WazirX Cyber Attack: Key Insights and Learnings

2024-07-25 Wazir X

https://wazirx.com/blog/wazirx-cyber-attack-key-insights-and-learnings/

Thumbnail for WazirX Cyber Attack: Key Insights and Learnings

WazirX's post describes preliminary findings from the July 2024 attack against an affected multisig wallet that used five WazirX signers and one Liminal signer. WazirX says it found no evidence that signer machines were compromised, while the malicious transaction still carried three WazirX signatures and one Liminal signature through Liminal infrastructure. The source highlights a control failure around whitelisted destination enforcement and Ethereum ERC20 blind signing, where hardware wallets did not show the token or destination address. WazirX framed the incident as an ongoing forensic investigation into multisig custody, smart contract upgrade abuse, and exchange wallet security rather than attributing the intrusion in this excerpt.

Related Reports

« Back