FutureSwap protocol on Arbitrum is attacked again: hacker exploits reentrancy vulnerability, loses $74,000

robot
Abstract generation in progress

【ChainNews】FutureSwap has recently encountered trouble on Arbitrum. According to analysis by the security team BlockSec, this DeFi protocol was targeted by hackers in two consecutive attacks within just a few days, making it a rollercoaster.

After the first attack, the hackers did not stop. Instead, three days ago, they used a carefully crafted reentrancy function (0x5308fcb1), exploiting a logical vulnerability in the protocol to wildly over-mint LP tokens. This is not a clever trick; it’s the common reentrancy attack—calling the contract function again before the transaction completes to bypass balance checks.

What’s more cunning is that the hackers were very patient. After minting the LP tokens, they waited for the cooling-off period to end. Once the time was right, they immediately redeemed these over-collateralized assets, successfully cashing out about $74,000. In just a few days, a single vulnerability was drained dry.

What does this tell us? Every protocol in the DeFi ecosystem must be extremely cautious. Although reentrancy vulnerabilities are an old problem, hackers can still find opportunities if defenses are insufficient.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 3
  • Repost
  • Share
Comment
0/400
DataOnlookervip
· 4h ago
Did FutureSwap get hacked again? This re-entry attack was really fierce, and the hacker even knew to wait for the cooldown period... $74,000 was just lost like that, okay then.
View OriginalReply0
SerumSurfervip
· 4h ago
Reentrancy vulnerability is an old trick. How did FutureSwap still fall for it? Projects with such poor defense really dare to go live on the mainnet?
View OriginalReply0
just_vibin_onchainvip
· 5h ago
Reentrancy vulnerabilities are back, these two hackers are really patient... Waiting for the cooling-off period is truly a brilliant move. This time, FutureSwap really underperformed; did it really lose 74,000 just like that?
View OriginalReply0
  • Pin

Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)