Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesCopyBotsEarn

DeFi Protocol Gamma Loses $4 Million in Price Manipulation Exploit

BeInCryptoBeInCrypto2024/01/04 11:04
By:By Harsh Notariya 4 January 2024, 10:30 GMT+0000Updated by Ryan James 4 January 2024, 10:31 GMT+0000

Liquidity management protocol Gamma lost $4 million as exploiters created many malicious contracts to conduct a price manipulation attack, it has since also been attacked again.

Last year, over $1.8 billion was lost to security incidents. 2024 has just begun, and the Web3 security incidents continue to create havoc.

How Exploiters Attacked Gamma Smart Contracts

Web3 security firm Cyvers reported on X (Twitter) that attackers created many malicious contracts to steal $4 million from Gamma. Cyvers CEO Deddy Lavid told BeInCrypto:

“The attacker created around 40 malicious contracts that targeted Gamma smart contracts. The type of hack is Price manipulation.”

Lavid further explains the price manipulation attack :

“In the price manipulation attack on Gamma smart contracts, the hacker exploited vulnerabilities to inflate assets’ prices artificially. They executed this by using multiple malicious contracts, manipulating market conditions to their advantage. Once the prices were distorted, they converted and moved the funds rapidly, evading typical security measures.”

Sponsored
Sponsored

As per Cyvers, after conducting the attack, the hackers bridged USDT from the Arbitrum chain to the Ethereum network using the Stargate bridge. Later, they swiftly swapped USDT to Ethereum (ETH) to avoid the freezing of funds.

Read more: How To Use Arbitrum Bridge To Bridge Ethereum Tokens

For context, Tether often freezes the stolen USDT to avoid the further movement of funds.

The screenshot below shows the flow of Gamma’s stolen funds. The exploiters have not yet moved the Ethereum or distributed it to multiple addresses. Not to mention, exploiters funded the fresh wallet through Tornado Cash deposit.

Gamma Exploiters’ Flow of Funds. Source: MetaSleuth

Gamma team is working with the security experts to investigate the incident further. It wrote on X (Twitter) :

All public vaults/hypervisors have had deposits shut down. You may withdraw your funds if need be. Our vaults will continue to be managed normally for now, but deposits are currently shut down until we identify and mitigate the problem.

Sponsored
Sponsored

Additionally, the protocol has since been attacked again by another attacker who has taken 10 ETH, which is estimated to be $22,000. The attacker has also interacted with the Kyber Networks exploiter, asking for ETH for gas .

2024 Already Plagued With Exploits and Hacks

It has been just four days into 2024, yet three security incidents have been recorded so far. On January 1, BeInCrypto reported that the decentralized cross-chain protocol Orbit Chain lost over $81 million to hackers.

Sponsored
Sponsored

Then, on January 3, Radiant Capital lost $4.5 million due to a smart contract breach. These reports show that hackers exploited over $90 million in 2024.

Read more: Crypto Project Security: A Guide to Early Threat Detection

Do you have anything to say about the Gamma exploit or anything else? Write to us or join the discussion on our Telegram channel. You can also catch us on TikTok , Facebook , or X (Twitter).

For BeInCrypto’s latest Bitcoin (BTC) analysis, click here .

Sponsored
Sponsored
Explore more

Disclaimer

In adherence to the Trust Project guidelines, BeInCrypto is committed to unbiased, transparent reporting. This news article aims to provide accurate, timely information. However, readers are advised to verify facts independently and consult with a professional before making any decisions based on this content. Please note that our  Terms and Conditions ,  Privacy Policy , and  Disclaimers  have been updated.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Stake to earn
CEC, QTLX, GDV and other popular new coins are in hot progress!
Stake now!

You may also like

1inch reveals new cross-chain swap feature

Cointelegraph2024/09/19 02:58

Bitget announcement: Removal of VGXUSDT trading pairs from Futures Trading Bots

Bitget Futures Trading Bots will remove the following pairs on September 26, 2024, 15:00 (UTC+8) to provide a better user trading experience: VGXUSDT Notes: Users should close the relevant orders in advance if they hold strategy orders in these trading pairs. The release and purchase features of th

Bitget Announcement2024/09/19 02:41