PublicAML

Warp.green ERC-20 Bridge Exploit Results in $93,000 Loss

The ERC-20 bridge of warp.green was exploited, leading to a loss of approximately $93,000. The attack involved minting worthless tokens and draining funds from bridge contracts.

The ERC-20 bridge of warp.green, which facilitates cross-chain messaging between Chia and EVM chains, experienced an exploit due to a vulnerability in the Chia-side Chialisp puzzle. An attacker minted worthless CAT tokens and presented them as burned wUSDC, which allowed them to obtain validator signatures and subsequently drain around $93,000 USDC from the Base and Ethereum bridge contracts. The stolen funds were later converted to ETH.

The exploit specifically targeted the bridge contracts associated with USDC, while the CAT bridge, which secures assets like wXCH, appears to have remained unaffected. This incident highlights the risks associated with cross-chain protocols and the potential vulnerabilities that can arise from specific smart contract implementations.

The on-chain record indicates that the funds were drained from the Base and Ethereum bridge contracts, but no specific addresses were provided in the description. The nature of the exploit emphasizes the importance of robust security measures in smart contract development and deployment.

Sources

Share:XTelegramLinkedIn
Warp.green ERC-20 Bridge Exploit Results in $93,000 Loss | PublicAML