Axie Infinity Hack Results in $600M Cryptocurrency Heist (2024)

Hackers managed to steal over $600 million in cryptocurrency from Sky Mavis, the developer behind the popular NFT-based video game Axie Infinity. The breach occurred on March 23, 2022, and represents one of the most significant cryptocurrency heists in history.

The Attack

The cyberattack unfolded when a threat actor exploited vulnerabilities in the Ronin bridge, a technology designed to facilitate the exchange and interoperability of different cryptocurrencies across various blockchains. The attacker targeted a series of validator nodes connected to Sky Mavis and their flagship NFT game, Axie Infinity.

Sky Mavis revealed that the hackers made away with 173,600 Ethereum and 25.5 million USD Coin, amounting to approximately $620 million. This theft occurred through two transactions in which the attacker used compromised private keys to forge fake withdrawals.

The attacker's success hinged on gaining control of five validator nodes, four of which belonged to Sky Mavis and one operated by Axie Infinity's decentralized autonomous organization (DAO). The breach exploited a backdoor in the company's gas-free RPC node, a vulnerability that was not supposed to exist.

The Roots of the Breach

The attack has its roots in November 2021 when Sky Mavis sought assistance from the Axie DAO to distribute free transactions due to high user demand. The Axie DAO allowed Sky Mavis to sign transactions on its behalf. Although this arrangement was discontinued in December 2021, the access privileges were not revoked, leading to the security lapse.

Unclear Origins of the Attack

It remains unclear how the hackers obtained the private keys or whether the backdoor was intentionally placed by threat actors or inadvertently created by the company. Sky Mavis declined to comment on these aspects, leaving a cloud of uncertainty around the attack's origins.

Response and Recovery

In response to the breach, Sky Mavis has taken several measures to prevent future attacks. They raised the validator threshold from five nodes to eight, enhancing security. Additionally, the company is collaborating with law enforcement agencies, forensic cryptographers, and investors to recover or reimburse the stolen funds. The threat actor's Ethereum wallet address, containing roughly $595 million, was disclosed.

To further secure its systems, Sky Mavis temporarily paused the Ronin bridge while investigating the sidechain hack, ensuring no other potential attack vectors are open.

Axie Infinity and NFT Gaming

Axie Infinity is a prominent example of the emerging genre of NFT-based video games. Players can collect and mint NFTs in the form of digital pets used in battles against other players. This unique gaming experience allows players to earn and cash out cryptocurrency as in-game currency.

Rising Cryptocurrency Cyber Attacks

The Axie Infinity hack is just one example of the increasing trend of cryptocurrency cyberattacks. In recent months, several high-profile attacks on cryptocurrency platforms have occurred, resulting in significant financial losses. These incidents highlight the urgent need for robust cybersecurity measures in the cryptocurrency industry.

Spear Phishing

The source of the Axie Infinity breach was traced back to a sophisticated spear-phishing attack. Hackers posed as a fictitious company and initiated contact with a Sky Mavis engineer through LinkedIn, offering a high-paying job. The attackers conducted multiple rounds of interviews, ultimately sending a formal job offer as a PDF attachment. This seemingly harmless PDF contained malware that infiltrated Sky Mavis' IT infrastructure, leading to the devastating breach.

Culprits Behind the Attack

Approximately three weeks after the breach, the FBI officially attributed the attack to the Lazarus Group and APT38, two hacking groups with connections to the Democratic People's Republic of Korea (DPRK). These North Korean hackers have a history of conducting cryptocurrency heists, having stolen $400 million in at least seven attacks against cryptocurrency platforms in 2021 alone. The DPRK government has been associated with financially-motivated cybercrime.

Strengthening Cybersecurity

The Axie Infinity hack serves as a stark reminder of the constant threats faced by cryptocurrency platforms and the broader technology industry. It underscores the importance of robust cybersecurity practices, employee training to combat phishing attacks, and proactive security measures.

Organizations must adopt a zero-trust security model, which assumes that every individual, account, or device attempting to connect to the network is suspicious and requires thorough verification before granting access. By implementing comprehensive security measures and remaining vigilant, companies can mitigate the risks associated with cyber threats like the Axie Infinity breach.

Axie Infinity Hack Results in $600M Cryptocurrency Heist (2024)

FAQs

Axie Infinity Hack Results in $600M Cryptocurrency Heist? ›

The Ronin network is an Ethereum-linked sidechain connected to the popular online game Axie Infinity. Approximately $625 million worth of digital assets were stolen in the hack.

How was Ronin Bridge hacked? ›

According to Ronin Network, an attacker took control of the validator nodes on the Sky Mavis and Axie DAO-operated Ronin blockchain. The validators moderate activity on the chain as a security measure, but the attacker then was able to find an entry point through a backdoor.

What currency does Axie Infinity use? ›

Overview. AXS is an Ethereum token that powers Axie Infinity, a blockchain-based game where players can battle, collect, and build a digital kingdom for their pets. AXS holders can claim rewards for staking their tokens, playing the game, and participating in key governance votes.

What is axie infinity crypto all time high? ›

Axie Infinity's All Time High (ATH) of $ 164.34 was reached on 5 Nov 2021, and is currently -97.4% down. The current circulating supply of Axie Infinity is 149.39 Million tokens, and the maximum supply of Axie Infinity is 270.00 Million.

Was $540 million stolen in the Ronin breach? ›

Elliptic Intel

On March 29th, the Ronin Network announced that 173,600 Ether (ETH) and 25.5 million USD Coins had been stolen from the Ronin cross-chain bridge six days earlier. The total value of the stolen cryptoassets at the time of the theft was $540 million. This is the second largest crypto theft of all time.

What is the largest bridge hack? ›

The largest single event was the $615 million exploit of Ronin, a bridge supporting the popular non-fungible token game Axie Infinity that allows users to earn money while playing. In addition, in June 2022, hackers stole approximately $100 million from the crypto bridge Horizon.

How much is 1 Axie Infinity worth? ›

The live Axie Infinity price today is $4.55 with a 24-hour trading volume of $29.95M.

How much is Axie Infinity convert to money? ›

Right now, 1 Axie Infinity is worth about ₱251.76.

Who owns Axie Infinity? ›

Axie Infinity is a blockchain game developed by Vietnamese studio Sky Mavis, known for its in-game economy which uses Ethereum-based cryptocurrencies.

What is the highest sell of Axie? ›

Axie Infinity Digital Land Sold for Record $1.5M - "The Defiant"

How high will Axie Infinity go? ›

The long term sentiment, however, remains bullish and AXS could hit $7.25 in 2025. The total circulating supply of Axie Infinity as of writing this article was $149612189.15 and the marketcap of AXS remains at $713,473,657. Axie Infinity price in the longer term is expected to reach a high of $39.46 in 2035.

How much is Axie to USD? ›

4.75 USD

How was Mt Gox hacked? ›

The Big Hack

Later that year, a hacker allegedly used credentials from a Mt. Gox auditor's compromised computer to transfer a large number of Bitcoins illegally to themselves, causing the nominal price of a Bitcoin to plummet to one cent on the exchange.

How did the wormhole get hacked? ›

In February 2022, Wormhole, a token bridge between Ethereum and Solana, was the victim of the second most expensive DeFi hack to date. The attacker exploited the use of a deprecated, insecure function to bypass signature verification and steal $326 million (120k wETH).

How did Axie get hacked? ›

The Axie Infinity sidechain hack occurred when an attacker "found a backdoor through our gas-free RPC [remote procedure call] node" and used it to access the Axie DAO validator. This, as the post explained, was not supposed to be possible.

How did the Poly Network hack happen? ›

According to cybersecurity firm SlowMist and security researcher Kelvin Fichter, the hack was made possible by a mismanagement of the access rights between two important Poly smart contract. The first one is EthCrossChainManager and the second one is EthCrossChainData. Let's first talk about EthCrossChainData.

Top Articles
Living costs
What Is a DEX and How Do Decentralized Exchanges Work?
Is Paige Vanzant Related To Ronnie Van Zant
Star Sessions Imx
Jazmen Jafar Linkedin
J & D E-Gitarre 905 HSS Bat Mark Goth Black bei uns günstig einkaufen
Mopaga Game
Insidious 5 Showtimes Near Cinemark Tinseltown 290 And Xd
Naturalization Ceremonies Can I Pick Up Citizenship Certificate Before Ceremony
Apply A Mudpack Crossword
Costco in Hawthorne (14501 Hindry Ave)
Savage X Fenty Wiki
Sams Gas Price Fairview Heights Il
zopiclon | Apotheek.nl
Craigslist Pets Southern Md
Wgu Admissions Login
Oro probablemente a duna Playa e nomber Oranjestad un 200 aña pasa, pero Playa su historia ta bay hopi mas aña atras
Les Schwab Product Code Lookup
Mflwer
Gemita Alvarez Desnuda
DBZ Dokkan Battle Full-Power Tier List [All Cards Ranked]
Dark Chocolate Cherry Vegan Cinnamon Rolls
G Switch Unblocked Tyrone
50 Shades Of Grey Movie 123Movies
Danforth's Port Jefferson
Uta Kinesiology Advising
Invitation Homes plans to spend $1 billion buying houses in an already overheated market. Here's its presentation to investors setting out its playbook.
Heart and Vascular Clinic in Monticello - North Memorial Health
Johnnie Walker Double Black Costco
Www.craigslist.com Austin Tx
Meridian Owners Forum
Superhot Free Online Game Unblocked
Albertville Memorial Funeral Home Obituaries
Used Safari Condo Alto R1723 For Sale
Math Minor Umn
Wcostream Attack On Titan
Lehpiht Shop
Helloid Worthington Login
Cocaine Bear Showtimes Near Cinemark Hollywood Movies 20
Royals Yankees Score
UWPD investigating sharing of 'sensitive' photos, video of Wisconsin volleyball team
Worland Wy Directions
Dying Light Mother's Day Roof
Adams-Buggs Funeral Services Obituaries
French Linen krijtverf van Annie Sloan
Rise Meadville Reviews
Pulpo Yonke Houston Tx
How To Find Reliable Health Information Online
Laurel Hubbard’s Olympic dream dies under the world’s gaze
OSF OnCall Urgent Care treats minor illnesses and injuries
Room For Easels And Canvas Crossword Clue
Latest Posts
Article information

Author: Rev. Porsche Oberbrunner

Last Updated:

Views: 6633

Rating: 4.2 / 5 (53 voted)

Reviews: 84% of readers found this page helpful

Author information

Name: Rev. Porsche Oberbrunner

Birthday: 1994-06-25

Address: Suite 153 582 Lubowitz Walks, Port Alfredoborough, IN 72879-2838

Phone: +128413562823324

Job: IT Strategist

Hobby: Video gaming, Basketball, Web surfing, Book restoration, Jogging, Shooting, Fishing

Introduction: My name is Rev. Porsche Oberbrunner, I am a zany, graceful, talented, witty, determined, shiny, enchanting person who loves writing and wants to share my knowledge and understanding with you.