Aerodrome Finance, the leading decentralized exchange on the Base network, confirmed it is investigating a suspected DNS hijacking attack that compromisedAerodrome Finance, the leading decentralized exchange on the Base network, confirmed it is investigating a suspected DNS hijacking attack that compromised

Base’s Top DEX Aerodrome Hit by a Suspected Frontend Security Breach

Aerodrome Finance, the leading decentralized exchange on the Base network, confirmed it is investigating a suspected DNS hijacking attack that compromised its centralized domains.

The protocol warned users to avoid accessing its primary .finance and .box domains and instead use two secure decentralized mirrors hosted on ENS infrastructure.

The attack unfolded rapidly, with affected users reporting malicious signature requests designed to drain multiple assets, including NFTs, ETH, and USDC, through unlimited approval prompts.

While the team maintains that all smart contracts remain secure, the frontend compromise exposed users to sophisticated phishing attempts that could have drained wallets for those who weren’t carefully monitoring transaction approvals.

DNS Hijacking Forces Emergency Protocol Lockdown

Aerodrome’s investigation began when the team detected unusual activity on its primary domain infrastructure approximately six hours before issuing public warnings.

The protocol immediately flagged its domain provider, Box Domains, as potentially compromised and urged the service to reach out urgently.

Within hours, the team confirmed that both centralized domains, .finance and .box, had been hijacked and remained under attacker control.

The protocol responded by shutting down access to all primary URLs while establishing two verified safe alternatives: aero.drome.eth.limo and aero.drome.eth.link.

These decentralized mirrors leverage the Ethereum Name Service, which operates independently of traditional DNS systems that are vulnerable to hijacking.

The team emphasized that smart contract security remained intact throughout the incident, containing the breach exclusively to frontend access points.

Sister protocol Velodrome faced similar threats, prompting its team to issue parallel warnings about domain security.

The coordinated nature of the warnings suggested that attackers may have systematically targeted Box Domains’ infrastructure to compromise multiple DeFi platforms simultaneously.

Users Report Aggressive Multi-Asset Drain Attempts

One affected user described encountering the malicious interface before official warnings circulated, detailing how the compromised site deployed a deceptive two-stage attack.

The hijacked frontend first requested what appeared to be a harmless signature containing only the number “1,” establishing initial wallet connection.

Immediately after this seemingly innocuous request, the interface triggered an unlimited number of approval prompts for NFTs, ETH, USDC, and WETH.

It asked for a simple signature, then instantly tried unlimited approvals to drain NFTs, ETH, and USDC,” the user reported. “If you weren’t paying attention, you could’ve lost everything.

The victim documented the attack through screenshots and video recordings, capturing the progression from initial signature request through multiple drain attempts.

Their investigation, conducted with AI assistance, examined browser configurations, extensions, DNS settings, and RPC endpoints before concluding that the attack pattern aligned with DNS hijacking methodology.

Another community member shared an experience with a separate, draining incident recently, describing themselves as a seasoned veteran and full-stack developer who still fell victim to sophisticated attacks.

Despite technical expertise, the user lost significant funds and spent 3 days developing a Jito bundle-based script to recover roughly 10-15% of the stolen assets through on-chain stealth operations.

October Records Lowest Crypto Hack Losses of the Year

The Aerodrome incident emerged during October’s unexpected security milestone, as the crypto market experienced its lowest monthly hack losses of the year.

Data from blockchain security firm PeckShield shows only $18.18 million was stolen across 15 separate incidents, representing a steep 85.7% decline from September’s $127.06 million.

Without the late-month Garden Finance exploit, total losses would have hovered near $7.18 million, the lowest single-month value since early 2023.

The largest incidents occurred at Garden Finance, Typus Finance, and Abracadabra, which collectively accounted for $16.2 million of total stolen funds.

Garden Finance, a Bitcoin peer-to-peer protocol, disclosed on October 30 that it had been exploited for more than $10 million after one of its solvers was compromised, with the breach affecting only the solver’s own inventory.

Typus Finance suffered an oracle manipulation attack on October 15 that drained roughly $3.4 million from its liquidity pools, traced to a flaw in one of its TLP contracts that caused the project’s native token to drop about 35%.

DeFi lending platform Abracadabra endured its third exploit since launch around the same time, resulting in roughly $1.8 million in MIM stablecoin losses after hackers bypassed solvency checks through a smart contract vulnerability.

Market Opportunity
TOP Network Logo
TOP Network Price(TOP)
$0.000096
$0.000096$0.000096
0.00%
USD
TOP Network (TOP) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Solana Treasury Stocks: Why Are These Companies Buying Up SOL?

Solana Treasury Stocks: Why Are These Companies Buying Up SOL?

The post Solana Treasury Stocks: Why Are These Companies Buying Up SOL? appeared on BitcoinEthereumNews.com. In 2020, everyone watched Strategy (called Microstrategy back then) scoop up Bitcoin and turn corporate crypto treasuries into a mainstream story. Now, a new wave is forming. And it’s centered on Solana. Dozens of companies are holding SOL as a bet on price. Except they’re not just holding. They’re building what’s being called Solana treasuries or Digital Asset Treasuries (DATs). These aren’t passive vaults. They’re active strategies that stake, earn yield, and tie into the fast-growing Solana ecosystem. Forward Industries, a Nasdaq-listed firm, recently bought more than 6.8 million SOL, making it the world’s largest Solana treasury company. Others like Helius Medical, Upexi, and DeFi Development are following a similar playbook, turning SOL into a centerpiece of their balance sheets. The trend is clear: Solana treasury stocks are emerging as a new class of crypto-exposed equities. And for investors, the question isn’t just who’s buying but why this strategy is spreading so fast. Key highlights: Solana treasuries (DATs) are corporate reserves of SOL designed to earn yield through staking and DeFi. Companies like Forward Industries, Helius Medical, Upexi, and DeFi Development Corp now hold millions of SOL. Public firms collectively own 17.1M SOL (≈$4B), which makes Solana one of the most adopted treasuries. Unlike Bitcoin treasuries, Solana holdings generate 6–8% annual rewards. It makes reserves into productive assets Solana treasury stocks are emerging as a new way for investors to gain indirect exposure to SOL. Risks remain: volatility, regulation, and concentrated holdings. But corporate adoption is growing fast. What is a Solana treasury (DAT)? A Solana treasury, sometimes called a Digital Asset Treasury (DAT), is when a company holds SOL as part of its balance sheet. But unlike Bitcoin treasuries, these usually aren’t just static reserves sitting in cold storage.  The key difference is productivity. SOL can be staked directly…
Share
BitcoinEthereumNews2025/09/21 06:09
Unstoppable: Why No Public Company Can Ever Catch MicroStrategy’s Massive Bitcoin Holdings

Unstoppable: Why No Public Company Can Ever Catch MicroStrategy’s Massive Bitcoin Holdings

BitcoinWorld Unstoppable: Why No Public Company Can Ever Catch MicroStrategy’s Massive Bitcoin Holdings Imagine trying to build a mountain of gold, only to discover
Share
bitcoinworld2025/12/17 14:30
Little Pepe soars from presale to market spotlight

Little Pepe soars from presale to market spotlight

The post Little Pepe soars from presale to market spotlight appeared on BitcoinEthereumNews.com. Disclosure: This article does not represent investment advice. The content and materials featured on this page are for educational purposes only. Early investors often capture the biggest rewards in crypto, and Little Pepe, priced under $0.005, is emerging as a memecoin that could rival big players. Summary LILPEPE has sold over 15 billion tokens in its presale, raising $25.4 million. The project’s community has grown to more than 41,000 holders and 30,000 Telegram members. Analysts suggest the token could see gains of up to 55x in two years and 100x by 2030. Crypto enthusiasts are aware that early investors tend to benefit the most from the market. Ripple (XRP) and Solana (SOL) are popular tokens that have profited traders. Little Pepe (LILPEPE), valued at less than $0.005, might produce more profit. LILPEPE is swiftly gaining popularity despite its recent introduction. Little Pepe: The market-changing memecoin Little Pepe has surprised everyone with its quick surge in cryptocurrencies. LILPEPE is becoming a popular meme currency. Its presale price is below $0.003. Strong foundations, a distinct market presence, and a developing and enthusiastic community distinguish it from other meme tokens. Many meme currencies use hype to attract investors, but LILPEPE’s rarity, community support, and distinctive roadmap have effectively drawn them in. Currently in its 13th presale stage, more than 15 billion tokens have been sold, generating over $25.4 million and sparking considerable interest. As the token approaches official listing, enthusiasm is growing, and many people believe it could be one of the following major memecoin success stories. LILPEPE’s growing community drives growth The strong community surrounding LILPEPE is a primary reason for its success. LILPEPE has built a loyal following of over 41,000 holders and about 30,000 active members on Telegram. Its rise is being fueled by this. The support of its community…
Share
BitcoinEthereumNews2025/09/19 15:12