• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Polter Finance Breach: How Hackers Stole $12 Million

user avatar

by Giorgi Kostiuk

a year ago


Polter Finance, a decentralized lending and borrowing platform on the Fantom network, has fallen victim to a hack resulting in the loss of $12 million. The attackers exploited oracle manipulation and flash loans.

Purpose of Polter Finance

Polter Finance was a decentralized, non-custodial lending and borrowing platform on the Fantom blockchain. It allowed users to deposit assets to earn interest and borrow against holdings. The platform emerged in response to a demand for a service similar to the discontinued $GEIST protocol.

How Did the Hack Occur?

The attack involved the following steps:

1. The attacker secured a flash loan and borrowed nearly all $BOO tokens from the liquidity pool. 2. Oracle Manipulation: By draining the liquidity pool, the attacker artificially inflated the $BOO token price, which was recorded by Polter’s oracle. 3. Liquidity Drain: With the inflated price, the token was deposited into Polter Finance, allowing the hacker to drain all liquidity pools. 4. Exit: The attackers withdrew $12 million through Tornado Cash.

Prevention Measures and Takeaways

The root cause was a vulnerable oracle that enabled price manipulation of $BOO tokens. This could have been prevented with comprehensive protocol audits, disabling flash loans, and using robust oracle systems. The incident highlights the necessity for thorough security measures to prevent such losses.

The attack on Polter Finance underscores the critical importance of conducting thorough security audits and implementing robust measures to prevent potential vulnerabilities and future losses.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Phantom Launches Cash Debit Card to Enhance Crypto Transactions

chest

Phantom has launched its Phantom Cash debit card in the US, facilitating seamless transactions between cryptocurrencies and fiat currencies.

user avatarTomas Novak

Grok AI's Misinformation Incident Raises Concerns Over AI Reliability

chest

Grok AI, developed by Elon Musk's xAI, spread dangerous misinformation about the Bondi Beach shooting, misidentifying the hero and raising concerns over AI reliability.

user avatarEmily Carter

Cysic Faces Unsubstantiated Allegations of Manipulation

chest

Cysic faces unsubstantiated claims of manipulating its TGE cluster, with no primary evidence found.

user avatarKaterina Papadopoulou

Cysic Faces Scrutiny Over Token Manipulation and Financial Discrepancies

chest

Cysic's token generation event (TGE) is under investigation due to allegations of token manipulation and significant financial discrepancies.

user avatarMaya Lundqvist

Hedera's Growing Adoption Among Financial Institutions and Governments

chest

Hedera is witnessing significant adoption from financial institutions and governments for various applications, including payments, stablecoins, and asset tokenization.

user avatarLeo van der Veen

Orchard Protocol and Rising Metrics Boost Zcash Adoption

chest

The Zcash ecosystem is witnessing a boost in adoption due to initiatives like the Orchard protocol and rising Twitter metrics.

user avatarElias Mukuru

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.