A few hours ago the USPD team confirmed that there was an attack that caused the platform to suffer from unauthorized token creation and liquidity loss. According to the details, the breach did not come from mistakes in the protocol’s smart contract design, but instead, it was caused by an unusual and extremely sophisticated method […]A few hours ago the USPD team confirmed that there was an attack that caused the platform to suffer from unauthorized token creation and liquidity loss. According to the details, the breach did not come from mistakes in the protocol’s smart contract design, but instead, it was caused by an unusual and extremely sophisticated method […]

USPD Protocol Suffers Exploit Through “CPIMP” Attack Vector

2025/12/06 18:30
  • Despite passing audits by Nethermind and Resonance, the USPD protocol was compromised through a rare CPIMP exploit.
  • The attacker made use of different techniques that enabled them to create unauthorized tokens and drain liquidity without detection.

A few hours ago the USPD team confirmed that there was an attack that caused the platform to suffer from unauthorized token creation and liquidity loss.

According to the details, the breach did not come from mistakes in the protocol’s smart contract design, but instead, it was caused by an unusual and extremely sophisticated method known as the Clandestine Proxy In the Middle of Proxy (CPIMP) exploit. A complex concept? Let me break it down.

How the Hacker Made Use of CIMP to Exploit USPD Protocol

Before the USPD was launched, the system went through extensive security reviews that were performed by two different respected auditing companies, Nethermind and Resonance. During the auditing, every part of the platform was tested, checked, and verified, and when it launched, the architecture followed the typical industry-level safety practices, and all units of the codebase passed their evaluations.

However, despite the high-level processes that were put in place, the attacker managed to infiltrate the deployment process on the 16th of September. During the rollout, the attacker managed to carefully execute a timed front-run using a Multicall3 transaction.

This step gave them the opportunity to gain control over the proxy administrator role before the deployment script reached the step meant to finalize ownership. After they managed to take control, the attacker inserted a different implementation behind the proxy.

Also Read: Binance Coin Holds Key Support as Market Signals Point Toward a Possible Breakout

By doing this, the setup forwarded every request to the original, verified contract. So with that in place, nothing looked suspicious from the outside (i.e., the USPD team’s side and the users’ side). They also manipulated event data and changed storage slots in a way that made Etherscan display the correct, audited contract as the active implementation.

By looking at this, we can clearly see that the hackers meticulously carried out every step silently, precisely, and nearly impossible to detect in real time.

The USPD team, on the other hand, has shared that they are working in partnership with the law enforcement agencies and cybersecurity experts to make sure that the hackers are exposed. Also, the attacker’s wallets have been reported to major centralized and decentralized exchanges to block the movement of the stolen assets.

Also Read: U.S. Justice Department Seizes Crypto Scam Domain Linked to Southeast Asia

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Single Currency-Pegged Tokens Surge Following MiCA Rollout.

Single Currency-Pegged Tokens Surge Following MiCA Rollout.

The post Single Currency-Pegged Tokens Surge Following MiCA Rollout. appeared on BitcoinEthereumNews.com. The euro stablecoin market has rebounded in the year since the European Union’s (EU) Markets in Crypto-Assets Regulation (MiCA) came into force, with market capitalization doubling after regulations governing the tokens rolled out in June 2024, according to a new report. The “Euro Stablecoin Trends Report 2025” from London-based payments processing company Decta points a potential shift for the tokens, whose value is pegged to the single European currency and which have historically struggled to gain traction against their U.S. dollar-pegged counterparts. The swing contrasts with the 48% contraction experienced the year before, according to the report. It also contrasts with a 26% advance in total stablecoin market cap. Euro coin market cap climbed to some $500 million by May 2025, the report said, mainly due to improved issuer obligations and standardized reserve requirements. It’s now $680 million, according to data tracked by CoinGecko. Even so, that’s just a tiny fraction of the $300 billion held in U.S. dollar-pegged tokens, a market dominated by Tether’s USDT with Circle Internet’s (CRCL) USDC in second place. Growth has been especially concentrated among a few standout tokens. EURS, issued by Malta-based Stasis, posted the most dramatic gains, soaring 644% million to $283.9 million by October 2025. Circle Internet’s EURC and EURCV, from Societe Generale’s SG-Forge, also recorded significant gains. Transaction activity surged in parallel. Monthly euro-stablecoin volume rose nearly ninefold after MiCA’s implementation US$3.83 billion. EURC and EURCV were among the biggest beneficiaries, with volume expanding 1,139% and 343% respectively, driven by increased usage in payments, fiat on-ramps and digital-asset trading. Consumer awareness also appears to be climbing. Decta found substantial spikes in search activity across the EU, including 400% growth in Finland and 313.3% in Italy, with smaller but steady increases in markets such as Cyprus and Slovakia. Source: https://www.coindesk.com/business/2025/12/06/hold-euro-stablecoin-market-cap-doubles-in-year-after-mica-decta-says
Share
BitcoinEthereumNews2025/12/06 21:25
BlackRock boosts AI and US equity exposure in $185 billion models

BlackRock boosts AI and US equity exposure in $185 billion models

The post BlackRock boosts AI and US equity exposure in $185 billion models appeared on BitcoinEthereumNews.com. BlackRock is steering $185 billion worth of model portfolios deeper into US stocks and artificial intelligence. The decision came this week as the asset manager adjusted its entire model suite, increasing its equity allocation and dumping exposure to international developed markets. The firm now sits 2% overweight on stocks, after money moved between several of its biggest exchange-traded funds. This wasn’t a slow shuffle. Billions flowed across multiple ETFs on Tuesday as BlackRock executed the realignment. The iShares S&P 100 ETF (OEF) alone brought in $3.4 billion, the largest single-day haul in its history. The iShares Core S&P 500 ETF (IVV) collected $2.3 billion, while the iShares US Equity Factor Rotation Active ETF (DYNF) added nearly $2 billion. The rebalancing triggered swift inflows and outflows that realigned investor exposure on the back of performance data and macroeconomic outlooks. BlackRock raises equities on strong US earnings The model updates come as BlackRock backs the rally in American stocks, fueled by strong earnings and optimism around rate cuts. In an investment letter obtained by Bloomberg, the firm said US companies have delivered 11% earnings growth since the third quarter of 2024. Meanwhile, earnings across other developed markets barely touched 2%. That gap helped push the decision to drop international holdings in favor of American ones. Michael Gates, lead portfolio manager for BlackRock’s Target Allocation ETF model portfolio suite, said the US market is the only one showing consistency in sales growth, profit delivery, and revisions in analyst forecasts. “The US equity market continues to stand alone in terms of earnings delivery, sales growth and sustainable trends in analyst estimates and revisions,” Michael wrote. He added that non-US developed markets lagged far behind, especially when it came to sales. This week’s changes reflect that position. The move was made ahead of the Federal…
Share
BitcoinEthereumNews2025/09/18 01:44