CCT - Crypto Currency Tracker logo CCT - Crypto Currency Tracker logo
Crypto Potato 2024-12-29 20:02:13

Access Control Vulnerabilities Cause $1.7B in Losses Across CeFi, DeFi, and Gaming

Access control vulnerabilities have emerged as the leading cause of crypto hack losses in 2024, accounting for a whopping 75% of total damages across decentralized finance (DeFi), centralized finance (CeFi), and gaming/metaverse sectors, excluding phishing attacks. According to Hacken, this marks a significant increase from 50% in 2023, with losses tied to unauthorized access and private key theft surging to $1.7 billion, up from less than $1 billion the previous year. In contrast, exploits targeting smart contract vulnerabilities contributed just 14% of total losses. Access Control Exploits Surge in 2024 Hacken’s report revealed that access control attacks were particularly pervasive across all categories of Web3 in 2024, with CeFi, DeFi, and gaming/metaverse projects being severely impacted. In CeFi, major incidents at DMM Exchange and WazirX resulted in combined losses exceeding $500 million. The DeFi sector also suffered from compromised smart contract management, as seen in the Radiant Capital hack, which caused $55 million in losses. The gaming/metaverse space faced significant damage too, exemplified by the $290 million PlayDapp exploit. At the core of these attacks was private key compromise, stemming from weak key management practices, social engineering, and insecure backup methods. To safeguard against these threats, Hacken outlined that businesses must implement advanced multisig management, automated incident response, and adhere to the Cryptocurrency Security Standard (CCSS) to ensure stronger private key security and reduce operational vulnerabilities across Web3. DeFi Losses Drop But Gaming and Metaverse Still Struggling The DeFi sector saw a notable reduction in total losses in 2024 compared to the previous year. While DeFi-related losses in 2023 climbed $787 million, the 2024 figure saw a 40% reduction which can largely be attributed to improved security measures across the sector, most notably within decentralized bridges. In 2024, DeFi witnessed the improvement of cross-chain operability, which played a crucial role in mitigating bridge exploits. As bridges have historically been top targets for hackers, the reduction in losses – $338 million in 2023 compared to just $114 million in 2024 – demonstrated the growing effectiveness of new security protocols. The report pointed to tools like Multi-Party Computation (MPC) and Zero-Knowledge (ZK) cryptography which have become essential for bridge developers, improving security and making attacks less impactful. These advancements have significantly reduced the frequency and severity of exploits targeting cross-chain bridges. The same can’t be said for the gaming and metaverse sectors experienced significant losses. In 2024, this cohort of Web 3 recorded $389 million in losses which accounted for nearly 20% of all crypto hacks. A large portion of these losses stemmed from access control vulnerabilities. Three major incidents were responsible for $358 million of the total losses which made up more than 80% of the gaming and metaverse hacks for the year. The concentration of these losses in Q1 emphasized the difficulty these projects face in securing access management, particularly on newer platforms like Blast, which also encountered multiple rug pulls. The post Access Control Vulnerabilities Cause $1.7B in Losses Across CeFi, DeFi, and Gaming appeared first on CryptoPotato .

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.