Echo Protocol Suffers $76.7M Exploit Due to Admin Key Compromise
- An attacker minted approximately 1,000 unauthorized synthetic Bitcoin (eBTC) valued at around $76.7 million on the Echo Protocol, which operates on the Monad blockchain.
- The hacker has laundered part of the stolen funds by depositing eBTC into DeFi lending protocol Curvance and borrowing wrapped Bitcoin (wBTC) against it.
- Currently, the attacker retains about 955 eBTC, worth approximately $73 million, indicating they hold over 95% of the stolen assets.
- The exploit is attributed to an admin private key compromise rather than a smart contract vulnerability, highlighting operational security issues.
- This incident is part of a troubling trend in decentralized finance (DeFi), with at least twelve protocols compromised this month alone.
The Echo Protocol is currently investigating the incident and has suspended all cross-chain transactions while addressing security concerns related to its administrative controls.
With over $76 million lost in this exploit, it underscores significant vulnerabilities within DeFi platforms and raises concerns about operational security practices in the sector.