Request Finance had a front end breach on September 10. Only one client was affected. The platform remains secure. Information regarding attacks and safety precautions indoors. Request Finance discovered a frontend attack on September 10, 2025. Hackers deployed the official platform frontend with malicious logic aimed at contract approval. The problem was sealed off on […] The post Request Finance Containment Alert: September 10 Frontend Breach Sparks Alarm appeared first on Live Bitcoin News.Request Finance had a front end breach on September 10. Only one client was affected. The platform remains secure. Information regarding attacks and safety precautions indoors. Request Finance discovered a frontend attack on September 10, 2025. Hackers deployed the official platform frontend with malicious logic aimed at contract approval. The problem was sealed off on […] The post Request Finance Containment Alert: September 10 Frontend Breach Sparks Alarm appeared first on Live Bitcoin News.

Request Finance Containment Alert: September 10 Frontend Breach Sparks Alarm

2025/09/16 03:30
2분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다

Request Finance had a front end breach on September 10. Only one client was affected. The platform remains secure. Information regarding attacks and safety precautions indoors.

Request Finance discovered a frontend attack on September 10, 2025. Hackers deployed the official platform frontend with malicious logic aimed at contract approval.

The problem was sealed off on the spot. Only a single client was a victim of this attack. Request Finance is organizing recovery activities with the affected side.

The attackers had put a fake smart contract into place that looked like the real Request Finance contract.  This malicious contract also had another approach, where attackers could drain approved USDC tokens out of the wallet of the victim. 

Attackers sent a transaction batch that authorized an unlimited USDC by the fraudulent contract. The attackers emptied the wallets of approved USDC in a few minutes.

Request Finance affirmed no indication of a broader effect. The basic functionality and security of the platform remain stable. The team examined all other wallets and recent user actions and prevented further compromise.

Sneaky Attack Vector: Rogue Contract Almost Exact.

The assailants took advantage of the slight address disparities of the contract. Both real and fake contracts begin and end with the same characters, but differ in between. 

The forged contract was checked on the blockchain explorer, which gave a false sense of validity. This fraud deceived the victim into authorizing unlimited USDC to the despotic contract. 

A lawful payment transaction accompanied the acceptance within a Safe multisignature wallet. The batch transaction carried the user signatures, which covered up the exploit in the background.

Attackers called the malicious contract claim token functionality in two minutes. The victim had her wallet balance emptied by this call up to the allowance given.

Strong Security Response and Continuous Vigilance.

Request Finance was quick to introduce new security measures and surveillance. They also hired third-party cybersecurity firms to perform routine auditing and penetration testing. To ensure safety, the team changed all the passwords and technical secrets.

The team will implement additional protective measures. These involve decreasing dependence on third-party services and maximizing integrity verification of their smart contracts and multisig wallets. Request Finance recommends that users always whitelist supported official contracts.

Advisors recommend that users keep the main treasury wallets separate from the daily payment wallets. Validating the contract addresses prior to authorizing a transaction is a major defense.

 

면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

USD1 Genesis: 0 Fees + 12% APR

USD1 Genesis: 0 Fees + 12% APRUSD1 Genesis: 0 Fees + 12% APR

New users: stake for up to 600% APR. Limited time!