BlockTower Capital Loses $1.5M in DeFi Market Aggregator Dexible Exploit: Blockchain Data

The hacker exploited a weakness in a smart contract code, allowing them to drain funds from certain crypto wallets. Crypto “whales” accounted for 85% of the losses.

AccessTimeIconFeb 17, 2023 at 5:29 p.m. UTC
Updated Feb 17, 2023 at 5:40 p.m. UTC
10 Years of Decentralizing the Future
May 29-31, 2024 - Austin, TexasThe biggest and most established global hub for everything crypto, blockchain and Web3.Register Now

Decentralized exchange aggregator Dexible suffered a $2 million exploit early Friday, the protocol said in a document posted on its Discord server.

Dexible tweeted that the hacker exploited a weakness in the smart contract code, allowing them to drain funds from crypto wallets with funds that have been approved for spending.

The team added that “a few whales,” meaning large crypto holders, accounted for about 85% of the losses.

Blockchain data shows that digital asset investment firm BlockTower Capital was among the victims.

The wallet address associated with the Dexible exploiter on blockchain monitoring platform Etherscan drained some $1.5 million in TRU tokens from a wallet labeled as BlockTower’s by Arkham Intelligence, a blockchain intelligence firm. Blockchain intelligence firm Nansen also labeled the address as BlockTower Capital’s.

The Dexible exploiter traded the stolen funds for ETH using SushiSwap, then transferred the funds to TornadoCash. (Arkham Intelligence)
The Dexible exploiter traded the stolen funds for ETH using SushiSwap, then transferred the funds to TornadoCash. (Arkham Intelligence)

BlockTower did not immediately return CoinDesk’s request for comment.

Blockchain transactions on Arkham show that the exploiter transferred the stolen TRU tokens to SushiSwap to trade for ether (ETH). Then, they send ETH to crypto mixer service provider TornadoCash.

The exploit affected 13 wallets on Arbitrum and five wallets on Ethereum, draining a total of per Dexible's report.

"We have paused these contracts, while we get a full picture of the situation," Michael Coon, chief executive of Dexible, posted on Discord.

Disclosure

Please note that our privacy policy, terms of use, cookies, and do not sell my personal information has been updated.

CoinDesk is an award-winning media outlet that covers the cryptocurrency industry. Its journalists abide by a strict set of editorial policies. In November 2023, CoinDesk was acquired by the Bullish group, owner of Bullish, a regulated, digital assets exchange. The Bullish group is majority-owned by Block.one; both companies have interests in a variety of blockchain and digital asset businesses and significant holdings of digital assets, including bitcoin. CoinDesk operates as an independent subsidiary with an editorial committee to protect journalistic independence. CoinDesk employees, including journalists, may receive options in the Bullish group as part of their compensation.

Krisztian  Sandor

Krisztian Sandor is a reporter on the U.S. markets team focusing on stablecoins and institutional investment. He holds BTC and ETH.


Learn more about Consensus 2024, CoinDesk's longest-running and most influential event that brings together all sides of crypto, blockchain and Web3. Head to consensus.coindesk.com to register and buy your pass now.