Search

DeFi: Latest Front in Cryptocurrency's Hacking Problem

DeFi platform Poly Network was at the centre of one of the biggest cryptocurrency theft last week.

Advertisement
Highlights
  • Would-be robbers are often able to exploit bugs in open-source codes
  • Centralised exchanges had been the main targets of crypto cyberheists
  • Losses from crime at DeFi platforms are at an all-time high
DeFi: Latest Front in Cryptocurrency's Hacking Problem

DeFi specialists say security risks tend to lie at newer sites which may run on less secure code

For most of the 13-year life of cryptocurrencies, exchanges were the epicentre for cyberheists. Now, a bigger hacking risk in the growing sector has exploded into view: peer-to-peer crypto platforms.

One such site, Poly Network, was at the centre of a $610 million (roughly Rs. 4,530 crores) cryptocurrency theft last week, one of the biggest ever. Within days of the heist, the decentralised finance (DeFi) platform said the "white hat" hacker or hackers had returned nearly all the loot.

The unusual ending to the Poly Network saga belies fast-emerging risks in this growing corner of crypto, where an estimated $80 billion (roughly Rs. 590 crores) or more is held, interviews with industry executives, lawyers, and analysts show.

DeFi sites allow users to lend, borrow, and save - usually in cryptocurrencies - while bypassing the traditional gatekeepers of finance such as banks and exchanges. Backers say the technology offers cheaper and more efficient access to financial services.

But the heist at Poly Network - previously a little-known site - has underscored the vulnerability of DeFi sites to crime.

Would-be robbers are often able to exploit bugs in the open-source code used by sites. And with regulation still patchy, there is usually little or no recourse for victims.

Centralised exchanges, which act as middlemen between buyers and sellers of crypto, had previously been the main targets of crypto cyberheists.

Tokyo-based exchange Mt.Gox for instance collapsed in 2014 after it lost half a billion dollars in hacks. Coincheck, also based in Tokyo, was hit by a $530 million (roughly Rs. 3,930 crores) heist in 2018.

Many major exchanges, under the regulatory spotlight and striving to attract mainstream investors, have since bolstered security and heists on such scale are now relatively rare.

Less secure

An onus on security at major platforms such as Coinbase Global has pushed less-secure venues to the sidelines, said Ross Middleton, chief financial officer at DeFi platform DeversiFi.

"What's happened is the big exchanges have got really good (on security) and the smaller exchanges aren't around anymore," he said. "The frontier is definitely DeFi now."

Losses from crime at DeFi platforms are at an all-time high, crypto intelligence firm CipherTrace said last week, with thieves, hackers and fraudsters making off with $474 million (roughly Rs. 3,510 crores) from January through July.

The spike came as funds poured into DeFi, mirroring flows into crypto as a whole. According to DeFi Pulse the total value held at such sites is now more than $80 billion (roughly Rs. 590 crores), compared with just $6 billion (roughly Rs. 44,490 crores) a year earlier.

DeFi specialists say security risks tend to lie at newer sites which may run on less secure code.

"There is a widening security and risk gap between old, battle-tested DeFi protocols, and new, untested DeFi protocols," said Rune Christensen, former head of the body behind high-profile DeFi application Maker.

Proponents says the use of open-source code means vulnerabilities can be quickly identified and solved by users, reducing the risk of crime. DeFi can police itself, they say.

Yet for financial watchdogs and governments across the world looking at regulating the crypto sector, DeFi is increasingly in focus.

Enforcement action

US Securities and Exchange Commission (SEC) chair Gary Gensler has signalled he would take a tough stance on DeFi.

Such platforms may be captured by US securities laws, he said in a speech this month, calling on Congress to draft legislation to rein in DeFi and crypto trading.

The SEC this month brought its first enforcement action involving DeFi tech, alleging the company issued unregistered securities and misled investors. The SEC did not respond to further questions on its stance.

Officials at the US Commodity Futures Trading Commission have also signalled greater scrutiny.

Commissioner Dan Berkovitz in June called DeFi a "Hobbesian marketplace" - a reference to a 17th century philosopher who saw life without government as "nasty, brutish, and short". Unlicensed DeFi platforms for derivatives were violating commodities trading laws, he suggested.

Elsewhere, moves are slower. DeFi is still far from the political agenda in Britain, for instance.

A spokesperson for Britain's financial watchdog said while some DeFi activities may fall under its scope, much of the sector is unregulated.

For some analysts, greater regulation in inevitable, with little sign that DeFi sites can do the job themselves.

"The unfortunate situation is that (Poly Network) was seen as just an average Tuesday in the DeFi world," said Tim Swanson of blockchain firm Clearmatics.

"The industry likes to congratulate itself by claiming it resides on transparent systems, but it has repeatedly shown it is incapable of policing itself."

© Thomson Reuters 2021


Interested in cryptocurrency? We discuss all things crypto with WazirX CEO Nischal Shetty and WeekendInvesting founder Alok Jain on Orbital, the Gadgets 360 podcast. Orbital is available on Apple Podcasts, Google Podcasts, Spotify, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: DeFi, Cryptocurrency, Poly Network
 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. Realme 14 Pro+ Review: Plenty of Refinements
  2. OTT Releases This Week: Jewel Thief, Viduthalai Part 2, and More
  3. Vivo X200 Ultra Teased to Get Dedicated Camera Control Button
  4. Realme 14 5G With Snapdragon 6 Gen 4 SoC, 6,000mAh Battery Launched
  5. Ghibli Tokens Ignite Memecoin Frenzy Amid Anime AI Art Boom
  6. OnePlus 12R, Nord 4 and Pad 2 Receiving New OxygenOS 15 Update in India
  7. Minimalist Light Phone 3 Gets OLED Screen, 50-Megapixel Camera
  8. Portronics Launches Beem 520 Smart LED Projector With In-Built OTT Apps
  1. Krafton Acquires Controlling Stake in Real Cricket Developer Nautilus Mobile for Rs. 118 Crore
  2. UAE Plans to Launch Digital Dirham CBDC, Integrated Wallet in Q4 2025
  3. CMF by Nothing Hints at New Products With Pokemon Teasers; CMF Phone 2 Could Launch Soon
  4. Google NotebookLM Upgraded With Mind Maps Feature and Output Language Selector
  5. Ghibli-Themed Tokens Spark Memecoin Frenzy Amid Surge in Anime AI Art Trend on Social Media
  6. Prince of Persia: The Lost Crown to Release on Android, iOS Platforms on April 14
  7. Apple's Foldable iPhone to Sport Display With Same Aspect Ratio as iPad Models, Tipster Claims
  8. Light Phone 3 With OLED Display, 1,800mAh Battery and Minimalist Design Launched: Price, Specifications
  9. Instagram Adopts Popular TikTok Feature, Adds 2X Playback Speed Option for Reels
  10. Anthropic Researchers Make Major Breakthrough In Understanding How an AI Model Thinks
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »