The NovaBox reward pool was attacked, and hackers exploited a vulnerability in the distribution mechanism to steal 56.73 ETH

By: rootdata|2026/06/12 04:45:01
0
Share
copy

According to Bits.media, the reward pool of the NovaBox platform was hacked on June 9 on Ethereum, resulting in a loss of approximately 56.73 ETH, affecting over 130 deposit users. The attacker drained the pool's funds from 65.11 ETH to 0.09 ETH in a single transaction, accounting for about 99.86%.

Security company F12 stated that the incident was not due to a smart contract vulnerability, but rather a flaw in the reward distribution mechanism. The attacker borrowed 427.5 WETH through an Aave V3 flash loan, exploiting a loophole in NovaBox's mechanism of distributing dividends before updating balances when users deposit or withdraw. The hacker first deposited a small amount of NOVA tokens to trigger the dividend calculation, then deposited a large amount of ETH, significantly increasing the actual share. However, since the system did not update the balance in time, dividends were still calculated based on the previous small share, while payments were made based on the new large share, resulting in approximately 145.82 ETH of "phantom dividends," which drained the reward pool.

You may also like

Why Is Bitcoin Down Today? What the Hawkish FOMC Means for SpaceX, Gold and Nasdaq

Why is Bitcoin down today? A hawkish FOMC pressured crypto and gold, while SpaceX surged to a $2.5 trillion valuation and Nasdaq gained attention. Here's what happened and why traders are looking beyond Bitcoin.

OKX Star analyzes Binance's competitive advantages: when regulation levels the playing field, competition has just begun

OKX founder Star published a lengthy article, systematically analyzing Binance's competitive advantages over the years: regulatory arbitrage, speculative narrative cycles, social media control, and superficial compliance, stating that the essence of these advantages is not product capability, but ra...

Full version of the debut Q&A! Federal Reserve Chairman Waller: Sticking to the 2% inflation target, establishing five special working groups, individual did not submit the dot plot

Federal Reserve Chairman Waller's debut featured a significant slimming statement, the cancellation of forward guidance, refusal to submit the dot plot, and the establishment of five working groups, vowing to uphold the 2% inflation target, which triggered a sharp decline in U.S. stocks and a surge ...

From Disruptor to Shadow Market: The Crypto Market is Becoming a Colony of Traditional Finance

"Coin-stock linkage" has evolved from the early stage of macro correlation and one-way penetration of emotional funds to the current 3.0 stage, where on-chain perpetual contracts provide extended trading hours and emotional signal value for traditional assets 24/7, and participate in Pre-IPO pricing...

Dalio's important long article: How to position in the current market environment?

Do not confuse the excitement for new technologies with whether those tech stocks are attractive.

DeepSeek Financing Story

DeepSeek's financing insider information exposed: "Four-hour meeting" fully demonstrates Liang Wenfeng's determination for AGI, over a hundred institutions involved, Sequoia and Hillhouse rarely absent, not poaching talent is the hardest red line.

Popular coins

Latest Crypto News

Read more
iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com