Scan to download
BTC $75,542.34 +1.59%
ETH $2,354.23 +0.90%
BNB $633.29 +2.19%
XRP $1.44 +2.80%
SOL $88.13 +3.64%
TRX $0.3240 -0.91%
DOGE $0.0987 +2.66%
ADA $0.2575 +3.83%
BCH $449.47 +2.20%
LINK $9.55 +3.06%
HYPE $43.62 -2.66%
AAVE $116.72 +10.06%
SUI $0.9960 +2.95%
XLM $0.1691 +5.40%
ZEC $332.71 -3.26%
BTC $75,542.34 +1.59%
ETH $2,354.23 +0.90%
BNB $633.29 +2.19%
XRP $1.44 +2.80%
SOL $88.13 +3.64%
TRX $0.3240 -0.91%
DOGE $0.0987 +2.66%
ADA $0.2575 +3.83%
BCH $449.47 +2.20%
LINK $9.55 +3.06%
HYPE $43.62 -2.66%
AAVE $116.72 +10.06%
SUI $0.9960 +2.95%
XLM $0.1691 +5.40%
ZEC $332.71 -3.26%

Beosin: Harvest Keeper project maliciously transferred $933,000 of user funds

2023-03-20 07:40:23
Collection

According to ChainCatcher news, the blockchain security auditing company Beosin tweeted that they discovered the fixed income protocol Harvest Keeper maliciously transferring user funds, involving an amount of approximately $933,000.

The Beosin security team found that the attacker exploited owner permissions to transfer USDT collateralized by users in the HarvestKeeper contract by calling the getAmount function. Subsequently, the attacker used the token authorization from users to the EOA (0x250…c14) account to transfer user funds multiple times through this EOA. Users are advised to revoke authorization for this EOA. Currently, the stolen funds are dispersed across multiple addresses, with most of them stored in 0x92288f964ae8fce23e8d337422ad66eefc333670. (Source link)

Related tags
Related tags
app_icon
ChainCatcher Building the Web3 world with innovations.