Exactly Protocol released an attack incident report, with losses of approximately 7.6 million dollars
ChainCatcher news, the DeFi lending protocol Exactly Protocol has released a post-mortem analysis report on the hack. Exactly Protocol experienced a security vulnerability on August 18, resulting in approximately $7.6 million in economic losses, affecting 117 accounts. The root cause of the vulnerability was a flaw in the DebtManager peripheral contract, where insufficient input validation design and unchecked permission schemes facilitated the attackers. It has been confirmed that two attackers were involved in this incident. The main attacker stole the majority of the losses (97%), while the impersonator attacker took 3% of the losses.
In addition, Exactly Protocol announced that it will collaborate with ABDK to conduct a formal audit of all protocols and peripheral contracts used in the web application, and looks forward to reintroducing these features in September.