Decentralized Music Platform Audius Identifies Source of USD 6M Exploit, Says it Applied a Patch

Decentralization DeFi Ethereum Gaming Hack Music
Author
Author
Ruholamin HaqshanasVerified
Part of the Team Since
Oct 2021
About Author

Ruholamin Haqshanas is a contributing crypto writer for CryptoNews. He is a crypto and finance journalist with over four years of experience. Ruholamin has been featured in several high-profile crypto...

Last updated: 
Source: AdobeStock / MR

 

Decentralized music platform Audius has identified the bug that had allowed a hacker to pass a malicious governance proposal and transfer tokens worth USD 6m, adding that they have applied a patch to regain control of the protocol.

In a post-mortem, the protocol said that a vulnerability in its governance, staking, and delegation contracts on Ethereum (ETH) allowed a hacker to exploit the contract initialization code on July 23 and maliciously transfer AUDIO 18m (USD 6.075m) held by the community treasury.

Audius said that the compromised set of contracts was audited by blockchain security firm OpenZeppelin on August 25, 2020, prior to deployment, and by another security firm Kudelski on October 27, 2021.

“Fortunately, the Audius team was able to develop and apply a patch to quickly regain control of the protocol before the attacker could do more damage,” the team claimed.

At the time of the attack, the tokens were worth USD 6.1m. However, Etherescan transactions show that the attacker managed to run away with ETH 704.9 (worth USD 1.073m) after dumping the tokens that resulted in maximum slippage.

The team also claimed that the “vast majority” of Audius foundation, team, community, and other funds are safe and were unaffected by the incident. “Work is in progress in collaboration with the community on possible remediations for the loss of funds, and we are fortunate that many options are still available,” they said.

Meanwhile, at 7:28 UTC on Monday morning, Audius’ native token AUDIO is trading at around USD 0.33, down by 2% in a day and more than 4% in a week.

Notably, Audius is not the only decentralized finance (DeFi) project that has fallen victim to a hack over the past couple of days.

Virtual pet-owning game Neopets also confirmed late last week that it had suffered a breach of data, that email accounts and passwords “may have been affected,” and they recommend that users change their passwords.

“Neopets recently became aware that customer data may have been stolen. We immediately launched an investigation assisted by a leading forensics firm. We are also engaging law enforcement and enhancing the protections for our systems and our user data,” the company wrote in a Twitter thread on Thursday.

____

Learn more: 
Hackers Stole USD 670M from DeFi Projects in Q2, Up by 50% from Q2 2021
NFT Hackers Attack: Influencer Zeneca and Platform PREMINT are the Latest Targets

Crema Finance Hacker Takes USD 1.7M in Bounty, Returns USD 8M
ONE Keeps Trending Lower while Harmony Offers Hacker USD 1M in Bounty for Return of Funds

XCarnival Hacker Accepts ETH 1,500 Bounty and Returns Remaining ETH 1,467
Axie Infinity’s Ronin Bridge to Re-Open After Hack, Locked Funds to Be Returned

2M+

Active Monthly Users Around the World

250+

Guides and Reviews Articles

8

Years on the Market

70

International Team Authors
editors
+72 More
At Cryptonews, we aim to make cryptocurrency, blockchain, and Web3 understandable, and information available to everyone, no matter what level you are in your investment journey. Founded in 2017, Cryptonews has been dedicated to delivering reliable, multilingual coverage of the cryptocurrency industry.

Best Crypto ICOs

Discover trending tokens still in presale — early-stage picks with potential.

Explore Our Tools

Smart tools made for everyday crypto users

Market Overview

  • 7d
  • 1m
  • 1y
Market Cap
$3,101,367,847,011
-0.6
Trending Crypto

More Articles

Price Analysis
Bitcoin Price Prediction: BTC Price Drops Below $88,000, Could Bears Win 2025 Despite New ATH?
Arslan Butt
Arslan Butt
2025-12-23 14:18:23
Bitcoin News
Bitcoin Trapped Until 2026 as Holiday Trading Drains Market Liquidity: QCP
Anas Hassan
Anas Hassan
2025-12-23 14:07:31
Crypto News in numbers
editors
Authors List + 66 More
2M+
Active Monthly Users Around the World
250+
Guides and Reviews Articles
8
Years on the Market
70
International Team Authors