Curve Finance Hit by DNS Record Attack, Warns Users to Avoid Main Site
By: bitcoin ethereum news|2025/05/14 12:15:05
0
Share
In brief Curve Finance’s front-end website suffered a DNS compromise where attackers redirected users to a malicious site. The attack involved manipulating DNS records to point to a fraudulent site mimicking Curve’s interface with malicious scripts designed to trick users into approving token transfers. This isn’t Curve Finance’s first security incident. They experienced a similar DNS hijack in 2022 resulting in $570,000 in losses, and faced another exploit in 2023 involving Vyper programming vulnerabilities with estimated losses of $24 million. Decentralized protocol Curve Finance confirmed Tuesday that its front-end website was compromised, with attackers redirecting users to a fake site. “The DNS incident involving Curve Finance reflects a broader issue across the industry,” the project told Decrypt . “In recent weeks, there has been a noticeable increase in attacks targeting the infrastructure of various crypto projects.” The exploit redirected traffic to a malicious IP, the protocol said on social media. “User funds are safe. Curve smart contracts remain secure,” it added. The incident was first discovered on Monday afternoon, after which Curve Finance issued a preliminary response. While all smart contracts are safe, the domain name points to a malicious site which can drain your wallet! We are investigating and working on recovering the access. No sign of a compromise on our side https://t.co/YUmwtwt5PH — Curve Finance (@CurveFinance) May 12, 2025 Curve Finance later said the breach was “strictly limited to the DNS layer” and did not compromise its core infrastructure. Its security team promptly isolated the issue, initiated an investigation, and engaged with their domain registrar and security partners to address the situation, the project said. Security measures were in place “long before the incident,” the protocol added. What happened? According to Curve Finance, attackers manipulated the DNS records to point to an IP address under their control. A DNS record connects a domain name to details like an IP address, helping direct internet traffic. The fraudulent site, which mirrored Curve’s interface, reportedly contained malicious scripts aimed at tricking users into approving token transfers to the attackers. “DNS exploits are a form of social engineering at the infrastructure level. Attackers compromise the domain name system,” Meir Dolev, co-founder and CTO of blockchain security firm Cyvers, told Decrypt . If a site’s mapping changes due to stolen credentials or a registrar’s vulnerability, users may be redirected to harmful servers without realizing it. “These cloned sites can prompt users to connect wallets and approve transactions that drain funds,” Dolev explained. “It’s particularly dangerous because the average user can’t easily tell the difference—they still see the correct URL.” The attack doesn’t breach the protocol’s blockchain, but rather “exploits the trust layer” between the user and a decentralized app’s interface. “So long as users interact with Curve directly via verified contract addresses, their funds are likely unaffected,” Dolev noted. Hacking history This isn’t the first time Curve has been hit. Back in 2022, Curve Finance suffered a DNS hijack where attackers redirected users from its legitimate domain to a malicious site, resulting in approximately $570,000 in losses. Following the attack, Curve advised users to revoke any suspicious approvals and proposed migrating to the Ethereum Name Service (ENS) to mitigate future vulnerabilities. A year later, Curve Finance faced another exploit involving some Vyper programming language versions and the CRV/ETH pool. The loss across affected DeFi projects was estimated at $24 million at the time. Edited by Stacy Elliott. Daily Debrief Newsletter Start every day with the top news stories right now, plus original features, a podcast, videos and more. Source: https://decrypt.co/319414/curve-finance-dns-record-attack
You may also like

The "PayPal Mafia" of the AI era, from an internship to a net worth of billions
Creating billion-dollar giants like Perplexity and Cognition: Unveiling the "new gang" of the AI era formed by former Olympic champions.

The Most Crypto-Knowledgeable Fed Chair in History: What Cryptocurrencies Does Kevin Warsh Hold?
He has been called Bitcoin's "good cop of policy," and now his holdings confirm his assessment.

X Launches Cashtag, Musk's Super App Most Concrete Landing
A "message in a bottle" product that was invented, stolen, and turned into a deposit gateway

Educational | How Can the Average Person Quickly Identify Token Rug Pull and Trading Strategy?
Following the whales is meaningless; understanding their intentions is what truly matters

Rhythm X Zhihu Event Guest Announcement, featuring experts from academia, institutions, and individuals covering all aspects of the AI Agent's transformative financial model.
April 21st, Hong Kong

Is It a Dead Cat Bounce or the Bull Market Revival? How Do Traders View It?
Ceasefire Holding, Negotiations Near Agreement, Oil Price Retreats, Earnings Report Exceeds Expectations, Is This Rebound the Start of a Bull Market?

Why Can Bitcoin Rise Against the Tide of Turmoil?
When geopolitical conflicts escalate, Bitcoin strengthens due to its apolitical nature.

OpenAI and Anthropic, both pre-IPO, want to keep brawling
In this game of cat and mouse, who is reaping the benefits?

Entry is Revenue, Is YouTube Turning into a Neobank?
In the Era of Stablecoins, the Bank’s Boundaries Are Being Rewritten

NEET Reaches New High, Another Cultural Phenomenon of AI Meme
The 9-to-5 Life is a Scam

CROO officially releases the CROO Agent Protocol (CAP), building a decentralized business infrastructure for AI agents
CROO officially launched the CROO Agent Protocol (CAP) in the Base ecosystem today, providing AI agents with four core capabilities: identity, collaboration, settlement, and reputation, enabling autonomous intelligent agents to achieve commercial monetization and assetization.

Who is swimming naked, and who is breaking the waves? Analysis Report on the Comprehensive Ranking of Hong Kong Licensed Virtual Asset Trading Platforms (VATP)
The latest power ranking of 12 licensed crypto platforms in Hong Kong is out: HashKey and OSL firmly hold the top two positions, while the rising star EX.IO makes a strong comeback with RWA innovation, becoming the strongest dark horse. Click to reveal who is swimming naked and who is riding the wav...

Deconstructing RAVE Dealer Control Techniques
RAVE Extreme Control Warning: 96% of the chips are locked by whales, with contract positions exceeding spot, creating an epic short squeeze deadlock. Please be highly vigilant of the risk of OKX chain liquidations and the possibility of the manipulators closing in and crashing the market at any time...

70x in a Month: When $RAVE Put Istanbul’s Dancefloor on the Chain
A Web3 project with zero VCs and no whitepaper started with a midnight party for 200 people. Eighteen months later, its token $RAVE is up 70x, and its contract liquidations briefly eclipsed Ethereum’s. Is this just pure speculation, or are we looking at a new breed of cultural asset?

Bearish Traders Continue to Short Bitcoin | Rewire News Morning Update
Binance Perpetual Contract Funding Rate has been negative for 46 consecutive days, with open interest rising accordingly

Is Nasdaq About to Reach a New High, Is the Bull Market Back?
Almost all assets are up

Goldman Sachs Applies for Bitcoin ETF, Wall Street's Final Bastion Falls
Wall Street has no faith, only a ledger. When the number on the ledger is large enough, any faith will change.

Only Working 2 Hours a Day? This Google Engineer Got His Job Done Using Claude for 80% of It
One File, Three Commands, AI Will Not Replace Programmers, But Will Eliminate Those Who Cannot Set Up a System
The "PayPal Mafia" of the AI era, from an internship to a net worth of billions
Creating billion-dollar giants like Perplexity and Cognition: Unveiling the "new gang" of the AI era formed by former Olympic champions.
The Most Crypto-Knowledgeable Fed Chair in History: What Cryptocurrencies Does Kevin Warsh Hold?
He has been called Bitcoin's "good cop of policy," and now his holdings confirm his assessment.
X Launches Cashtag, Musk's Super App Most Concrete Landing
A "message in a bottle" product that was invented, stolen, and turned into a deposit gateway
Educational | How Can the Average Person Quickly Identify Token Rug Pull and Trading Strategy?
Following the whales is meaningless; understanding their intentions is what truly matters
Rhythm X Zhihu Event Guest Announcement, featuring experts from academia, institutions, and individuals covering all aspects of the AI Agent's transformative financial model.
April 21st, Hong Kong
Is It a Dead Cat Bounce or the Bull Market Revival? How Do Traders View It?
Ceasefire Holding, Negotiations Near Agreement, Oil Price Retreats, Earnings Report Exceeds Expectations, Is This Rebound the Start of a Bull Market?
