SON DAKİKA
--:--:--
English Haber

zkSync Airdrop Exploit Results in $5 Million Token Theft

Discover how a zkSync airdrop exploit led to a $5 million token theft in a significant blockchain security breach.

Sigorta Haber
Yayınlandı: Güncellendi:
2 dk okuma 326 kelime
Paylaş f X in WA
Sigorta Haber’i Google News’te takip edinYeni haberleri ve sektör gündemini daha hızlı takip edin.
Takip Et

zkSync Protocol Breached During Airdrop CampaignThe Ethereum layer-2 scaling solution, zkSync, was compromised on Tuesday, April 15, during an airdrop event. Malicious actors infiltrated the protocol’s admin wallet, siphoning off $5 million worth of ZK tokens. SourceThe breach was executed through a vulnerability in the sweepUnclaimed() function within the smart contracts responsible for zkSync’s airdrop operations. This function, intended to retrieve unclaimed ZK tokens, was manipulated by the attackers to mint 111 million ZK tokens across three separate airdrop contracts. This illicitly generated sum represents approximately 0.45% of the total ZK token supply.Response and Mitigation EffortsIn response, the zkSync development team, in collaboration with their security partner SEAL, initiated a swift recovery operation. The team assured that the breach was confined to the admin wallet, and user funds remained secure. They also confirmed that the sweepUnclaimed() function has been disabled and no further vulnerabilities are present. SourceZK Token Price VolatilityzkSync utilizes zero-knowledge aggregations to batch process transactions on Ethereum’s main layer. The ZK token serves as the governance token for the platform. Following the attack, the ZK token experienced significant volatility, plunging 18% to $0.040 shortly after the breach. It later rebounded to $0.047. Over the last 24 hours, the token has seen a decline of over 4%, stabilizing around $0.046.This incident underscores the importance of robust security measures for Layer-2 solutions like zkSync. The crypto industry is reassessing how administrative access is managed, how airdrop systems undergo auditing, and the potential exploitation of smart contract functionalities.Bybit Hack by Lazarus GroupOn February 21, 2025, a significant breach occurred involving the cryptocurrency exchange, Bybit, attributed to the North Korea-linked Lazarus Group. The hackers exploited vulnerabilities within Bybit’s Ethereum cold wallet infrastructure, making off with approximately 401,000 ETH, valued at around $1.5 billion. Bybit assured that user funds were secure and any losses would be covered by the company’s reserves.

Etiketler

Yorum Yap

En Güncel ve Doğru Haberler!
Sigorta Haber

Sigorta Haber, sigorta sektöründeki en güncel haberleri, analizleri ve gelişmeleri tarafsız bir bakış açısıyla sunan bağımsız bir haber platformudur. Sigorta profesyonellerine, acentelere ve sektöre ilgi duyan herkese doğru, hızlı ve güvenilir bilgi sağlamayı amaçlıyoruz. Sigortacılıktaki yenilikleri, mevzuat değişikliklerini ve sektör trendlerini yakından takip ederek, okuyucularımıza kapsamlı bir bilgi kaynağı sunuyoruz.

2026 Sigorta Haber © Tüm hakları saklıdır.