Hackers Drain USDC from Newly Registered 402bridge After Key Compromise

SlowMist founder Cos reports that 402bridge contract ownership was altered within two days of its launch, likely due to stolen private keys, resulting in an immediate shutdown.

USDC

Summary

SlowMist founder Cos disclosed that hackers altered the ownership of the newly launched 402bridge contract, likely using stolen private keys. Registered only two days prior to the attack, the bridge shut down after the thieves drained USDC from authorized users. The incident highlights vulnerabilities in newly deployed blockchain bridge contracts.

Terms & Concepts
  • Bridge Contract: A smart contract enabling token transfers between different blockchain networks, often holding funds authorized for cross-chain transactions.
  • Private Key: A cryptographic key used to authorize blockchain transactions; theft can grant full control over associated assets.
  • USDC: A U.S. dollar-pegged stablecoin used for payments, trading, and storing value across various blockchain platforms.