Risk Warning: Beware of illegal fundraising in the name of 'virtual currency' and 'blockchain'. — Five departments including the Banking and Insurance Regulatory Commission
Information
Discover
Search
Login
简中
繁中
English
日本語
한국어
ภาษาไทย
Tiếng Việt
BTC
ETH
HTX
SOL
BNB
View Market
KiloEx publishes analysis of hacker incident: because the contract did not rewrite key functions, the attacker has returned 90% of the assets stolen across chains
2025-04-21 10:59:44

Odaily News KiloEx released a root cause analysis report on the hacking incident on April 21. The report pointed out that the cause of the incident was that the TrustedForwarder contract in its smart contract inherited OpenZeppelin's MinimalForwarderUpgradeable but did not rewrite the execute method, causing the function to be called arbitrarily. The attack occurred between 18:52 and 19:40 (UTC) on April 14, and the attacker deployed malicious contracts on opBNB, Base, BSC, Taiko, B2 and Manta chains to launch the attack.
After negotiation between KiloEx and the attacker, the attacker agreed to keep 10% as a bounty, and the remaining assets (including USDT, USDC, ETH, BNB, WBTC and DAI) have all been returned to the project's multi-signature wallet. The platform has completed the vulnerability repair and resumed operations.