{"id":52105,"date":"2023-05-28T19:23:47","date_gmt":"2023-05-28T19:23:47","guid":{"rendered":"https:\/\/egrowonline.com\/?p=52105"},"modified":"2023-05-28T19:23:47","modified_gmt":"2023-05-28T19:23:47","slug":"arbitrum-based-jimbos-protocol-hacked-losing-7-5m-in-ether","status":"publish","type":"post","link":"http:\/\/egrowonline.com\/?p=52105","title":{"rendered":"Arbitrum-based Jimbos Protocol hacked, losing $7.5M in Ether"},"content":{"rendered":"<p> <br \/>\n<br \/><img decoding=\"async\" src=\"https:\/\/images.cointelegraph.com\/cdn-cgi\/image\/format=auto,onerror=redirect,quality=90,width=840\/https:\/\/s3.cointelegraph.com\/uploads\/2023-05\/f5295ae9-34f8-48e7-ab3e-7b9ffc182e12.jpg\" \/><\/p>\n<div data-v-2f4c2c70=\"\">\n<p>Adding to the growing number of decentralized finance (DeFi) protocol hacks in the crypto industry, Jimbos Protocol is the latest to suffer an attack resulting in a significant loss of funds.<\/p>\n<p>According to blockchain security firm PeckShield, Jimbos Protocol \u2014 the liquidity protocol of the Arbitrum system \u2014 was <a target=\"_blank\" href=\"https:\/\/twitter.com\/peckshield\/status\/1662650673731624961\" rel=\"noopener nofollow\">hacked<\/a> on the morning of May 28. The attack resulted in the loss of 4,000 Ether (<a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/ethereum-price\" rel=\"noopener\">ETH<\/a>), worth approximately $7.5 million at the time.<\/p>\n<p>Specifically, the attacker took advantage of the lack of slippage control on liquidity conversions. The protocol\u2019s liquidity is invested in a price range that doesn\u2019t need to be equal, creating a loophole where attackers can reverse swap orders for their own gain.<\/p>\n<p>Although launched less than 20 days ago, Jimbos Protocol aimed to address liquidity and volatile token prices through a new testing approach. However, the protocol\u2019s mechanism was not adequately developed, leading to a logical vulnerability creating favorable conditions for attackers. As a consequence, the price of the underlying token, Jimbo (JIMBO), has plummeted by 40%.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\"><a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/PeckShieldAlert?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#PeckShieldAlert<\/a> <a target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24JIMBO&amp;src=ctag&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">$JIMBO<\/a> has dropped -40%<a target=\"_blank\" href=\"https:\/\/t.co\/fXZPG27zdM\" rel=\"noopener\">https:\/\/t.co\/fXZPG27zdM<\/a> <a target=\"_blank\" href=\"https:\/\/t.co\/zMPs75jUtK\" rel=\"noopener\">pic.twitter.com\/zMPs75jUtK<\/a><\/p>\n<p>\u2014 PeckShieldAlert (@PeckShieldAlert) <a target=\"_blank\" href=\"https:\/\/twitter.com\/PeckShieldAlert\/status\/1662644004599787520?ref_src=twsrc%5Etfw\" rel=\"noopener\">May 28, 2023<\/a><\/p><\/blockquote>\n<p>According to PeckShield\u2019s findings, the attackers extracted 4,090 ETH from the Arbitrum network. Subsequently, they utilized the Stargate bridge and the Celer Network to transfer approximately 4,048 ETH from the Ethereum network.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Here comes the flow of stolen funds. <a target=\"_blank\" href=\"https:\/\/twitter.com\/jimbosprotocol?ref_src=twsrc%5Etfw\" rel=\"noopener\">@jimbosprotocol<\/a> <a target=\"_blank\" href=\"https:\/\/t.co\/HkUtTFZILv\" rel=\"noopener\">pic.twitter.com\/HkUtTFZILv<\/a><\/p>\n<p>\u2014 PeckShieldAlert (@PeckShieldAlert) <a target=\"_blank\" href=\"https:\/\/twitter.com\/PeckShieldAlert\/status\/1662651234254299136?ref_src=twsrc%5Etfw\" rel=\"noopener\">May 28, 2023<\/a><\/p><\/blockquote>\n<p>Hacking incidents in DeFi protocols is not a novel phenomenon. While reports indicate\u00a0<a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/crypto-hacks-fall-q1-temporary\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/crypto-hacks-fall-q1-temporary\/amp\" rel=\"noopener\">a significant decline<\/a> in the number of attacks compared with previous years, the community continues to be exposed to numerous exploits. <\/p>\n<p><strong><em>Related:\u00a0<\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/the-sandbox-ceo-s-twitter-was-hacked-used-to-promote-alleged-airdrop-scam\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/the-sandbox-ceo-s-twitter-was-hacked-used-to-promote-alleged-airdrop-scam\/amp\" rel=\"noopener\"><strong><em>The Sandbox CEO\u2019s Twitter was hacked, used to promote alleged \u2018airdrop\u2019 scam<\/em><\/strong><\/a><\/p>\n<p>Despite efforts to enhance security measures, the DeFi ecosystem grapples with the persistent challenge of safeguarding against potential vulnerabilities and unauthorized access. An example is the recent flash loan attack on the 0VIX protocol, resulting in a substantial loss of nearly $2 million. <\/p>\n<p>Another recent noteworthy occurrence involved the <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/attacker-hijacks-tornado-cash-governance-via-malicious-proposal\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/attacker-hijacks-tornado-cash-governance-via-malicious-proposal\/amp\" rel=\"noopener\">hijacking of Tornado Cash<\/a>, a prominent privacy-focused protocol. Unknown attackers successfully compromised the system and extracted significant quantities of Tornado Cash (TORN) tokens, leading to substantial financial losses. <\/p>\n<p><strong><em>Magazine: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/magazine\/ethics-101-crypto-projects-negotiate-hackers\/\" rel=\"noopener\"><strong><em>Should crypto projects ever negotiate with hackers? Probably<\/em><\/strong><\/a><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/cointelegraph.com\/news\/arbitrum-based-jimbos-protocol-hacked-losing-7m-in-ethereum\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Adding to the growing number of decentralized finance (DeFi) protocol hacks in the crypto industry, Jimbos Protocol is the latest to suffer an attack resulting in a significant loss of funds. According to blockchain security firm PeckShield, Jimbos Protocol \u2014 the liquidity protocol of the Arbitrum system \u2014 was hacked on the morning of May [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":52106,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[41],"tags":[4852,15121,369,846,15788,1917,1233],"class_list":["post-52105","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ethereum","tag-75m","tag-arbitrumbased","tag-ether","tag-hacked","tag-jimbos","tag-losing","tag-protocol"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"http:\/\/egrowonline.com\/wp-content\/uploads\/2023\/05\/f5295ae9-34f8-48e7-ab3e-7b9ffc182e12.jpg","_links":{"self":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/52105","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=52105"}],"version-history":[{"count":1,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/52105\/revisions"}],"predecessor-version":[{"id":52107,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/52105\/revisions\/52107"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/media\/52106"}],"wp:attachment":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=52105"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=52105"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=52105"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}