DeFi Protocol Qubit Finance Loses $80M in Hack

Hackers stole 206,809 Binance Coin, roughly $80 million, from Qubit’s QBridge protocol, making it the seventh largest DeFi hack ever

article-image

Source: Shutterstock

share

key takeaways

  • “The exploit and loss of funds have a profound effect on thousands of real people,” the company said
  • Qubit is continuing to track the exploiter and monitor affected assets and has disabled a number of account management features until further notice

Hackers have stolen $80 million from DeFi protocol Qubit Finance, the firm confirmed on Friday. 

The attackers exploited the protocol to take 206,809 Binance coins through Qubit’s QBridge deposit function, making it the seventh largest DeFi hack ever, DeFiYield Rekt data shows. 

The QBridge protocol is an Ethereum-BSC (Binance Smart Chain) bridge that allows users to swap ERC-20 and BEP-20 tokens between the two blockchains. The protocol is implemented as a set of smart contracts built on top of the BSC.

The attacker essentially took advantage of a logical error in Qubit Finance’s code that allowed them to input malicious data and withdraw tokens on BSC when none were deposited on Ethereum, blockchain security firm CertiK explained

The decentralized money market platform tweeted a statement to notify the exploiter that they were aware of what was happening and proposed a direct negotiation before taking further action. 

Loading Tweet..

“The exploit and loss of funds have a profound effect on thousands of real people,” the company said. 

The team also contacted the exploiter to offer the maximum bounty as set by its program, it said in a post. It didn’t disclose how much the bounty would be, or if the hacker was receptive.  

Qubit is continuing to track the exploiter and monitor affected assets and has disabled a number of account management features until further notice. However, its claiming feature is still available, it said. 

“We are continuing to investigate and are in communications with Binance,” Qubit wrote. “Further updates and a full report will be shared as they become available.”

The company was not available for additional comment when requested by Blockworks. 


Start your day with top crypto insights from David Canellis and Katherine Ross. Subscribe to the Empire newsletter.

Tags

Upcoming Events

Salt Lake City, UT

WED - FRI, OCTOBER 9 - 11, 2024

Pack your bags, anon — we’re heading west! Join us in the beautiful Salt Lake City for the third installment of Permissionless. Come for the alpha, stay for the fresh air. Permissionless III promises unforgettable panels, killer networking opportunities, and mountains […]

recent research

aptos cover3.jpg

Research

A fragmented liquidity landscape across L2s has led to newfound appreciation for predominantly monolithic L1 architectures over the past year, especially when considering qualifying capabilities like high throughput and low latency. Despite Aptos being a relatively young blockchain when compared to other L1s, a combination of design choices, network adoption, partnerships, and dApp development proves that the network is primed for breakout momentum over the coming years.

article-image

Miden will enable users to generate proof without revealing state to wider network

article-image

The SEC has issued its latest Wells notice to Robinhood

article-image

The Solana proof-of-work project took off in early April

article-image

CFTC Chairman Rostin Behnam said a growing crypto industry and lack of US laws is going to inevitably lead to more enforcement actions

article-image

Access to staking rewards is expected to be key for wider adoption of ether ETFs in the future, analysts say

article-image

Grayscale’s spot bitcoin ETF notched positive flows for the first time since becoming an ETF, ending a 78-day outflow run