security
Bonzo Lend suffers $9M loss due to oracle exploit on Hedera
An attacker exploited a flaw in Supra’s on-chain oracle verifier, inflating collateral value and borrowing $9 million from Bonzo Lend. This highlights ongoing security challenges in DeFi protocols.
AS1 NewsSource: cointelegraph.com
Bonzo Lend, a decentralized finance platform on the Hedera network, experienced a security breach where an attacker manipulated the on-chain oracle verifier provided by Supra. By inflating the value of the SAUCE collateral, the attacker was able to borrow approximately $9 million from Bonzo Lend. This incident underscores the vulnerabilities associated with oracle systems, which are crucial for accurate data feeds in DeFi protocols.
Oracles serve as bridges between real-world data and blockchain applications. When they are compromised, it can lead to significant financial losses, as seen in this case. The attack involved exploiting a flaw in Supra’s oracle verifier, allowing the attacker to deceive the platform into accepting inflated collateral values.
Bonzo Lend has not publicly disclosed the full extent of the breach or the steps taken to mitigate future risks. The incident raises concerns about the security of oracle integrations in DeFi projects, especially those relying on third-party data feeds.
This event may impact the perception of the security of Hedera-based DeFi platforms and could lead to increased scrutiny of oracle systems used across various protocols. The SAUCE token and the broader Bonzo Lend ecosystem might experience volatility as a result of this incident.
The incident highlights the risks associated with oracle vulnerabilities in DeFi, potentially affecting trust and stability in related protocols.