- Radiant Capital’s multi-signature wallet was compromised, leading to a significant breach.
- The estimated loss exceeds $50 million, affecting user funds in credit pools.
- Hackers gained access to the private keys of at least three out of eleven key holders.
- The compromised keys allowed changes to smart contract ownership and malicious code insertion.
- Both Binance Chain and Arbitrum networks were impacted, with operations paused on Ethereum and Base.
- Users were advised to revoke permissions for certain contracts to protect their assets.
- Ancilia, a cybersecurity project, mistakenly shared a phishing link in response to the hack.
- Previous reports by PeckShield noted $120 million in damages from similar incidents in September 2024.
Radiant Capital’s Security Breach: Over $50 Million Compromised
In a recent and alarming development within the cryptocurrency sector, the lending protocol Radiant Capital suffered a significant security breach. The incident, which compromised a multi-signature wallet, resulted in hackers obtaining access to user funds totaling an estimated $50 million. This breach highlights the ongoing vulnerabilities within the crypto ecosystem and raises questions about security practices in decentralized finance (DeFi).
The Breach: Details and Impact
Radiant Capital’s security was undermined when attackers compromised the private keys of at least three key holders responsible for a multi-signature wallet. This access allowed the attackers to modify the smart contract’s ownership, specifically targeting the LendingPoolAddressesProvider smart contract. By altering the logic of the credit pools with a backdoor contract, the hackers could exploit the “transferFrom” function to siphon user funds.
Response and Mitigation Efforts
The Radiant Capital team has acknowledged the suspicious activity and is collaborating with on-chain analytics firms like SEAL911, Hypernative, ZeroShadow, and Chainalysis. In response, operations on affected networks, including Binance Chain and Arbitrum, have been paused, with similar actions taken on Ethereum and Base to prevent further losses.
User Advisory and Security Recommendations
Amid the ongoing investigation, Radiant Capital and cybersecurity experts have urged users to immediately revoke permissions for specific contracts to safeguard their assets. The team provided a list of contracts for users to target in their security measures.
Cybersecurity Missteps
In an unexpected twist, Ancilia, a cybersecurity project, inadvertently shared a phishing link in a post addressing the breach. The link, claiming to offer quick permission revocations, was swiftly removed after community backlash. This incident underscores the importance of vigilance and accuracy in cybersecurity communications.
Wider Implications for the Crypto Industry
This breach is a stark reminder of the vulnerabilities that persist in the cryptocurrency domain. It follows a report from PeckShield, which noted that similar incidents in September 2024 had resulted in $120 million in damages. The Radiant Capital breach serves as a call to action for enhanced security protocols and preventive measures across the industry.
In summary, the Radiant Capital incident exemplifies the critical need for robust security practices within the DeFi space. As the crypto market continues to evolve, stakeholders must prioritize security to protect user assets and maintain trust in decentralized financial systems.
