Ethereum-based RWA protocol Zoth hacked second time in a month for $8.85 million

Published on:

Zoth, an Ethereum-based platform focused on tokenized real-world assets, suffered a second major security breach in less than three weeks on March 21, with attackers draining $8.85 million in digital assets.

The company confirmed the breach and is working with security experts to investigate the incident.

Zoth is also offering a $500,000 bounty for information leading to the identification of the hacker responsible for the recent $8.85 million exploit.

The hack, which occurred early on March 21, involved the attacker compromising an admin key and gaining control of a Zoth proxy contract. The hacker upgraded the contract, enabling unauthorized fund transfers.

Onchain analysis shows that $8.85 million in USD0++ stablecoins were drained from the contract and converted into 4,223 ETH, which was later moved to an external wallet.

Zoth acknowledged the security breach and assured users that steps are being taken to mitigate the impact. The company pledged to release a full report once its investigation is complete.

Second hack

This is the second exploit targeting Zoth this month. On March 6, an attacker exploited a vulnerability in one of its liquidity pools, minting synthetic assets without sufficient collateral and causing a $285,000 loss.

Security experts suggest that the breach could have been prevented with better key management and real-time monitoring. They warn that additional funds may be at risk if other contracts within the platform share the same admin access.

Zoth has not disclosed whether it will reimburse affected users but said it remains committed to strengthening security measures to prevent future incidents.

The incident emphasizes the continued risks facing decentralized finance platforms, particularly those reliant on centralized admin controls. Blockchain security firms have noted a rise in sophisticated key compromises, with over $10 billion lost to DeFi-related exploits in the past five years.

The company did not comment on how the attacker may have obtained the private key but pledged to provide updates once the investigation concludes.

The post Ethereum-based RWA protocol Zoth hacked second time in a month for $8.85 million appeared first on CryptoSlate.

​

Related

Leave a Reply

Please enter your comment!
Please enter your name here

bitcoin
Bitcoin (BTC) $ 84,321.59
ethereum
Ethereum (ETH) $ 1,985.85
tether
Tether (USDT) $ 0.999884
dogecoin
Dogecoin (DOGE) $ 0.168845
tron
TRON (TRX) $ 0.235914
cardano
Cardano (ADA) $ 0.710572
avalanche-2
Avalanche (AVAX) $ 19.46
chainlink
Chainlink (LINK) $ 14.10
polkadot
Polkadot (DOT) $ 4.48
litecoin
Litecoin (LTC) $ 91.10
monero
Monero (XMR) $ 215.99
stellar
Stellar (XLM) $ 0.276548
aave
Aave (AAVE) $ 181.29
filecoin
Filecoin (FIL) $ 2.97
eos
EOS (EOS) $ 0.551718
iota
IOTA (IOTA) $ 0.179012
dash
Dash (DASH) $ 23.21
sushi
Sushi (SUSHI) $ 0.673642
binance-usd
BUSD (BUSD) $ 1.00