Terra Blockchain Hack And Outage: What Happened?
The Terra blockchain has suffered a significant breach involving a complex exploit that resulted in the theft of approximately $5 million in assorted cryptocurrencies.
The Terra blockchain was breached on Monday, with an attacker exploiting a vulnerability to pilfer a total of 60 million ASTRO tokens, 3.5 million USDC, 500,000 USDT, and 2.7 BTC. The specific exploit used in the attack was identified by security researcher Rarma (@Rarma_), who confirmed via X, “So yes, it appears this is the IBC hooks exploit from back in April.”
The vulnerability, which was discovered but not patched earlier this year, allowed the attacker to manipulate the IBC transfer process, minting tokens on Terra using the exploited mechanism, and then transferring them off the platform.
“Terra isn’t patched, which allowed the exploit to occur. The exploiter could mint tokens that had been IBC transferred onto Terra by utilizing a contract, IBC call (with IBC hooks), and a timeout. 3.5 Million axlUSDC, 500k USDT, 2.7BTC, 60m ASTRO tokens. Terra and Neutron IBC relayer need to stop,” Rarma added.
The researcher further clarified that “the IBC’d Assets were ‘re-minted’ with this exploit into the hacker’s wallet. They then IBC Transferred them OUT. The ‘minted’ tokens were ‘burnt’ on the way out. So, from a Chain, IBC and Relayer perspective, the exploited amounts of these tokens technically don’t exist on Terra anymore. The TVL for these tokens is completely fake.”
The hacker already exited his stolen assets, not via Cosmos, but by bridging them back to Ethereum and swapping them for Ether (ETH).
In response to the security breach, the development team acted quickly, halting the blockchain to prevent further exploitation. The halt was announced to the community with specific details: “Please be advised that the chain will be halted shortly at block height 11430400 and transactions will not be processed during this time. We will be working with the validators on Terra (phoenix-1) to apply an emergency patch thereafter to remediate a suspected exploit.”
Approximately four hours after the halt, the dev team deployed an emergency patch to rectify the exploited vulnerability and to reinforce the blockchain’s defenses. The update was crucial in resuming normal blockchain activities: “The Terra chain has resumed block production at approximately 4:19 AM UTC today, and the emergency chain upgrade is now complete. Transactions are now being processed, and users may resume normal activities. Validators holding over 67% of the voting power on Terra have upgraded their nodes to prevent the exploit from recurring. More validators are expected to upgrade soon.”
The above is the detailed content of Terra Blockchain Hack And Outage: What Happened?. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

Hot Topics











Gemini's move to delist these cryptocurrencies arises from evaluating the assets on its market. The exchange regularly assesses the sustainability

According to validator HappyCatKripto, Terraform Labs (TFL) could burn 1 billion USTC and 275 billion Terra Luna Classic (LUNC) tokens as part of its Chapter 11 bankruptcy proceedings.

The team of developers that took over from the Terra Luna Foundation to build a robust web3 ecosystem has made significant strides in the Terra Luna Classic (LUNC) network.

Indodax, Indonesia's largest cryptocurrency exchange, was hit by a massive cyber attack on September 11, 2024. It resulted in the loss of $22 million.

In a significant blow to the Ronin Network, the blockchain bridge has reportedly been hacked. It has resulted in the theft of approximately $12 million in Ethereum (ETH) and USD Coin (USDC).

Ronin Bridge, an Ethereum sidechain built for the popular play-to-earn non-fungible token game Axie Infinity, has been hacked.

One of the core developers for Terra Luna Classic, Genuine Labs has confirmed the completion of the long-awaited Tax2Gas redefinition upgrade.

French football star Kylian Mbappe's Twitter account was hacked and released the token MBAPPE, which has now been deleted. The market value of MBAPPE tokens surged to tens of millions in a few minutes and then quickly returned to zero.