Injective paused for four hours after binary-options exploit drained $4.9 million

  • Injective suspended operations after an attacker exploited a binary-options vulnerability.
  • 1,980 ETH worth about $4.9 million was held in an inactive Ethereum wallet.
  • The attacker created 299 markets linked to the Frontrunner oracle.

Injective suspended operations for about four hours on Sept. 1 after an attacker exploited a vulnerability in its binary-options system, according to X user Paddy-earthling, as reported by PANews. The attacker used Frontrunner, a deactivated but still-registered oracle (blockchain data feed), whose data sources had already been emptied. By creating 299 markets linked to the oracle, the attacker triggered the platform’s no-price refund mechanism and exploited a flaw that delivered roughly double the intended payout. The stolen funds were converted from USDC into about 1,980 ETH, worth approximately $4.9 million, and are currently held in an Ethereum wallet that has never sent a transaction. Paddy-earthling also said Injective’s official X account continued posting marketing content after the attack without mentioning that the chain had been suspended.

The information on this website is generated using AI and we cannot guarantee its accuracy. Please use it as reference information only.