Trade Haven Hub - Investing and Stock News
  • Investment Tips
  • Trade Tips
  • Crypto News
  • Economy News
  • Stock Market
  • Investment Tips
  • Trade Tips
  • Crypto News
  • Economy News
  • Stock Market
No Result
View All Result
Trade Haven Hub - Investing and Stock News
No Result
View All Result
Home Crypto News

CrediX DeFi Protocol Exploited as Hacker Gains Admin Rights, Drains Pool

by
August 4, 2025
in Crypto News
0
CrediX DeFi Protocol Exploited as Hacker Gains Admin Rights, Drains Pool
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

DeFi lending protocol CrediX suffered a $4.5 million exploit after attackers gained administrative control of the project’s multisig wallet and abused bridge privileges to mint unbacked collateral tokens.

The breach occurred six days before detection when the compromised admin account was granted multiple high-level roles, including pool admin, bridge controller, and emergency admin permissions.

Source: SlowMist on X

Blockchain security firms SlowMist and PeckShield identified that the attacker used Tornado Cash-funded addresses to bridge funds to the Sonic network before exploiting the BRIDGE role to mint acUSDC tokens directly.

The hacker then borrowed large amounts against the worthless collateral, draining approximately $2.64 million from the protocol’s lending pools.

Attack Mirrors Previous Exchange Exploits Using Admin Compromise

The CrediX exploit follows a pattern established by major crypto hacks, including the $234 million WazirX breach in July 2024. Both attacks involved compromised administrative access that bypassed normal security measures through legitimate-appearing transactions from authorized accounts.

Security analysis revealed that the attacker’s address 0xF321***662e held extensive privileges across CrediX’s infrastructure.

The POOL_ADMIN, BRIDGE, ASSET_LISTING_ADMIN, EMERGENCY_ADMIN, and RISK_ADMIN roles provided comprehensive control over protocol operations and asset management.

Today’s @CrediX_fi hack is due to compromised admin account 0xF321683831Be16eeD74dfA58b02a37483cEC662e, which has a number of roles, including POOL_ADMIN, BRIDGE, ASSET_LISTING_ADMIN, EMERGENCY_ADMIN, and RISK_ADMIN.

And the BRIDGE role is abused to drain/borrow pool assets… https://t.co/JGuLmh8zWu pic.twitter.com/0jmAuvtcJv

— PeckShield Inc. (@peckshield) August 4, 2025

The bridge role abuse allowed direct minting of collateral tokens without backing assets, creating artificial value that supported massive borrowing positions.

After draining the pools, most stolen funds were bridged back to the Ethereum mainnet with no subsequent movement detected by monitoring systems. CrediX immediately disabled its website to prevent additional user deposits while directing existing users to withdraw funds directly through smart contracts.

The protocol had previously secured a $60 million credit line in 2023, making it a major player in institutional DeFi lending markets.

The attack methodology resembles the WazirX hack, where malicious actors manipulated multisig wallet interfaces to trick authorized signers into approving compromised smart contract upgrades.

Both incidents leveraged open vulnerabilities in known administrative access controls and multisig security implementations.

Crypto Security Deteriorates Amid Rising Exploit Frequency

The CrediX breach adds to crypto’s devastating 2025 security record, with July losses reaching $142 million across 17 major incidents, according to PeckShield data.

July crypto hack losses surge 27% to $142 million with CoinDCX’s $44 million insider breach and GMX’s $42 million exploit leading victims.#July #CryptoHackhttps://t.co/4UCMKaxUvI

— Cryptonews.com (@cryptonews) August 1, 2025

The 27.2% increase from June’s $111.6 million reversed a temporary decline in hack-related losses.

Major July exploits included Indian exchange CoinDCX losing $44.2 million through insider involvement and GMX protocol suffering $42 million in re-entrancy attacks.

The CoinDCX incident involved employee Rahul Agarwal, whose compromised laptop provided hackers with system access after receiving malicious files from German contacts.

Physical violence against crypto holders escalated alongside digital attacks, with 32 “wrench attacks” reported globally in 2025.

For example, France experienced nearly one-third of incidents, including kidnapping attempts targeting crypto executives and their family members, with ransom demands reaching €7 million.

Crypto investors also lost over $2.2 billion in 2025’s first half through 344 separate incidents, already exceeding all of 2024’s security losses. Wallet-related breaches accounted for $1.7 billion across 34 attacks, while phishing scams stole $410 million in 132 incidents.

The WazirX exchange remains in legal proceedings following its 2024 hack, with Singapore’s High Court recently allowing creditor revoting on an amended restructuring plan. The court reversal provides hope for affected users who have been unable to access funds for nearly one year.

Recovery efforts across all 2025 incidents have returned $187 million through law enforcement action, white-hat agreements, and exchange cooperation.

However, net losses still total approximately $2.29 billion with an average incident loss of $7.1 million.

For CrediX, the protocol has announced a full refund for all affected users within 24-48 hours, with a post-mortem report expected to be released after restoration.

All users funds will be recovered in full within 24-48 hours

— CrediX (@CrediX_fi) August 4, 2025

The post CrediX DeFi Protocol Exploited as Hacker Gains Admin Rights, Drains Pool appeared first on Cryptonews.

Previous Post

Solana Price Prediction: Cup and Handle Pattern Confirmed – Final Dip Before $900 Target

Next Post

Capital B Raises $13.3M Through Convertible Bonds to Expand Bitcoin Treasury Strategy

Next Post
Capital B Raises $13.3M Through Convertible Bonds to Expand Bitcoin Treasury Strategy

Capital B Raises $13.3M Through Convertible Bonds to Expand Bitcoin Treasury Strategy

  • Trending
  • Comments
  • Latest
Buy Bitcoin Under $100K Before The Next Bull Run

Buy Bitcoin Under $100K Before The Next Bull Run

April 22, 2025
Quantum Computing: its Evolution and its Potential Future

Quantum Computing: its Evolution and its Potential Future

March 20, 2025
Home Depot is buying GMS for about $4.3 billion as retailer chases more home pros

Home Depot is buying GMS for about $4.3 billion as retailer chases more home pros

June 30, 2025
Digital Assets Are Not Going Away, Senator Tim Scott Says

Digital Assets Are Not Going Away, Senator Tim Scott Says

July 10, 2025
Is $BONK Ready to Rally? 3% Rebound Indicates Strong Key Support

Is $BONK Ready to Rally? 3% Rebound Indicates Strong Key Support

0
Quantum Computing: its Evolution and its Potential Future

Quantum Computing: its Evolution and its Potential Future

0
Quantum Computing: its Evolution and its Potential Future

Quantum Computing: its Evolution and its Potential Future

0
Air Direct Capture – Reducing CO2 from the Atmosphere

Air Direct Capture – Reducing CO2 from the Atmosphere

0
Is $BONK Ready to Rally? 3% Rebound Indicates Strong Key Support

Is $BONK Ready to Rally? 3% Rebound Indicates Strong Key Support

August 4, 2025
Bitcoin Price Prediction: BTC Rebounds from $113K as $118K Target Looms Amid Global Crypto Shake-Up

Bitcoin Price Prediction: BTC Rebounds from $113K as $118K Target Looms Amid Global Crypto Shake-Up

August 4, 2025
ChatGPT’s XRP Analysis: Bullish Setup Above $3.05 Despite 42-Bank Blockade on Ripple

ChatGPT’s XRP Analysis: Bullish Setup Above $3.05 Despite 42-Bank Blockade on Ripple

August 4, 2025
US Regulators Begin ‘Crypto Sprint’ as CFTC Teams with SEC on Trump’s Crypto Plan

US Regulators Begin ‘Crypto Sprint’ as CFTC Teams with SEC on Trump’s Crypto Plan

August 4, 2025

    Stay updated with the latest news, exclusive offers, and special promotions. Sign up now and be the first to know! As a member, you'll receive curated content, insider tips, and invitations to exclusive events. Don't miss out on being part of something special.


    By opting in you agree to receive emails from us and our affiliates. Your information is secure and your privacy is protected.

    Recent News

    Is $BONK Ready to Rally? 3% Rebound Indicates Strong Key Support

    Is $BONK Ready to Rally? 3% Rebound Indicates Strong Key Support

    August 4, 2025
    Bitcoin Price Prediction: BTC Rebounds from $113K as $118K Target Looms Amid Global Crypto Shake-Up

    Bitcoin Price Prediction: BTC Rebounds from $113K as $118K Target Looms Amid Global Crypto Shake-Up

    August 4, 2025
    ChatGPT’s XRP Analysis: Bullish Setup Above $3.05 Despite 42-Bank Blockade on Ripple

    ChatGPT’s XRP Analysis: Bullish Setup Above $3.05 Despite 42-Bank Blockade on Ripple

    August 4, 2025
    US Regulators Begin ‘Crypto Sprint’ as CFTC Teams with SEC on Trump’s Crypto Plan

    US Regulators Begin ‘Crypto Sprint’ as CFTC Teams with SEC on Trump’s Crypto Plan

    August 4, 2025
    • About us
    • Contact us
    • Privacy Policy
    • Terms & Conditions

    Copyright © 2025 tradehavenhub.com | All Rights Reserved

    No Result
    View All Result
    • Investment Tips
    • Trade Tips
    • Crypto News
    • Economy News
    • Stock Market

    Copyright © 2025 tradehavenhub.com | All Rights Reserved