Dear DareNFT Community,
Thanks for your patience. We've been actively investigating the case and here below we would like to share how the attack happened & took place. It's the part 1 of the revealing.
The exploiter address is
0x6cd36B9459dfef332479d50bEc129932285A1656
On Oct 18 08:12:31 AM UTC & 11:23:51 AM UTC the exploiter attacked 2 upgradable contracts of our tokens $DPL (0x08A5390Fee3602CA833a9b6D3F12B0891B08e689) & $DNFT (0x162C2332e92BE409254AC7c59aD559C16a3f506E)
The exploiter was able to mint the large amounts of $DNFT & $DPL. After minting, he started to sell all the tokens he had into $DNFT & $DPL liquidity pools on Pancakeswap.
Total Funds Lost was: 75 WBNB & 33,969.26514 BUSD (~$50K in total at the exploiting )
We kept tracking the exploiter. After a few hours since the attack, he started to wash all the stolen money, starting from swapped all WBNB to BUSD then distributed the stolen money to 3 layers of wallets. The final destination of the funds lost was
0xA96Be652A08D9905F15B7FbE2255708709BeCD09, which is the Hot Wallet on BNBChain of a trusted centralized exchange. We've contacted, transferred all evidences and on-chain tracking above to them and been waiting for the results.
Please check out how the attack took place at https://twitter.com/darenft/status/1716350278331744398
In the meantime, the plan for the new, protected token contracts of $DNFT and $DPL is on the way.
What we'll be doing are:
1. Snapshot balances of $DPL holders before Oct-18 08:12:31 AM UTC and of $DNFT holders before Oct-18 11:23:51 AM
2. Create new $DNFT & $DPL contracts
3. Airdrop 1:1 the new tokens to all $DNFT & $DPL holders with the amounts equally to which before the attack
4. Add liquidity to new $DNFT & $DPL tokens on DEXes. (Please be notified as we're trying to get the funds to be returned, the liquidity adding might take time)
Again, for your utmost safety, we beg you to revoke your connections to our contracts. The trusted revoking site is
revoke.cash
It's just the part 1 of the revealing. Please wait for our next findings as we're working closely with trusted centralized entities and local authorities to investigate the attack. We'll surely keep you posted!
Mostrar más ...