DeFi exchange dYdX v3 website hacked in DNS hijack attack

Teilen:

Decentralized finance (DeFi) crypto exchange dYdX announced on Tuesday that the website for its older v3 trading platform has been compromised.

dYdX also warned users not to visit or interact with the hacked dydx[.] exchange platform and cautioned against withdrawing assets until the platform was safe to use.

“We just learned that dYdX v3 website (dYdX . exchange) has been compromised. Please do not visit the website or click any links until further notice,” a new incident report on the official status page reads.

“An update will be provided when available. The smart contracts on v3 are not compromised and any funds currently in dydx v3 are safe.”

In a post on dYdX’s official Discord server earlier today, a community team member also shared that the attackers hijacked the crypto platform’s domain and deployed a copycat website that “when users connect their wallets to it, it asks them to approve via PERMIT2 transaction to steal their most valuable token.”

They also shared that the incident is believed to be linked to a wave of DNS hijacking attacks targeting DeFi crypto platforms using the Squarespace registrar, which is partially confirmed by the v3 website incident report, which links the incident to a DNS issue.

“A fix to the DNS resolution has been implemented. However, due to caching, the issue may not be fixed for every user yet,” the status page says.

​As BleepingComputer reported, crypto platforms compromised in these Squarespace DNS hijacking attacks are being used to redirect visitors to phishing sites hosting wallet drainers.

The domains (originally registered at Google Domains) were left vulnerable after being force-transferred to Squarespace last year following an asset purchase agreement with Google.

However, during their transition to Squarespace, multi-factor authentication (MFA) was turned off for management accounts (domain owners are warned in a Squarespace support topic to enable MFA after the Google Domains migration).

While it’s unclear how the attackers are hijacking the domains, a report from security researchers Samczsun, Taylor Monahan, and Andrew Mohawk says the threat actors can gain full access using a valid address linked to the domains because Squarespace “does not require email validation to create an account using password authentication (i.e. you can create an account for [email protected] without owning the email address).”

dYdX said on July 11 that “no vulnerabilities or security issues have been detected at this time for https://dydx.exchange or https://dydx.trade,” as first spotted by Resonance Security analyst Grace Dees.

Today’s announcement that the dYdX v3 website was hacked came right after Bloomberg reported that DYdX Trading, the company behind the dYdX derivatives trading software, is in talks with multiple buyers (including Wintermute Trading and Selini Capital) to sell its older v3 software.

Update: dYdX has regained control of dydx.exchange and advises users to restart their browser and clear the cache before opening the website.

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
2:09 am, Jan. 21, 2025
Wetter-Symbol 3°C
L: 1° | H: 4°
aufgelockerte Bewölkung
Luftfeuchtigkeit: 90 %
Druck: 1016 mb
Wind: 5 mph SW
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 40%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 7:53 am
Sonnenuntergang: 4:29 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 9:00 pm
Wetter-Symbol
1° | 4°°C 0 mm 0% 4 mph 94 % 1016 mb 0 mm/h
Tomorrow 9:00 pm
Wetter-Symbol
3° | 5°°C 0.2 mm 20% 8 mph 96 % 1009 mb 0 mm/h
Do. Jan. 23 9:00 pm
Wetter-Symbol
2° | 8°°C 1 mm 100% 14 mph 88 % 1007 mb 0 mm/h
Fr. Jan. 24 9:00 pm
Wetter-Symbol
5° | 11°°C 1 mm 100% 23 mph 91 % 1006 mb 0 mm/h
Sa. Jan. 25 9:00 pm
Wetter-Symbol
3° | 6°°C 1 mm 100% 10 mph 83 % 1010 mb 0.8 mm/h
Today 3:00 am
Wetter-Symbol
3° | 3°°C 0 mm 0% 3 mph 90 % 1016 mb 0 mm/h
Today 6:00 am
Wetter-Symbol
3° | 3°°C 0 mm 0% 3 mph 92 % 1016 mb 0 mm/h
Today 9:00 am
Wetter-Symbol
3° | 3°°C 0 mm 0% 2 mph 92 % 1015 mb 0 mm/h
Today 12:00 pm
Wetter-Symbol
5° | 5°°C 0 mm 0% 4 mph 77 % 1015 mb 0 mm/h
Today 3:00 pm
Wetter-Symbol
6° | 6°°C 0 mm 0% 3 mph 73 % 1013 mb 0 mm/h
Today 6:00 pm
Wetter-Symbol
4° | 4°°C 0 mm 0% 3 mph 89 % 1012 mb 0 mm/h
Today 9:00 pm
Wetter-Symbol
4° | 4°°C 0 mm 0% 3 mph 94 % 1011 mb 0 mm/h
Tomorrow 12:00 am
Wetter-Symbol
4° | 4°°C 0 mm 0% 3 mph 95 % 1009 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€97,301.32
0.64%
Ethereum(ETH)
€3,115.58
1.11%
XRP(XRP)
€2.98
3.24%
Fesseln(USDT)
€0.96
0.02%
Solana(SOL)
€224.97
-4.18%
Dogecoin(DOGE)
€0.330743
-2.68%
USDC(USDC)
€0.96
0.01%
Shiba Inu(SHIB)
€0.000019
-0.44%
Pepe(PEPE)
€0.000014
-1.09%
Peanut das Eichhörnchen(PNUT)
€0.358871
-4.72%
Nach oben scrollen