CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data

  • CONTACT
  • MARKETCAP
  • BLOG
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data
  • BOOKMARKS
  • Blockchain
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
  • News
    • Coinbase
    • Mining
    • NFT
    • Stocks
Reading: Curve Finance Hit by DNS Record Attack, Warns Users to Avoid Main Site
Share
  • bitcoinBitcoin(BTC)$102,949.00
  • ethereumEthereum(ETH)$2,469.72
  • tetherTether(USDT)$1.00
  • rippleXRP(XRP)$2.51
  • binancecoinBNB(BNB)$650.38
  • solanaSolana(SOL)$172.87
  • usd-coinUSDC(USDC)$1.00
  • dogecoinDogecoin(DOGE)$0.224808
  • cardanoCardano(ADA)$0.79
  • tronTRON(TRX)$0.264075
CoinRSS: Bitcoin, Ethereum, Crypto News and Price DataCoinRSS: Bitcoin, Ethereum, Crypto News and Price Data
0
Font ResizerAa
  • Blockchain
  • Crypto
  • Market
  • News
Search
  • Blockchain
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
  • News
    • Coinbase
    • Mining
    • NFT
    • Stocks
Have an existing account? Sign In
Follow US
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data > Blog > News > Curve Finance Hit by DNS Record Attack, Warns Users to Avoid Main Site
News

Curve Finance Hit by DNS Record Attack, Warns Users to Avoid Main Site

CoinRSS
Last updated: May 13, 2025 9:39 pm
CoinRSS Published May 13, 2025
Share

Contents
In briefDaily Debrief Newsletter

In brief

  • Curve Finance’s front-end website suffered a DNS compromise where attackers redirected users to a malicious site.
  • The attack involved manipulating DNS records to point to a fraudulent site mimicking Curve’s interface with malicious scripts designed to trick users into approving token transfers.
  • This isn’t Curve Finance’s first security incident. They experienced a similar DNS hijack in 2022 resulting in $570,000 in losses, and faced another exploit in 2023 involving Vyper programming vulnerabilities with estimated losses of $24 million.

Decentralized protocol Curve Finance confirmed Tuesday that its front-end website was compromised, with attackers redirecting users to a fake site.

“The DNS incident involving Curve Finance reflects a broader issue across the industry,” the project told Decrypt. “In recent weeks, there has been a noticeable increase in attacks targeting the infrastructure of various crypto projects.”

The exploit redirected traffic to a malicious IP, the protocol said on social media. “User funds are safe. Curve smart contracts remain secure,” it added.

The incident was first discovered on Monday afternoon, after which Curve Finance issued a preliminary response.

While all smart contracts are safe, the domain name points to a malicious site which can drain your wallet!

We are investigating and working on recovering the access.

No sign of a compromise on our side

— Curve Finance (@CurveFinance) May 12, 2025

Curve Finance later said the breach was “strictly limited to the DNS layer” and did not compromise its core infrastructure.

Its security team promptly isolated the issue, initiated an investigation, and engaged with their domain registrar and security partners to address the situation, the project said.

Security measures were in place “long before the incident,” the protocol added.

What happened?

According to Curve Finance, attackers manipulated the DNS records to point to an IP address under their control. A DNS record connects a domain name to details like an IP address, helping direct internet traffic.

The fraudulent site, which mirrored Curve’s interface, reportedly contained malicious scripts aimed at tricking users into approving token transfers to the attackers.

“DNS exploits are a form of social engineering at the infrastructure level. Attackers compromise the domain name system,” Meir Dolev, co-founder and CTO of blockchain security firm Cyvers, told Decrypt.

If a site’s mapping changes due to stolen credentials or a registrar’s vulnerability, users may be redirected to harmful servers without realizing it.

“These cloned sites can prompt users to connect wallets and approve transactions that drain funds,” Dolev explained. “It’s particularly dangerous because the average user can’t easily tell the difference—they still see the correct URL.”

The attack doesn’t breach the protocol’s blockchain, but rather “exploits the trust layer” between the user and a decentralized app’s interface.

“So long as users interact with Curve directly via verified contract addresses, their funds are likely unaffected,” Dolev noted.

Hacking history

This isn’t the first time Curve has been hit.

Back in 2022, Curve Finance suffered a DNS hijack where attackers redirected users from its legitimate domain to a malicious site, resulting in approximately $570,000 in losses.

Following the attack, Curve advised users to revoke any suspicious approvals and proposed migrating to the Ethereum Name Service (ENS) to mitigate future vulnerabilities.

A year later, Curve Finance faced another exploit involving some Vyper programming language versions and the CRV/ETH pool.

The loss across affected DeFi projects was estimated at $24 million at the time.

Edited by Stacy Elliott.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Source link

You Might Also Like

Bitcoin-Friendly El Salvador Pitches Tokenized Real Estate ‘Sandbox’ to Trump’s SEC

As Ethereum nears $2.8K, profit-taking causes concern: What’s ahead for ETH?

Quant [QNT] price prediction: As THIS flips bullish, is $128 coming?

ISLAND: Everything You Need to Know About the ‘Nifty Island’ Ethereum Token and Airdrop

Dogecoin sell-off: Miners exit as DOGE faces market uncertainty

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Copy Link Print
Previous Article Bitcoin at a crossroads: Is this the time to exit or keep HODLing?
Next Article Ethereum vs. Tron stablecoin war: How things will change with Meta’s wild card
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recipe Rating




Follow US

Find US on Socials
FacebookLike
TwitterFollow
YoutubeSubscribe
TelegramFollow
Subscribe to our newslettern

Get Newest Articles Instantly!

- Advertisement -
Ad image
Popular News
Galaxy Digital Reports $295 Million Q1 Loss Before Nasdaq US Listing
BTC Price will Hit $100K before Bitcoin Sweeps $30K Lows
Crypto Bahamas: Regulations Enter Critical Stage as Gov’t Shows Interest

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data coin-rss-logo

We influence 20 million users and is the number one business blockchain and crypto news network on the planet.

Subscribe to our newsletter

You can be the first to find out the latest news and tips about trading, markets...

Ad imageAd image
© CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?