Market Cap: $3.3104T -0.610%
Volume(24h): $180.7418B 40.450%
  • Market Cap: $3.3104T -0.610%
  • Volume(24h): $180.7418B 40.450%
  • Fear & Greed Index:
  • Market Cap: $3.3104T -0.610%
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
Top News
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
bitcoin
bitcoin

$101937.247657 USD

-1.92%

ethereum
ethereum

$2440.088811 USD

-3.10%

tether
tether

$1.000193 USD

0.01%

xrp
xrp

$2.459614 USD

3.05%

bnb
bnb

$645.663399 USD

-1.18%

solana
solana

$169.340061 USD

-2.43%

usd-coin
usd-coin

$1.000185 USD

0.04%

dogecoin
dogecoin

$0.221860 USD

-5.74%

cardano
cardano

$0.788860 USD

-2.57%

tron
tron

$0.263711 USD

-1.20%

sui
sui

$3.873057 USD

-2.82%

chainlink
chainlink

$16.315579 USD

-4.09%

avalanche
avalanche

$23.848565 USD

-4.36%

stellar
stellar

$0.301245 USD

-3.23%

shiba-inu
shiba-inu

$0.000015 USD

-6.14%

Cryptocurrency News Articles

Curve Finance Warns Users of DNS Hijacking Attack Targeting Its Website

May 13, 2025 at 11:10 am

Update May 13, 12:33 am UTC: This article has been updated to include more information from Curve Finance.

Decentralized finance protocol Curve Finance has warned that a hacker has again hijacked its domain name system (DNS), sending users to a malicious website.

In the second attack on its infrastructure in a week, the “curve.fi DNS might be hijacked. Don’t interact!” the team said in a May 12 warning to X.

In a follow-up post to a user asking whether it was a hack or a hijack, the Curve Team said the website "Points to the wrong IP" when users try to visit. A DNS works like a directory that translates domain names into IP addresses.

The team also said in another update that the "Password is secure," its two-factor authentication was set up a "long time ago," and a question has been sent to the "registrar now."

”While all smart contracts are safe, the domain name points to a malicious site which can drain your wallet! We are investigating and working on recovering the access. No sign of a compromise on our side,” Curve said.

Curve Finance was hit with a similar front end attack in August 2022. In a post-mortem, the consensus was that the attackers managed to clone the Curve Finance website and reroute the DNS server to the fake page.

Users who attempted to use the platform had their funds drained into a pool operated by the attackers.

Decrypt has contacted Curve Finance for comment.

Onchain security firm Blockaid also detected unusual activity from the Curve website recently, warning users to stay away and avoid interacting for now.

It could be a case of a “potential frontend attack,” according to the security firm, which is when hackers target the part of the website users interact with, such as the buttons, forms, or text on the site, to steal sensitive data.

“If you’re connected, please refrain from signing transactions and avoid interactions with the DApp until the issue is resolved. We’re working closely with affected partners. More updates soon,” Blockaid said.

Earlier this year, reports suggested that a rising number of DeFi protocols were being targeted by hackers. According to Chainalysis, April saw $92 million in crypto stolen from DeFi in 12 separate incidents.

This is more than double the $41 million lost in March, and the highest total for any month since August 2022, when $143 million was stolen in seven separate incidents.

The large majority of the stolen funds were in Ether, and the majority of the protocols targeted were decentralized exchanges.

Disclaimer:info@kdj.com

The information provided is not trading advice. kdj.com does not assume any responsibility for any investments made based on the information provided in this article. Cryptocurrencies are highly volatile and it is highly recommended that you invest with caution after thorough research!

If you believe that the content used on this website infringes your copyright, please contact us immediately (info@kdj.com) and we will delete it promptly.

Other articles published on May 13, 2025