Cryptocurrency [loss] $2M+

Tweet by CertiK

2024-01-28 [vendor] Goledo Finance [chain] ethereum
Primary Source ↗
Financial Loss $1.7M (1,700,000 USD)
Blockchain(s) Ethereum

Incident Details

Goledo Finance, an Aave-based lending protocol, was exploited through a flash loan attack. The attacker stole assets estimated by CertiK at around $1.7 million.Goledo Finance contacted the attacker to offer a 10% “bounty” for the return of the remaining assets. In a message on January 29, the attacker wrote: “I hacked Goledo and want to negotiate”.

Total loss estimated at $1,700,000.

Technical Details

Initial Attack Vector
Flash loan attack on smart contract
Vendor / Product
Goledo Finance

Timeline

  1. 2024-01-28 Breach occurred
  2. 2024-01-28 Publicly disclosed