FBI warns about vulnerabilities of DeFi platforms
Representatives of the bureau have identified the most popular types of attacks on projects related to decentralized finance among attackers
30.08.2022 - 12:20
1142
2 min
0
What’s new? The US Federal Bureau of Investigation (FBI) has issued a warning to investors about vulnerabilities in decentralized finance (DeFi) platforms. Representatives of the bureau called three of the most popular types of attacks on such projects and urged citizens to carefully study platforms, protocols, and smart contracts before investing. The FBI also cited data from analysts at Chainalysis, which found that criminals stole $1,3 billion in cryptocurrency in Q1 2022, and 97% of that amount was stolen from DeFi platforms.
What kind of attacks do criminals use? According to the FBI, the first type of attack involves initiating flash loans and exploiting smart contracts, due to which attackers can borrow large numbers of digital assets without collateral.
The second type of attack involves exploiting signature verification vulnerabilities in bridges between networks, allowing all funds to be withdrawn from the project. Another exploit option is to manipulate the price oracle and conduct leveraged trades, in which case hackers benefit from price calculation errors in trades.
The FBI stressed that investing involves risk and called for making sure that the DeFi platform code has been audited by at least one independent company before investing.
In July, representatives of the bureau warned about the emergence of a large number of fraudulent cryptocurrency applications disguised as real companies and financial institutions. The total damage to victims exceeded $42,7 million.
An August study by Chainalysis showed that $2 billion has been stolen from cross-chain protocols since the beginning of the year. These hacks accounted for 69% of all exploits in 2022. Analysts noted that bridges are becoming increasingly attractive to hackers as the volume of assets flowing through them grows.
Useful material?
Incidents
Developers warned of potential risks to bridges across the ecosystem and asked exchanges for assistance.
Jun 22, 2026
Incidents
The defendant helped move funds stolen through investment scams and earned at least $4 million for his role in the operation.
Jun 10, 2026
Incidents
The company is linking the incident to a compromised private key on a service wallet, rather than a smart contract exploit
May 22, 2026
Incidents
Following the incident, the project temporarily halted trading operations and node activity.
May 15, 2026
Incidents
The user spent weeks unsuccessfully trying to guess the password until Claude helped find an old wallet backup file
May 14, 2026
Crypto regulations
Authorities are introducing mandatory registration for companies handling cross-border crypto transactions
May 8, 2026
Telegram
Twitter