Stand Up for Investors' Right to Know – Say No to Dumping Sell-Offs! [RootData Bounty Campaign]
API Download the RootData App

KiloEx's summary of the hacking incident: A bug in the TrustedForwarder contract led to this attack

4월 21, 2025 18:59:55

Share to

According to ChainCatcher's message, KiloEx stated in a post that the root cause analysis and summary of the hacking incident revealed that the incident was caused by its smart contract's TrustedForwarder contract inheriting OpenZeppelin's MinimalForwarderUpgradeable but failing to override the execute method, which allowed the function to be called arbitrarily.

The attack occurred between April 14, 18:52 and 19:40 (UTC), with the hacker deploying attack contracts across multiple chains including opBNB, Base, BSC, Taiko, B2, and Manta. After negotiations, the hacker agreed to retain 10% of the bounty and has returned all stolen assets (including USDT, USDC, ETH, BNB, WBTC, and DAI) to the multi-signature wallet designated by KiloEx.

Recent Fundraising

More
$4M Dec 18
$13M Dec 18

New Tokens

More
Dec 20
Dec 19
Dec 19

Latest Updates on 𝕏

More