
SIR.trading DeFi Protocol Loses $355K in Hack Targeting Ethereum’s Transient Storage
In a shocking turn of events, SIR.trading, a decentralized finance (DeFi) protocol, has been hacked and lost a staggering 355,000 dollars. The incident highlights a potential vulnerability in Ethereum’s transient storage feature.
According to reports, the hackers exploited a weakness in the SIR.trading contract by overwriting security data while a transaction was still running. This allowed them to drain all funds from the vault. It appears that the hackers brute-forced a unique vanity address, enabling them to register their fake address as legitimate and then use a custom contract to siphon off the stolen funds.
The SIR.trading team has reached out to Railgun for assistance in potentially tracking or recovering the stolen funds. This incident raises serious questions about the security of transient storage in Ethereum.
Source: https://blockonomi.com/sir-trading-defi-protocol-loses-355k-in-hack-targeting-ethereums-transient-storage/