Kyber Network: Attack Vector Removed, Affected Wallets Compensated

Kyber Network has issued a KyberSwap incident update stating that its team has successfully removed the attack vector and has compensated for the impacted wallets. Kyber Network said that its team successfully identified and removed the attack vector on September 4th. KyberSwap Smart Contracts, Aggregator and API are, and have always been, secure. This was a frontend exploit, which is unrelated to Kyber Network’s smart contracts. There were two impacted wallets that now are made whole. One wallet has been fully compensated of all funds. The other wallet provided approvals to the malicious script, and successfully revoked his approval before losing any funds. In addition, the KyberSwap team, together with industry partners & security experts, will continue to conduct a thorough monitoring of systems and transactions to detect any suspicious approvals or transactions, and scan all possible issues. Previously, Kyber Network announced on September 2nd that the KyberSwap frontend had been attacked, $265K of user funds were lost, with 2 affected addresses. Kyber said it will compensate users all funds. On September 3rd, the Binance security team said it had identified two suspects in the KyberSwap attack. On September 5th, Kyber Network released the last public statement to the attacker, stating that the attacker who returns funds via centralized exchanges by 10:00 UTC on September 6th will receive a 15% bug bounty. Afterwards, the PeckShield security team monitored that the KyberSwap frontend exploiter already swapped 260,000 $USDC to 13 $WBTC.
Source

DeFi

DEX

Security Incidents

In This Article

Related News
Hyperliquid hits record $248 billion perp volume in May, capturing over 10% of Binance flow Hyperliquid hits record $248 billion perp volume in May, capturing over 10% of Binance flow
Sui DEX Cetus Protocol restarts platform after recovering from $223 million exploit Sui DEX Cetus Protocol restarts platform after recovering from $223 million exploit
Sui DEX Cetus says overlooked flaw in open-source library used by smart contract led to $223 million exploit Sui DEX Cetus says overlooked flaw in open-source library used by smart contract led to $223 million exploit
Term Finance recovers $1 million of $1.6 million loss to oracle configuration error Term Finance recovers $1 million of $1.6 million loss to oracle configuration error
Pump.fun launches DEX called PumpSwap to instantly migrate graduated token Pump.fun launches DEX called PumpSwap to instantly migrate graduated token
Latest News More More
1 Day Ago Ethereum community plans onchain ‘time capsule’ to mark 10th anniversary of network’s genesis block
6 Days Ago Circle's post-IPO stock surge pushes market cap near Coinbase and USDC
June 20 Kraken offers bitcoin ‘staking’ yield via Babylon without wrapping or lending
June 17 Trump makes over $57 million from WLFI sales, Truth Social files for Bitcoin and Ethereum combo ETF, and more
June 13 XRP Ledger adopts USDC one week after Circle goes public
delate
Use TokenInsight App All Crypto Insights Are In Your Hands
Open