Cointime

Download App
iOS & Android

Record Losses From DeFi Hacks In 2022

Immunefi, a security provider for the Web3, issued a report on crypto losses due to hacks and fraud in 2022. The company, it reads, “analyzed all cases in which a blackhat hacker exploited various crypto protocols.” In total, there were 168 incidents. That’s about one every other day.

The losses that resulted are enormous: a total of $3.948 billion. Of that, 3.773 billion is due to hacks, and just shy of 175 million is due to fraud. Hacks are by far the strongest cause of losses.

Image Source: Immunefi Crypto Report

The majority of losses fall on four projects: Ronin (625 million), BNB (570 million), Wormhole (326 million), and FTX (650 million). This makes the hackers’ revenues difficult to predict, since it is not the mass of successes but few but large hacks that matter.

It is possible that losses are recovered, but rarely happens. In 12 cases, a total of 204 million was recovered, about 5 percent of total losses.

Image Source: Immunefi Crypto Report

Compared to 2021, the situation has improved: that year there were losses of just over $8 billion from hacks and scammers. So the total amount has halved.

But the composition has changed: in 2021, fraud still caused $5.763 billion in losses. This field completely collapsed in 2022, perhaps because the hype died down and the inexperienced and naive, but also greedy, capital left the market.

Image Source: Immunefi Crypto Report

Conversely, hackers raged harder in 2022 than in 2021, and they targeted Decentralized Finance (DeFi) more than ever. That means projects and smart contracts that map financial services onto a blockchain. While DeFi frees users from dependence on fiduciary middlemen — it exposes them to great risk from hacks. DeFi accounted for just over 80 percent of losses. Compared to 2021, absolute losses from DeFi hacks increased from just over $2 billion to nearly $3.2 billion.

The blockchains most attacked in this regard were Ethereum and BNB. This is obvious as they are the two main smart contract blockchains. They were followed by Solana, Avalanche, and Polygon. This is also obvious, as these are also smart contract blockchains.

Experts do not expect the situation to ease in 2023. According to a report available to Cointelegraph, security firm Beosin expects DeFi protocols to become more stable but continue to attract hackers. As long as the interest in crypto remains high, the number of hackers will not decrease either, it said. Many DeFi protocols continue to go through inadequate security testing before launch, and new models, such as cross-chain bridges like Ronin, increase the danger.

The company HashEx states that hackers are “getting smarter, gaining more experience, and have learned how to find bugs.” Since the entire industry is still young and growing, it is difficult to gain an edge over hackers. The high value stashed in DeFi logs makes them very attractive to hackers — and that will remain the case in 2023, he said.

Comments

All Comments

Recommended for you

  • Samourai Wallet crypto-currency mixing service co-founder arrested for money laundering

    According to The Block, the co-founders of the encrypted coin-mixing service, Samourai Wallet, have been arrested. Prosecutors allege that they laundered $100 million from Silk Road and other illegal markets. On Wednesday, Samourai CEO Keonne Rodriguez and CTO William Lonergan Hill were charged with operating the Samourai wallet.Prosecutors claim that Samourai is an unlicensed money transfer company that participated in "over $2 billion in illegal transactions and provided over $100 million in money laundering transactions for illegal dark web markets, including Silk Road." Rodriguez was arrested on Wednesday morning and will face trial in Pennsylvania.Hill was reportedly arrested in Portugal, and the US is seeking extradition. Prosecutors say that Samourai's network servers and domain name have also been seized, and the app can no longer be downloaded from the US Google Play store. Rodriguez and Hill are charged with money laundering and unlicensed money transmission, with maximum sentences of 20 years and 5 years, respectively.

  • Rune token DOG's transaction volume exceeded 100 BTC within 4 hours of launch

    According to data from Ordinal News forwarded by Runestone founder Leonidas, the Bitcoin symbol token DOG broke through a trading volume of 118.72 BTC (approximately $7,685,101 USD) within 4 hours of trading. The trading volume on three platforms was: Magic Eden on Bitcoin: 45.21 BTC; OKX Wallet: 20.37 BTC; UniSat: 53.14 BTC.

  • NFT lending volume exceeds $2 billion in Q1

    According to a report from CoinGecko, the first quarter trading volume of the lending market using non-fungible tokens (NFTs) as collateral exceeded $2 billion, a 44% increase compared to the fourth quarter of 2023. The lending platform Blend has shown significant dominance in the market, with a monthly loan amount of $562.3 million as of March 2024, occupying nearly 93% of the market share.

  • Grayscale GBTC outflow of $130 million yesterday

    According to data monitored by HODL15Capital, Grayscale's Bitcoin ETF GBTC saw an outflow of 2,000 BTC, worth about $130 million, on April 24th.

  • U.S. House of Representatives: Agreement on stablecoin regulation will soon be reached with the Chairman of the Financial Services Committee

    Maxine Waters, the Democratic leader of the US Financial Services Committee, predicted on Wednesday that she and Chairman Patrick McHenry will soon reach an agreement on stablecoin regulation legislation.

  • InfiniGods, a blockchain game studio, announced that it has received $8 million in Series A funding

    Blockchain game studio InfiniGods announced it has received $8 million in Series A funding, exclusively invested by Pantera Capital.

  • Tevaera Closes $5 Million Funding Round to Create One-Stop Gaming Ecosystem Powered by zkSync's ZK Stack

    Tevaera, a gaming platform powered by zkSync's ZK Stack, has closed a $5 million funding round led by Laser Digital and Nomura Group. The funding will support Tevaera's mission to create a one-stop gaming ecosystem. The project has attracted prominent investors, including Hashkey Capital, Fenbushi Capital, and Crypto.com Capital. Tevaera has also launched a redesigned website and is preparing to introduce two new games and the first decentralized L3 gaming chain on zkSync.

  • The Hong Kong Securities Regulatory Commission’s official website has listed the Bitcoin and Ethereum spot ETFs and stock codes of China Asset Management, Bosera and Harvest.

    Hong Kong Securities and Futures Commission website has listed the Bitcoin and Ethereum spot ETFs of three fund companies, Huaxia, Boshi, and Jiashi, with approval dates all on April 23, 2024. The related funds are not derivative product funds, specifically including:1. Huaxia Bitcoin ETF (BUU163) with share codes of 03042, 09042, and 83042;2. Huaxia Ethereum ETF (BUU164) with share codes of 03046, 09046, and 83046;3. Boshi HashKey Bitcoin ETF (BUU104) with share codes of 03008 and 09008;4. Boshi HashKey Ethereum ETF (BUU105) with share codes of 03009 and 09009;5. Jiashi Bitcoin Spot ETF (BUT244) with share codes of 03439 and 09439;6. Jiashi Ethereum Spot ETF (BUU885) with share codes of 03179 and 09179.

  • Correction: Nigeria’s central bank says “freezing Bybit, KuCoin, OKX, Binance user accounts” is unofficial

    The official X account of the Central Bank of Nigeria (CBN) stated that the announcement "the Central Bank of Nigeria will freeze Bybit, KuCoin, OKX, and Binance user accounts" is not an official release. Previously, according to Cointelegraph, the Central Bank of Nigeria (CBN) issued an instruction requiring all banks and financial institutions to identify individuals or entities trading with cryptocurrency exchanges and ensure that such accounts receive no debit (PND) instructions within six months.

  • Alliance of 314: The X314 contract is suspected to have a hidden additional issuance switch, developers should pay attention to verification

    Alliance of 314 issued a statement claiming that the contract of a certain 314 project has not been open-sourced on the blockchain. As for whether other platforms have open-sourced their contracts, there is a misconception that open-sourcing on other platforms is self-submitted and does not necessarily mean that the contract is deployed on the chain, so there may be unknown hidden issuance. Additionally, the said 314 project announced that it will soon launch a trading platform, and the first requirement for logging into a centralized exchange is to open-source the contract. Open-sourcing is the first thing that any project should do to ensure investor confidence. Referring to the open-sourcing of the 0.1, 0.5, and 0.9 versions before, it can be concluded that there is hidden code in the X314 contract, and therefore it cannot be open-sourced out of fear. The biggest risk warning: after decompiling and querying ethervm, it is highly suspected that a certain 314 has a hidden issuance switch to increase mining pool output and arbitrage. The field is as follows: 0x40c10f19mint(address,uint256). The risk alert level for this switch is the highest level, and generally, ordinary developers do not set this switch.