Close Menu
ApeWatcher News
  • Home
  • Advertise
  • Headlines
  • Crypto
    • News
    • Bitcoin
    • Ethereum
    • Altcoin
    • View All
  • DeFi
  • NFT
  • Metaverse
  • Guides
  • Rates
  • Videos
  • Listing Platform
  • BSC
  • ETH
  • Listing Platform
  • BSC
  • ETH
What's Hot

Telegram Shuts Down $27B Illicit Marketplace, Haowang Guarantee, After Elliptic’s Insights

May 15, 2025

Hype Backfires? Pi Network Token Price Crumbles After Key Announcement

May 15, 2025

bq5ea ($100 New User Bonus)

May 15, 2025
X (Twitter) Telegram
  • Listing Platform
  • Home
  • BSC
  • ETH
Advertise
X (Twitter) Telegram
ApeWatcher News
  • Headlines
  • Crypto
    1. News
    2. Bitcoin
    3. Ethereum
    4. Altcoin
    5. View All

    Telegram Shuts Down $27B Illicit Marketplace, Haowang Guarantee, After Elliptic’s Insights

    May 15, 2025

    Hype Backfires? Pi Network Token Price Crumbles After Key Announcement

    May 15, 2025

    Pi Network invests $100M in startups building blockchain apps

    May 15, 2025

    Pi Network to invest $100M in startups building blockchain apps

    May 15, 2025

    Ukraine strategic Bitcoin reserve bill reportedly in final stages

    May 15, 2025

    Bitcoin looks ‘ridiculous’ as bulls attempt $2T market cap flip — Analyst

    May 15, 2025

    President Trump Will Print Enough Money To Pump Bitcoin to $1,000,000 by 2028: Arthur Hayes

    May 15, 2025

    NFT founder stole millions from Bitcoin project, investors allege

    May 15, 2025

    Ethereum Foundation unveils security initiative to supplant legacy systems

    May 14, 2025

    3 reasons why Ethereum price could rally to $5,000 in 2025

    May 14, 2025

    Ethereum retakes 10% control of crypto market, but ETH bulls shouldn’t celebrate yet

    May 14, 2025

    SEC delays Solana ETF as decisions for Polkadot, XRP loom

    May 14, 2025

    Pi Network invests $100M in startups building blockchain apps

    May 15, 2025

    Five crypto figures who disappeared, died — or maybe didn’t

    May 15, 2025

    Chainalysis CEO offers a clue into the recent spate of Paris crypto attacks

    May 15, 2025

    Crypto startups scaring away VCs with 80x valuations: 10T Holdings

    May 15, 2025

    Telegram Shuts Down $27B Illicit Marketplace, Haowang Guarantee, After Elliptic’s Insights

    May 15, 2025

    Hype Backfires? Pi Network Token Price Crumbles After Key Announcement

    May 15, 2025

    bq5ea ($100 New User Bonus)

    May 15, 2025

    Pi Network invests $100M in startups building blockchain apps

    May 15, 2025
  • DeFi
  • NFT
  • Metaverse
  • Guides
  • Videos

    Aave & Chainlink: Crypto Giants TradFi Can't Live Without!

    May 15, 2025

    JP Morgan Chase JUST Released The Cryptocurrency Bulls

    May 14, 2025

    INSANE NEWS: J.P. Morgan Using Chainlink & Ondo (BAD FOR XRP)

    May 14, 2025

    Phantom Wallet Tutorial 2025: Setup, Swaps, NFTs & Airdrop Potential!

    May 14, 2025

    I Can't Stay Quiet on this Bitcoin PUMP Any Longer!

    May 13, 2025
ApeWatcher News
Home » Hackers Exploited $7.5 Million from KiloEx Vault DEX
Hackers Exploited .5 Million from KiloEx Vault DEX
NFT

Hackers Exploited $7.5 Million from KiloEx Vault DEX

NFT EveningBy NFT EveningApril 15, 20250 ViewsNo Comments
Share
Facebook Twitter LinkedIn Pinterest Email

The crypto community faced another significant blow on April 14, 2025, when KiloEx, a perpetual trading platform backed by YZi Labs (formerly Binance Labs), suffered a devastating hack. The exploit resulted in a loss of approximately $7.5 million across multiple blockchains, exposing vulnerabilities in the platform’s oracle system.

The Hack That Exploited an “Unthinkable” Flaw

The KiloEx Vault hack unfolded in the early hours of April 14, 2025, when Web3 security firm Cyvers Alerts detected a series of suspicious transactions across several blockchains, including BNB Smart Chain, Base, and Taiko.

🚨7M HACK ALERT🚨Our system has detected multiple suspicious transactions involving @KiloEx_perp across several chains.

An address funded via @TornadoCash has executed a series of exploitative transactions on the $BNB, $Base, and $Taiko chains — accumulating approximately $7M in… pic.twitter.com/od4UTsSrXs

— 🚨 Cyvers Alerts 🚨 (@CyversAlerts) April 14, 2025

The attacker, using a wallet funded through Tornado Cash, exploited a critical flaw in KiloEx’s oracle system, which is responsible for providing accurate asset price data to smart contracts. According to Cyvers, the vulnerability stemmed from an access control issue that allowed the hacker to manipulate asset prices, specifically the ETH/USD pair. The hacker opened a position with a fabricated ETH/USD price of just $100, then closed it at an inflated $10,000, pocketing a staggering $3.12 million in a single transaction.

PeckShield estimated the total losses at $7.5 million, with $3.3 million stolen from Base, $3.1 million from opBNB, and $1 million from BNB Smart Chain.

The Hack That Exploited an "Unthinkable" Flaw

Chaofan Shou, co-founder of on-chain analytics platform Fuzzland, explained that the oracle’s access validation mechanism failed to verify the original transaction initiator, despite requiring a “trusted forwarder.” Therefore, this hacker can assess and change the oracle price from the smart contract. 

This oversight is likened to checking a delivery person’s identity but not the sender’s. Also, it created a severe exploit opportunity that many in the industry had assumed was “unthinkable” for a platform of KiloEx’s caliber.

Swift Response from the KiloEx Team

KiloEx responded promptly to the attack, confirming that its Vault tool had been compromised via the wallet address 0x00fac92881556a90fdb19eae9f23640b95b4bcbd. The team immediately suspended all platform operations to prevent further losses and urged ecosystem partners to blacklist the attacker’s wallet. To trace the stolen funds and mitigate damage, KiloEx partnered with BNB Chain, Manta Network, and leading security firms such as Seal-911, SlowMist, and Sherlock.

🚨 Update on the KiloEx Vault Exploit 🚨

We are actively collaborating with BNB Chain, Manta Network, and leading blockchain security partners—including Seal-911, SlowMist, and Sherlock—to investigate the recent KiloEx Vault exploit and trace the stolen assets.

Our joint…

— KiloEx (@KiloEx_perp) April 14, 2025

The team also revealed that the hacker was using cross-chain tools like zkBridge and Meson to transfer the stolen assets, complicating efforts to freeze the funds. KiloEx reached out to these platforms to halt ongoing transactions and announced plans for a bounty program to incentivize the return of the stolen assets. Additionally, the project committed to releasing a detailed report to ensure transparency with the community, acknowledging the severity of the incident and their responsibility to address it.

Despite these efforts, the use of cross-chain tools by the attacker posed significant challenges to the recovery process, leaving the outcome uncertain.

Severe Impact of $KILO Price and Investors

The fallout from the KiloEx hack was immediate and severe, particularly for the platform’s community and investors. The KiloEx token, KILO, which had launched at a peak price of $0.153 on March 27, 2025, plummeted by 31.9% within 24 hours of the hack, dropping to $0.035. This decline slashed the token’s market capitalization from $11 million to $7.5 million, erasing nearly 78% of its value since launch. The sharp drop reflected a significant loss of investor confidence, as many questioned the platform’s security measures and long-term viability.

Severe Impact of $KILO Price and Investors

The broader DeFi community also felt the ripple effects of the incident. Many users expressed frustration and concern, calling the hack a “wake-up call for DeFi projects to prioritize security.”  The use of cross-chain tools by the hacker amplified fears about vulnerabilities in multi-chain architectures, as the stolen funds remained difficult to trace.

This Vault hack also echoes a similar incident on Hyperliquid, where a whale exploited liquidation to profit $6.2 million in March 2025. Both events highlight a growing concern within the DeFi community about the security of vault mechanisms and oracle pricing on decentralized exchanges (DEXs). The KiloEx exploit manipulated ETH/USD prices, while Hyperliquid’s whale took advantage of the volatile JELLY token, revealing how easily oracles can be gamed to distort asset values. These incidents underscore a broader fear: without robust oracle systems and stricter vault protocols, DEXs remain vulnerable to sophisticated attacks, potentially eroding trust in DeFi’s promise of decentralized security.

Read more: Recap of the Price Manipulation in Hyperliquid

Conclusion

This incident not only damaged KiloEx’s reputation but also raised broader concerns about the security of DeFi platforms, particularly those operating across multiple blockchains. As a result, the event may slow the adoption of similar protocols, with investors likely to approach new projects with increased caution. This event underscores the urgent need for improved security measures, particularly in oracle systems and cross-chain protocols, to protect users and restore confidence in decentralized finance.



Read the full article here

Follow us on Google News to get the latest Updates

 
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

bq5ea ($100 New User Bonus)

May 15, 2025

Bitcoin Will Hit $250K and Replace the Dollar

May 15, 2025

Yat Siu argues that ownership of the intangible drives innovation.

May 15, 2025

Nexpace (NXPC) will be listed on Binance HODLer Airdrops

May 15, 2025

Bitcoin ETFs Reach All-Time High with Over $41 Billion in Inflows

May 15, 2025

Sell the News Isn’t Just a Phrase. Will It Hit Altcoin Again?

May 15, 2025
Add A Comment
Leave A Reply Cancel Reply

Top Articles

Telegram Shuts Down $27B Illicit Marketplace, Haowang Guarantee, After Elliptic’s Insights

May 15, 2025

Hype Backfires? Pi Network Token Price Crumbles After Key Announcement

May 15, 2025

bq5ea ($100 New User Bonus)

May 15, 2025
ApeWatcher News
X (Twitter) Telegram
  • Privacy Policy
  • Sources
  • Terms and Conditions
  • Contact
  • Advertise
© 2025 Ape Watcher News

Type above and press Enter to search. Press Esc to cancel.