• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Polter Finance Breach: How Hackers Stole $12 Million

user avatar

by Giorgi Kostiuk

2 years ago


Polter Finance, a decentralized lending and borrowing platform on the Fantom network, has fallen victim to a hack resulting in the loss of $12 million. The attackers exploited oracle manipulation and flash loans.

Purpose of Polter Finance

Polter Finance was a decentralized, non-custodial lending and borrowing platform on the Fantom blockchain. It allowed users to deposit assets to earn interest and borrow against holdings. The platform emerged in response to a demand for a service similar to the discontinued $GEIST protocol.

How Did the Hack Occur?

The attack involved the following steps:

1. The attacker secured a flash loan and borrowed nearly all $BOO tokens from the liquidity pool. 2. Oracle Manipulation: By draining the liquidity pool, the attacker artificially inflated the $BOO token price, which was recorded by Polter’s oracle. 3. Liquidity Drain: With the inflated price, the token was deposited into Polter Finance, allowing the hacker to drain all liquidity pools. 4. Exit: The attackers withdrew $12 million through Tornado Cash.

Prevention Measures and Takeaways

The root cause was a vulnerable oracle that enabled price manipulation of $BOO tokens. This could have been prevented with comprehensive protocol audits, disabling flash loans, and using robust oracle systems. The incident highlights the necessity for thorough security measures to prevent such losses.

The attack on Polter Finance underscores the critical importance of conducting thorough security audits and implementing robust measures to prevent potential vulnerabilities and future losses.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Ornith10: Tailored for Agentic Coding, Not General AI

chest

Ornith10 is specifically designed for agentic coding tasks, making it unsuitable for general-purpose AI applications.

user avatarKaterina Papadopoulou

DeepReinforce Unveils Ornith10: A Breakthrough in Open Source Coding Models

chest

DeepReinforce has launched Ornith10, a family of open-source coding models available in four sizes, optimized for agentic coding tasks.

user avatarMaya Lundqvist

New Report on Market and Onchain Data Released

chest

A report based on publicly available market and onchain data has been published. This report aims to provide insights into current market trends and dynamics.

user avatarLeo van der Veen

Cryip Emphasizes Commitment to Quality Reporting

chest

Cryip has published a report that emphasizes its strict editorial policy focusing on accuracy, relevance, and impartiality.

user avatarLi Weicheng

Beincrypto's Commitment to Editorial Integrity

chest

Beincrypto has released a report highlighting its strict editorial policy that focuses on accuracy, relevance, and impartiality.

user avatarAisha Farooq

Dailycoin Emphasizes Strict Editorial Policy

chest

Dailycoin emphasizes its strict editorial policy prioritizing accuracy and impartiality.

user avatarTenzin Dorje

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.