• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Polter Finance Breach: How Hackers Stole $12 Million

user avatar

by Giorgi Kostiuk

a year ago


Polter Finance, a decentralized lending and borrowing platform on the Fantom network, has fallen victim to a hack resulting in the loss of $12 million. The attackers exploited oracle manipulation and flash loans.

Purpose of Polter Finance

Polter Finance was a decentralized, non-custodial lending and borrowing platform on the Fantom blockchain. It allowed users to deposit assets to earn interest and borrow against holdings. The platform emerged in response to a demand for a service similar to the discontinued $GEIST protocol.

How Did the Hack Occur?

The attack involved the following steps:

1. The attacker secured a flash loan and borrowed nearly all $BOO tokens from the liquidity pool. 2. Oracle Manipulation: By draining the liquidity pool, the attacker artificially inflated the $BOO token price, which was recorded by Polter’s oracle. 3. Liquidity Drain: With the inflated price, the token was deposited into Polter Finance, allowing the hacker to drain all liquidity pools. 4. Exit: The attackers withdrew $12 million through Tornado Cash.

Prevention Measures and Takeaways

The root cause was a vulnerable oracle that enabled price manipulation of $BOO tokens. This could have been prevented with comprehensive protocol audits, disabling flash loans, and using robust oracle systems. The incident highlights the necessity for thorough security measures to prevent such losses.

The attack on Polter Finance underscores the critical importance of conducting thorough security audits and implementing robust measures to prevent potential vulnerabilities and future losses.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Sheila Waswa's Chasing Mavericks Leads the Charge in Africa's Blockchain Education

chest

Sheila Waswa, the founder and CEO of Chasing Mavericks, is making significant strides in shaping Kenya's Web3 infrastructure through education and community engagement in the blockchain space.

user avatarLi Weicheng

Chasing Mavericks Introduces Innovation Series to Empower African Web3 Founders

chest

Chasing Mavericks has launched an Innovation Series aimed at enhancing product thinking among African Web3 founders.

user avatarAisha Farooq

Understanding Juice Jacking: Risks and Prevention

chest

Juice Jacking poses risks to personal data, but users can take preventive measures.

user avatarBayarjavkhlan Ganbaatar

Juice Jacking: A Rising Cyber Threat

chest

Juice Jacking is a cyberattack that compromises data through tampered charging devices.

user avatarTenzin Dorje

Ethereum's Taker Buy Sell Ratio Indicates Increased Demand

chest

The Taker Buy Sell Ratio for Ethereum has spiked, indicating strong demand and optimism among traders.

user avatarMohamed Farouk

Challenges Faced by P2P Crypto Traders in Nigeria

chest

The Breet report highlights the significant challenges faced by P2P traders in Nigeria, including scams and poor platform support.

user avatarKenji Takahashi

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.