Compartir este artículo

DeFi Project Akropolis Drained of $2M in DAI

Decentralized finance platform Akropolis’ yCurve pools have been drained resulting in the loss of $2 million.

Actualizado 14 sept 2021, 10:30 a. .m.. Publicado 12 nov 2020, 7:51 p. .m.. 1 min readTraducido por IA
miltiadis-fragkidis-LTRB5CiM0Yo-unsplash

Decentralized finance (DeFi) platform Akropolis has suffered a $2 million loss following a re-entrancy attack utilizing a flash loan from derivatives platform dYdX, according to Akropolis founder and CEO Ana Andrianova.

  • The attacker pulled out tranches of $50,000 in DAI from the project’s yCurve and sUSD pools, according to The Block researcher Steven Zheng and Andrianova. The attacker collected $2 million worth of the stablecoin before exhausting the pools.
  • A re-entrancy attack allows a user to withdraw more funds from a contract than the contract holds. Ethereum's 2016 The DAO hack was also a re-entrancy attack.
  • Akropolis’ Delphi savings pool was audited twice, the team said in the Discord, once by CertiK and also by firms SmartDec and Pessimistic.
  • Andrianova told CoinDesk an autopsy of the attack will be released Friday.

Update (November 12, 22:00 UTC): New communications from Akropolis including the type of attack have been added.

More For You

XRP News

A draft XRPL amendment notes that flash loan attacks are "structurally impossible" on the network because of how its transactions are built, an architectural quirk that has spared the chain from the exploit class that has cost Ethereum DeFi billions.

What to know:

  • Recent DeFi exploits on protocols like Thorchain, Drift and KelpDAO have relied on flash loans, a mechanism that does not exist on the XRP Ledger.
  • Because XRPL transactions are atomic and cannot include composable intra-transaction calls, flash loan attacks are structurally impossible on the network.
  • As XRPL pursues AMM upgrades...