• Home
  • Cryptocurrency
  • Blockchain
  • Analysis
  • News
    • Regulations Security
    • Getting Started
  • Insights
    • Opinion
    • Expert Interview
  • All Posts
Facebook X (Twitter) Instagram
Trending
  • KiloEx Exchange Exploiter Restores All Stolen Funds Following $7.5 Million Hack
  • Hashkey Targets XRP ETF in Asia with New Fund Supported by Ripple
  • Sygnum Predicts Potential Altcoin Rally in Q2 2025 Due to Enhanced Regulations
  • Media Tycoon Files Counterclaim Against Justin Sun in $78 Million Sculpture Dispute
  • Yemenis are embracing DeFi in response to US sanctions on the Houthi group
  • Saylor and ETF Investors’ ‘Stronger Hands’ Contribute to Bitcoin Stabilization — Analyst
  • Bitcoin Dip Buyers Show Interest at BTC Range Lows, Yet Remain Risk-Averse Until $90K Establishes Support
  • Kyrgyzstan’s President Enacts CBDC Legislation Granting Legal Status to ‘Digital Som’
Facebook X (Twitter) Instagram
CoinovelCoinovel
  • Home
  • Cryptocurrency
  • Blockchain
  • Analysis
  • News
    • Regulations Security
    • Getting Started
  • Insights
    • Opinion
    • Expert Interview
  • All Posts
CoinovelCoinovel
Home » CertiK confirms suspicious upgrade leads to $4.3M drainage from Alex bridge on BNB Smart Chain
CertiK confirms suspicious upgrade leads to $4.3M drainage from Alex bridge on BNB Smart Chain
CertiK confirms suspicious upgrade leads to $4.3M drainage from Alex bridge on BNB Smart Chain

CertiK confirms suspicious upgrade leads to $4.3M drainage from Alex bridge on BNB Smart Chain

0
By admin on 2024-05-14 Blockchain, Cryptocurrency

A recent report from CertiK, a blockchain security platform, revealed that the Alex protocol bridge on the BNB Smart Chain network experienced suspicious withdrawals amounting to $4.3 million immediately after its contract was upgraded without warning.

Alex is a layer-2 protocol for Bitcoin that offers decentralized finance applications on the Bitcoin network. Its bridges are utilized to transfer assets from other networks, like BNB Smart Chain and Ethereum, to the Alex network.

Blockchain data verified that the Alex deployer account executed five identical upgrades to the “Bridge Endpoint” contract on the BNB Smart Chain, starting at 3:56 pm UTC. Following these upgrades, approximately $4.3 million worth of Binance-Pegged Bitcoin (BTC), USD Coin (USDC), and Sugar Kingdom Odyssey (SKO) were withdrawn from the BNB Smart Chain side of the bridge.

CertiK classified this event as a “possible private key compromise” since the upgrade was carried out by the protocol’s deployer account.

The upgrade transaction modified the implementation address to one ending in 7058. The new implementation is encoded in unverified bytecode, rendering it unreadable to humans.

Around 48 minutes after the upgrades began, the proxy address for the bridge contract invoked an unverified function on an address ending in 4848E. As a result, 16 BTC ($983,000 at current prices), 2.7 million SKO ($75,000), and $3.3 million worth of USDC were moved to the address at 484E at 4:44 pm.

The attacker may also be attempting to drain funds on other networks. Just minutes after the suspicious upgrade on BNB Smart Chain, a similar series of Alex upgrades took place on Ethereum at 5:41 pm. In this instance, the deployer upgraded the “artist address” to an unverified contract. Immediately after, an account ending in 05ed tried to make two withdrawals from the “team address,” but these withdrawals failed due to a “not owner” error.

The 05ed account had no previous history before May 10. It created one unverified contract on May 10 and two more on May 14, suggesting that it might be controlled by a malicious user.

As of now, the Alex team has not confirmed the exploit or provided any comment on the incident.

The Alex bridge wasn’t the only protocol to face a potential exploit in May. On May 13, decentralized exchange Equalizer reported a loss of over 2,000 of its own tokens to an attacker who gradually siphoned them away over several days. Additionally, the Gnus.ai hack on May 6 resulted in losses of $1.27 million.

Related: CertiK uncovered a $5 million security flaw in the Wormhole bridge on Aptos.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Hashkey Targets XRP ETF in Asia with New Fund Supported by Ripple

Sygnum Predicts Potential Altcoin Rally in Q2 2025 Due to Enhanced Regulations

Yemenis are embracing DeFi in response to US sanctions on the Houthi group

  • Popular
  • Latest
  • Hot comments
2022-02-23 Getting Started

Cryptopedia: Unveiling the Metaverse’s Potential to Revolutionize the Internet

2022-03-07 Getting Started

Unveiling Cryptopedia: Grasp the fundamentals of DAOs and their operational mechanisms

2022-03-25 Getting Started

Cryptopedia: Explore Web3 and its goal to revolutionize internet services

2025-04-18 Regulations Security

KiloEx Exchange Exploiter Restores All Stolen Funds Following $7.5 Million Hack

2025-04-18 Cryptocurrency

Hashkey Targets XRP ETF in Asia with New Fund Supported by Ripple

2025-04-18 Cryptocurrency

Sygnum Predicts Potential Altcoin Rally in Q2 2025 Due to Enhanced Regulations

Latest Gallery

Latest Recommendations
2025-04-18 Regulations Security

KiloEx Exchange Exploiter Restores All Stolen Funds Following $7.5 Million Hack

2025-04-18 Cryptocurrency

Hashkey Targets XRP ETF in Asia with New Fund Supported by Ripple

2025-04-18 Cryptocurrency

Sygnum Predicts Potential Altcoin Rally in Q2 2025 Due to Enhanced Regulations

2025-04-18 Regulations Security

Media Tycoon Files Counterclaim Against Justin Sun in $78 Million Sculpture Dispute

2025-04-18 Blockchain

Yemenis are embracing DeFi in response to US sanctions on the Houthi group

2025-04-18 Regulations Security

Saylor and ETF Investors’ ‘Stronger Hands’ Contribute to Bitcoin Stabilization — Analyst

2025-04-18 Cryptocurrency

Bitcoin Dip Buyers Show Interest at BTC Range Lows, Yet Remain Risk-Averse Until $90K Establishes Support

2025-04-18 News

Kyrgyzstan’s President Enacts CBDC Legislation Granting Legal Status to ‘Digital Som’

2025-04-17 Blockchain

Polygon’s Nailwal: The Jio Partnership Will Propel Real-World Web3 Adoption for 450 Million Users

2025-04-17 Blockchain

Babylon’s Total Value Locked Decreases by 32% as Wallets Unstake $1.2B in Bitcoin

2025-04-17 Regulations Security

OpenAI pursued a deal with Anysphere prior to shifting its focus to WindSurf

2025-04-17 Analysis

Bitcoin Gold’s Imitation Strategy Could Surpass $150K as BTC Remains ‘Remarkable’

2025-04-17 Cryptocurrency

AI Tokens and Memecoins Dominate Cryptocurrency Narratives in Q1 2025: CoinGecko

2025-04-17 Cryptocurrency

Four Reasons Why the Price of Bitcoin Could Surge to $90,000 in April

2025-04-17 News

Trump Criticizes Powell for Delaying Interest Rate Cuts, Calling It ‘Too Late’

2025-04-17 News

Wyoming Commission Considers Whether Stablecoin Falls Under SEC Regulations

About
About

Coinovel is an enthralling novel of cryptocurrencies. Engage with narratives, delve into stories, and journey through the captivating world of digital currencies.

X (Twitter) Telegram
Popular posts
2022-02-23 Getting Started

Cryptopedia: Unveiling the Metaverse’s Potential to Revolutionize the Internet

2022-03-07 Getting Started

Unveiling Cryptopedia: Grasp the fundamentals of DAOs and their operational mechanisms

2022-03-25 Getting Started

Cryptopedia: Explore Web3 and its goal to revolutionize internet services

Copyright © 2025 coinovel. All rights reserved.
  • Home
  • Cryptocurrency
  • Blockchain
  • Regulations Security
  • Analysis
  • Insights
  • News
  • Getting Started

Type above and press Enter to search. Press Esc to cancel.