Velodrome, Aerodrome hit by attack on front-end websites

Quick Take

  • Decentralized exchanges Velodrome and Aerodrome warned users that their websites have been compromised.

Decentralized exchanges Velodrome and Aerodrome warned users that their websites have been compromised.

The incident appears to be a domain name system (DNS) attack aiming to take control of the official website links. In such incidents, hackers gain control of a site and redirect users to a phishing site associated with a malicious contract, in the hope of stealing users’ funds.

Both Velodrome and Aerodrome today warned against interacting with their websites until further notice, in posts issued on X.

“Our frontend is currently compromised. Please do not interact with Velodrome for the time being. The team are investigating and will communicate more here when we have it,” the team noted. The same notice was issued via Aerodrome's official account on X.

The domain name system is a widely used protocol on which websites rely. However, attackers can potentially exploit DNS issues to carry out exploits, as demonstrated in this incident.

THE SCOOP

Keep up with the latest news, trends, charts and views on crypto and DeFi with a new biweekly newsletter from The Block's Frank Chaparro

By signing-up you agree to our Terms of Service and Privacy Policy
By signing-up you agree to our Terms of Service and Privacy Policy

Impact on user assets

While there has been no official statement about the impact of the incident on user assets, on-chain analyst ZachXBT detected over $40,000 in funds being transferred to two specific addresses, likely taken during the attack.

Velodrome is the second largest decentralized exchange protocol on OP Mainnet (previously Optimism) in terms of total value locked and revenue. It has over $139 million in total locked value from users. Meanwhile Aerodrome is the largest protocol on Base by TVL. It holds over $63 million in funds.


Disclaimer: The Block is an independent media outlet that delivers news, research, and data. As of November 2023, Foresight Ventures is a majority investor of The Block. Foresight Ventures invests in other companies in the crypto space. Crypto exchange Bitget is an anchor LP for Foresight Ventures. The Block continues to operate independently to deliver objective, impactful, and timely information about the crypto industry. Here are our current financial disclosures.

© 2023 The Block. All Rights Reserved. This article is provided for informational purposes only. It is not offered or intended to be used as legal, tax, investment, financial, or other advice.

About Author

Vishal Chawla is The Block’s crypto ecosystems editor and has spent over six years covering tech protocols, cybersecurity, artificial intelligence and cloud computing. Vishal likes to delve deep into blockchain intricacies to ensure readers are well-informed about the continuously evolving crypto landscape. He is also a staunch advocate for rigorous security practices in the space. Before joining The Block, Vishal held positions at IDG ComputerWorld, CIO, and Crypto Briefing. He can be reached on Twitter at @vishal4c and via email at [email protected]

Editor

To contact the editor of this story:
Ryan Weeks at
[email protected]