Crypto Hack

Radiant Capital, a DeFi lending platform, was hacked, resulting in losses exceeding $50 million. The incident raises serious concerns about multi-signature wallet security.

Radiant Capital, a decentralized finance (DeFi) lending platform, has suffered a significant security breach, resulting in the loss of over $50 million in user assets. The attack, which occurred on both the Binance and Arbitrum networks, has raised serious concerns about the vulnerabilities associated with multi-signature wallet systems in blockchain protocols.

Key Takeaways

  • Radiant Capital lost between $50 million and $58 million due to a hack.
  • The exploit involved a compromise of the platform's multi-signature wallet.
  • This incident marks the second major hack for Radiant Capital in 2024.
  • Users are advised to revoke permissions to the platform's smart contracts.

Overview of The Attack

On Wednesday, Radiant Capital was targeted by a cyberattack that exploited vulnerabilities in its smart contracts. Initial reports indicate that the attacker gained control of the protocol's multi-signature wallet, which is designed to require multiple approvals for transactions. However, the attacker managed to obtain the private keys of three out of the eleven signers, allowing them to drain funds from various liquidity pools.

According to estimates from multiple blockchain security firms, the total losses from the exploit range from $50 million to $58 million. The stolen assets included popular cryptocurrencies such as USDC, wrapped Bitcoin (wBTC), and wrapped Ethereum (wETH).

Response from Radiant Capital

In response to the attack, Radiant Capital has suspended its lending markets on both the Binance Chain and Arbitrum networks. The platform is currently collaborating with several cybersecurity firms, including SEAL911, Hypernative, ZeroShadow, and Chainalysis, to investigate the breach and implement recovery measures.

Radiant Capital issued a statement acknowledging the issue and urged users to revoke access to specific smart contracts to prevent further losses. The contracts to be revoked include:

  • 0xF4B1486DD74D07706052A33d31d7c0AAFD0659E1
  • 0x30798cFe2CCa822321ceed7e6085e633aAbC492F
  • 0xd50Cf00b6e600Dd036Ba8eF475677d816d6c4281
  • 0xA950974f64aA33f27F6C5e017eEE93BF7588ED07

Implications for DeFi Security

This incident highlights ongoing concerns regarding the security of multi-signature wallets in decentralized finance protocols. While these wallets are intended to enhance security by requiring multiple approvals for transactions, the low threshold of three signers in Radiant's case has drawn criticism from industry experts.

The attack also raises questions about the overall security practices within the DeFi space, particularly regarding how private keys are managed and protected. As the industry continues to grow, the need for robust security measures becomes increasingly critical.

Conclusion

The $50 million hack of Radiant Capital serves as a stark reminder of the vulnerabilities that exist within the DeFi ecosystem. As the platform works to recover from this incident, users are urged to remain vigilant and take necessary precautions to protect their assets. The incident underscores the importance of continuous security assessments and improvements in the rapidly evolving world of decentralized finance.

Sources

[ newsletter ]
Stay ahead of Web3 threats—subscribe to our newsletter for the latest in blockchain security insights and updates.

Thank you! Your submission has been received!

Oops! Something went wrong. Please try again.

[ More Posts ]

Bugcrowd And Least Authority Secure Web3 Platforms
26.11.2024
[ Featured ]

Bugcrowd And Least Authority Secure Web3 Platforms

Bugcrowd and Least Authority have formed an alliance to enhance security for Web3 platforms, leveraging advanced cryptographic techniques and crowdsourced testing.
Read article
Immunefi and Ethereum Foundation Launch $1.5M Attackathon to Boost Protocol Security
26.11.2024
[ Featured ]

Immunefi and Ethereum Foundation Launch $1.5M Attackathon to Boost Protocol Security

Immunefi and the Ethereum Foundation have launched a $1.5 million Attackathon to enhance Ethereum's protocol security, marking the first-ever crowdsourced security audit competition.
Read article
MrBeast Responds To Crypto Scam Allegations: Setting The Record Straight
25.11.2024
[ Featured ]

MrBeast Responds To Crypto Scam Allegations: Setting The Record Straight

MrBeast addresses crypto scam allegations in an exclusive interview, clarifying his investment practices and plans for legal action against misinformation.
Read article