Hacks decline for the second month running, but still results in $65M in crypto losses

Source Cryptopolitan

November saw just 50 instances of hacks and exploits targeting apps and protocols. Certik noted both the number of hacks and the crypto stolen declined for the second month in a row. 

Hacks and exploits have been on the decline since September. November’s result shows a total of 50 successful attacks with an estimated value of $65M. Data by Certik shows a two-month streak of declining attacks, despite the record market value of crypto assets. November was also the second-slowest month when it came to direct crypto hacks. 

Hacks decline in November 2024 compared to November 2023

Certik’s estimate for November is the most conservative, based on its methodology. The Web3 auditing firm tracks big exploits against DeFi, protocols, and enterprise wallets. 

Certik also excludes decentralized and trading attacks, including sandwich attacks, flash loan trades, and rug pulls. Other estimates that include a wider selection of hacks tally up the losses to $71M or even up to $85M. The result for November 2024 is still smaller compared to November 2023, where a total of $343M was lost, based on estimates by ImmuneFi. 

November 2023 was a notable month, with a $118M hack against the Poloniex exchange. In comparison, November 2024 shows a slowdown of big exploits and a turn toward small DEX and DeFi protocols. 

November also saw an acceleration of attacks directed at personal wallets through malicious links, supply chain attacks, or social phishing. According to ScamSniffer data, 9,208 victims were affected in small-scale exploits against personal wallets. A total of $9.3M were lost. 

Hacks slow down, on track to remain below 2023 levels

Hacks and exploits on a year-to-date basis make up to $1.49B in a total of 209 notable incidents, with the most activity around mid-2024. For now, the year’s exploits are smaller compared to 2023 with a total of $1.7B. Peak activity for crypto exploits happened in 2022 when hackers took hold of more than $3.7B. 

Besides the bear market, one of the factors was a slowdown of the Lazarus Group activity, at least based on the usage of TornadoCash. The other reason is an attempt to shift exploits to the Solana ecosystem, while Ethereum is still the biggest target for exploits. 

Tornado Cash deposits slowed down since the sanctions verdict in 2022.
Tornado Cash deposits slowed down since the sanctions verdict in 2022. | Source: Dune Analytics

Activity on Tornado Cash fell off a cliff in 2022, after the OFAC sanctions verdict. Even after the verdict was overturned in 2022, the mixer did not regain its original volume. TornadoCash remains the most widely used for Ethereum-based ERC-20 assets. TornadoCash, however, remains key to mixing funds, with recent deposits from the DEXX hack getting sent in test transactions. 

Hacks become more detailed and creative

The biggest hack for November was DEXX, which exposed thousands of Solana wallets and led to a loss of $30M. The DEXX hack exposed 8,620 Solana wallets as a result of social engineering to steal private keys. 

Thala Labs was the second-biggest hack in November, for a total of $25.5M. The exploit was white-hatted, later allowing the platform to recover its funds after deducting a $300K bug bounty.

Gifto was a questionable hack, where new tokens were printed and sold on exchanges. Polter Finance lost $12M in an Oracle exploit, while Delta Prime erased $4.8M in a contract exploit. MetaWin was another mid-range hack, where a smart contract allowed for oversized withdrawals. The betting platform lost $4M from its permissionless withdrawal contract. The smallest hack was XT Exchange, losing between $1M and $1.7M from compromised wallets. 

Certik, whose main task is private contract audits, noted November arrived with multiple exploits based on flawed logic. Audits do not always guarantee a contract will not be exploited, but a total lack of audits may be an easy target for hackers. 

At the same time, bridge hacks and exploits have almost disappeared, as projects rarely use bridge activity and have siloed their liquidity.

A Step-By-Step System To Launching Your Web3 Career and Landing High-Paying Crypto Jobs in 90 Days.

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
Trump National Address ‘About-Face,’ Bitcoin Slumps Back to $66,000 Trump's major reversal on Iran triggers a nearly 3% drop in Bitcoin; upcoming non-farm payroll data becomes key.On April 2, influenced by U.S. President Trump's reversal on Iran, the cryp
Author  TradingKey
12 hours ago
Trump's major reversal on Iran triggers a nearly 3% drop in Bitcoin; upcoming non-farm payroll data becomes key.On April 2, influenced by U.S. President Trump's reversal on Iran, the cryp
placeholder
Silver Price Forecast: XAG/USD falls to near $72.00 amid fading safe-haven demandSilver price (XAG/USD) continues to lose ground after registering tiny losses in the previous day, trading around $72.90 during the Asian hours on Thursday. The safe-haven demand for the precious metal fades amid rising optimism over Middle East peace.
Author  FXStreet
14 hours ago
Silver price (XAG/USD) continues to lose ground after registering tiny losses in the previous day, trading around $72.90 during the Asian hours on Thursday. The safe-haven demand for the precious metal fades amid rising optimism over Middle East peace.
placeholder
Gold retreats sharply from two-week top/$4,800 as Trump’s Iran comments boost USDGold (XAU/USD) witnessed an intraday turnaround from the $4,800 mark, or a fresh two-week high set earlier this Thursday, and for now, seems to have snapped a four-day winning streak amid resurgent US Dollar (USD) demand.
Author  FXStreet
15 hours ago
Gold (XAU/USD) witnessed an intraday turnaround from the $4,800 mark, or a fresh two-week high set earlier this Thursday, and for now, seems to have snapped a four-day winning streak amid resurgent US Dollar (USD) demand.
placeholder
Pound Sterling weakens as USD rallies after Trump’s address to the nationThe GBP/USD pair meets fresh supply during the Asian session on Thursday. It retreats further from the weekly high, which was around the 1.3345 area touched the previous day. Spot prices decline to the mid-1.3200s after US President Donald Trump's comments.
Author  FXStreet
19 hours ago
The GBP/USD pair meets fresh supply during the Asian session on Thursday. It retreats further from the weekly high, which was around the 1.3345 area touched the previous day. Spot prices decline to the mid-1.3200s after US President Donald Trump's comments.
placeholder
Gold rises on softer US Dollar, traders await Trump's address on Iran warGold price (XAU/USD) extends the rally to near $4,775 during the early Asian session on Thursday. The precious metal surges amid a weakening US Dollar (USD) and cooling geopolitical tensions in the Middle East.
Author  FXStreet
21 hours ago
Gold price (XAU/USD) extends the rally to near $4,775 during the early Asian session on Thursday. The precious metal surges amid a weakening US Dollar (USD) and cooling geopolitical tensions in the Middle East.
goTop
quote