Multi-Signature Exploit Occurs at CrediX…Website Shutdown

Source
YM Lee

Summary

  • SlowMist reported that a multi-signature exploit incident occurred at CrediX.
  • It was revealed that the attacker used both multisig wallet administrator and bridge privileges to directly issue collateral tokens and borrow a large amount of assets.
  • CrediX deactivated their website due to the security breach, and instructed users to utilize the contract for fund withdrawals.

A multi-signature exploit incident occurred at the decentralized finance (DeFi) project CrediX.

On the 4th (local time), the on-chain security platform SlowMist explained, "An attacker who accessed the CrediX multisig wallet six days ago is confirmed to have held both administrator and bridge privileges. Using these, the attacker was able to directly issue collateral tokens. The attacker borrowed massive assets and drained the pool."

Accordingly, CrediX stated, "A security breach has occurred and is under investigation. To prevent user deposits, we have deactivated the website. For fund withdrawals, users need to utilize the contract."

publisher img

YM Lee

20min@bloomingbit.ioCrypto Chatterbox_ tlg@Bloomingbit_YMLEE
What did you think of the article you just read?