Radiant Capital, a DeFi lending protocol, suffered a major exploit on October 16, 2024, when attackers compromised its smart contracts on BNB Chain and Arbitrum and abused the transferFrom function to drain more than $50 million in user assets, including USDC, WBNB, and ETH. The incident has also been described as stemming from a private key or multi‑sig compromise, with reports that a malicious actor gained control of Radiant’s multi-signature wallets and altered contracts to facilitate the theft, leading to estimated losses in the $50–58 million range. In response, Radiant halted its affected lending markets and urged users via its official X account to revoke contract approvals using tools such as Revoke.cash to limit further damage. Amid the post-hack scramble, web3 security firm Ancilia drew criticism after it mistakenly amplified a link to a malicious wallet drainer while trying to help affected users. As users rushed to revoke permissions, scammers set up an X account impersonating Radiant Capital and promoted a fake “revoke” link mimicking legitimate services; Ancilia reposted this impostor message, instructing users to “follow the link” from what it believed was an official source, inadvertently directing them to a phishing site designed to drain connected wallets. Community members quickly flagged the error, after which Ancilia deleted the post, apologized, and redirected users to Radiant’s real account, but the episode underscored how even security-focused actors can become vectors for phishing in the chaotic aftermath of major DeFi hacks. The incident highlights several systemic risks in the crypto ecosystem: smart contract and key-management vulnerabilities that can lead to large protocol losses, and an opportunistic phishing ecosystem that rapidly exploits user confusion after high-profile exploits. It also illustrates the importance of verifying official communication channels and links—especially those related to permission revocation or security “fixes”—as wallet drainer schemes increasingly impersonate well-known projects and tools to trick users into authorizing malicious transactions.

AI-generated background, compiled from web sources — not editorial content.

More coverage

Explore the topic

More on $LINK

Comments