|

Nearly $20 million stolen from the DeFi protocol Pickle Finance

  • Pickle Finance loses #20 million in stablecoin DAI.
  • The token of the project loses over 50% of its value.

Another liquidity mining project fell victim to the hack attack and lost about $20 million of users' funds in DAI tokens. The attacker exploited the vulnerability of Pickle Finance smart contract called DAI PickleJar using fake swaps.

Notably, the hacker chose to avoid a flash loan scheme used in most similar incidents recently. Instead, they deployed a malicious jar and passed in fake swaps.

Emiliano Bonassi, a founder of  DeFi Italy and a white hacker, explained in the recent tweet:

Evil jars deployed during the attack and passed in the swapExactJarForJar. In addition, in the second invocation for swapExactJarForJar, there were passed a target and doing a delegate call to CurveProxyPool.

He also added that the attacker used a really elaborate scheme.

The team of the project confirmed the exploit and said that 19,759,355 DAI were drained. They also added that the attacker used a very complicated scheme involving many components from the Pickle protocol. Currently, the team is working on the solution together with a group of white hackers.

While we work on the fix to remove the attack vector, the white hat group has decided that we should not publish any details of the actual attack yet. Although we have taken steps to mitigate further attacks, we do not want to tempt fate in the meantime.

The token of the project (PICKLE) lost over 50% of its value after the hack attack. The price tested the low of $8.84 before recovering to $12 by the time of writing.  The project takes 2333 place in the global cryptocurrency market rating, while its total capitalization remains unknown.

Pickle allows users to earn PICKLE tokens in exchange for liquidity in four stablecoin pools: DAI/ETH USDC/ETH USDT/ETH sUSD/ETH. 


 

Author

Tanya Abrosimova

Tanya Abrosimova

Independent Analyst

 

More from Tanya Abrosimova
Share:

Markets move fast. We move first.

Orange Juice Newsletter brings you expert driven insights - not headlines. Every day on your inbox.

By subscribing you agree to our Terms and conditions.

Editor's Picks

Aave Price Forecast: AAVE eyes bullish breakout as on-chain and derivatives data turns supportive

Aave (AAVE) price hovers around $172 on Wednesday, nearing the upper trendline of the falling parallel channel pattern. A break above this technical pattern favors the bulls.

Hyperliquid Price Forecast: HYPE consolidates below 50-day EMA as bullish bias strengthens

Hyperliquid (HYPE) experiences a pullback of over 1% at press time on Wednesday, struggling to extend the breakout rally of a resistance trendline.

Top 3 Price Prediction: Bitcoin, Ethereum, Ripple cool off as rally stalls near key resistance zones

Bitcoin, Ethereum, and Ripple prices are taking a breather on Wednesday near their key resistance levels following the recent surge. BTC faces rejection at the $94,253 level, while ETH and XRP follow BTC’s footsteps, struggling near $3,308 and $2.35, respectively.

Top Crypto Gainers: JasmyCoin rallies as Cosmos and Bittensor retreat

JasmyCoin (JASMY), Cosmos (ATOM), and Bittensor (TAO) are among the top-performing cryptocurrency assets in the last 24 hours.

Orange Juice Newsletter – Smart insights by real people. Every day.

A free newsletter highlighting key market trends to help traders stay a step ahead. Daily insights on the most relevant trading topics, compiled by our experts in an easy-to-read format so you never miss an important move.

Bitcoin: Fed delivers, yet fails to impress BTC traders

Bitcoin (BTC) continues de trade within the recent consolidation phase, hovering around $92,000 at the time of writing on Friday, as investors digest the Federal Reserve’s (Fed) cautious December rate cut and its implications for risk assets.