Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Pike Finance Hit by $1.6M Cross-Chain Hack

May 2, 2024
Reading Time: 3 mins read
in Incidents
Pike Finance Hit by $1.6M Cross-Chain Hack

Pike Finance, a decentralized finance (DeFi) protocol specializing in cross-chain lending, recently suffered a substantial security breach resulting in the loss of approximately $1.6 million in various cryptocurrencies. The attack targeted the protocol’s functions for managing USDC transfers across multiple blockchain platforms including Ethereum, Arbitrum, and Optimism. The stolen assets included 99,970.48 ARB, 64,126 OP, and 479.39 ETH. This incident highlighted critical vulnerabilities within the protocol’s handling of cross-chain transfers, specifically the functions designed for burning USDC on one chain and minting it on another.

The exploit, referred to by the Pike Finance team as the “USDC vulnerability,” was not the protocol’s first security lapse. Previously, this specific vulnerability led to a loss of $299,127 in USDC due to similar weaknesses in the protocol’s security framework. In their post-mortem report, the team acknowledged that the loss occurred due to inadequate security measures in the functions managing USDC transfers, which were exploited by attackers to manipulate receiver addresses and transaction amounts.

The specific mechanism of the latest breach involved a misalignment in storage mapping within Pike Finance’s smart contracts. This misalignment allowed attackers to bypass administrative controls and directly withdraw funds. This vulnerability indicates a serious issue in the smart contract design, particularly in how transaction validations and administrative privileges are managed.

In response to the breach, Pike Finance has announced a reward of 20% for the return of the funds or for information leading to their recovery. Launched in 2023 and having secured initial funding of $50,000 in USDC from Circle and Wormhole, Pike Finance aims to facilitate liquidity across various blockchain and sidechain networks by allowing users to supply and borrow native assets. The recent incidents have underscored the ongoing security challenges in the DeFi space, particularly for new protocols like Pike Finance, pushing them towards adopting more rigorous security measures to protect user assets and sustain trust.

Reference:
  • Pike Finance Suffers $1.6M Hack Across Multiple Chains

Tags: ArbitrumCryptocurrenciescyber incidentsCyber Incidents 2024Cyber RiskCyberattacksDecentralized FinanceDeFi ProtocolEthereumMay 2024OptimismPike Finance
ADVERTISEMENT

Related Posts

Lovesac Confirms Breach After Attack

Plex Users Told To Reset Passwords

September 9, 2025
Lovesac Confirms Breach After Attack

Hackers Steal Secrets In GitHub Attack

September 9, 2025
Lovesac Confirms Breach After Attack

Lovesac Confirms Breach After Attack

September 9, 2025
Tenable Confirms Breach Of Customer Data

Azure Cloud Hit By Red Sea Cable Cuts

September 9, 2025
Tenable Confirms Breach Of Customer Data

US Probes Malicious Email On China Talks

September 9, 2025
Tenable Confirms Breach Of Customer Data

Tenable Confirms Breach Of Customer Data

September 9, 2025

Latest Alerts

Windows Defender Flaw Enables Hijack

Npm Packages Compromised In Attack

GPUGate Abuse of Google Ads and GitHub

iCloud Calendar Used For Phishing Emails

Czech Cyber Agency Warns On Chinese Tech

Atomic Stealer Masquerades As Cracked App

Subscribe to our newsletter

    Latest Incidents

    Hackers Steal Secrets In GitHub Attack

    Plex Users Told To Reset Passwords

    Lovesac Confirms Breach After Attack

    Azure Cloud Hit By Red Sea Cable Cuts

    Tenable Confirms Breach Of Customer Data

    US Probes Malicious Email On China Talks

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial