Cryptocurrency [loss] $3M+

"Telegram bot Banana Gun’s users drained of over $1.9M"

2024-09-19 [vendor] Banana Gun [chain] ethereum, solana
Primary Source ↗
Financial Loss $3.0M (3,000,000 USD)
Affected 11 individuals/accounts
Blockchain(s) Ethereum, Solana

Incident Details

Some people use a Telegram-based crypto trading bot called “Banana Gun” to “snipe” crypto trades, copytrade, and perform other activities. On September 19, at least 11 victims lost around $3 million after their accounts were apparently compromised and drained.Banana Gun acknowledged the attack on Twitter and shut down the bot. They posted that they did not believe their backend was compromised, and stated that they believed the attack occurred via a “front-end vulnerability” — though it was not clear what this might have referred to.

Total loss estimated at $3,000,000.

Technical Details

Initial Attack Vector
Smart contract exploit / hack
Vendor / Product
Banana Gun

Timeline

  1. 2024-09-19 Breach occurred
  2. 2024-09-19 Publicly disclosed