Hackers drain nearly $200 million from crypto startup in ‘free-for-all’ attack

Hackers drain nearly 0 million from crypto startup in ‘free-for-all’ attack


Billions of dollars of value have been wiped off the cryptocurrency market in recent months. Companies in the industry are feeling the pain. Lending and trading firms are facing a liquidity crisis and many firms have announced layoffs.

Yu Chun Christopher Wong | S3studio | Getty Images

Hackers drained almost $200 million in cryptocurrency from Nomad, a tool that lets users swap tokens from one blockchain to another, in yet another attack highlighting weaknesses in the decentralized finance space.

Nomad acknowledged the exploit in a tweet late Monday.

“We are aware of the incident involving the Nomad token bridge,” the startup said. “We are currently investigating and will provide updates when we have them.”

It’s not entirely clear how the attack was orchestrated, or if Nomad plans to reimburse users who lost tokens in the attack. The company, which markets itself as a “secure cross-chain messaging” service, wasn’t immediately available for comment when contacted by CNBC.

Blockchain security experts described the exploit as a “free-for-all.” Anyone with knowledge of the exploit and how it worked could seize on the flaw and withdraw an amount of tokens from Nomad — sort of like a cash machine spewing out money at the tap of a button.

It started with an upgrade to Nomad’s code. One part of the code was marked as valid whenever users decided to initiate a transfer, which allowed thieves to withdraw more assets than were deposited into the platform. Once other attackers cottoned on to what was going on, they deployed armies of bots to carry out copycat attacks.

“Without prior programming experience, any user could simply copy the original attackers’ transaction call data and substitute the address with theirs to exploit the protocol,” said Victor Young, founder and chief architect of crypto startup Analog.

“Unlike previous attacks, the Nomad hack became a free-for-all where multiple users started to drain the network by simply replaying the original attackers’ transaction call data.”

Sam Sun, research partner at crypto-focused investment firm Paradigm, described the exploit as “one of the most chaotic hacks that Web3 has ever seen” — Web3 being a hypothetical future iteration of the internet built around blockchain technology.

Nomad is what’s known as a “bridge,” a tool that lets users exchange tokens and information between different crypto networks. They’re used as an alternative to making transactions directly on a blockchain like Ethereum, which can charge users high processing fees when there’s lots of activity happening at once.

Instances of vulnerabilities and poor design have made bridges a prime target for hackers seeking to swindle investors out of millions. More than $1 billion in crypto assets has been stolen through bridge exploits so far in 2022, according to a report from crypto compliance firm Elliptic.

In April, a blockchain bridge called Ronin was exploited in a $600 million crypto heist, which U.S. officials have since attributed to the North Korean state. Some months later, Harmony, another bridge, was drained of $100 million in a similar attack.

Like Ronin and Harmony, Nomad was targeted through a flaw in its code — but there were a few differences. With those attacks, hackers were able to retrieve the private keys needed to gain control over the network and start moving out tokens. In Nomad’s case, it was much simpler than that. A routine update to the bridge enabled users to forge transactions and make off with millions’ worth of crypto.





Source

How bond market’s private credit crisis fears are playing out in fixed-income ETFs
Finance

How bond market’s private credit crisis fears are playing out in fixed-income ETFs

ETF Edge How bond market’s private credit crisis fears are playing out in fixed-income ETFs Published Sat, Apr 11 20269:49 AM EDTUpdated 12 Min Ago Krysta Escobar WATCH LIVE Source

Read More
Michael Burry says he’s still betting against Palantir after Trump post boosts stock
Finance

Michael Burry says he’s still betting against Palantir after Trump post boosts stock

Key Points “Big Short” investor Michael Burry is sticking with his bearish bet against defense tech company Palantir Technologies. Burry said in a Substack post that he’s still holding long-dated put options on Palantir. He said he’s been betting against the company since the fall of 2025. The investor’s comments come as President Donald Trump […]

Read More
Stocks making the biggest moves premarket: Lumentum, ServiceNow, Sandisk & more
Finance

Stocks making the biggest moves premarket: Lumentum, ServiceNow, Sandisk & more

Check out the companies making the biggest moves premarket: Lumentum Holdings , Coherent — Lumentum shares jumped 5% after its CEO told Bloomberg that the optical and photonic producer’s products are booked through 2027, amid the artificial intelligence buildout. Shares of Coherent, another photonics company, were up 4%. Both companies have investments from Nvidia . […]

Read More