Ongoing EOSIO exploit allows attacker to steal 30,000 EOS as network freezes

An ongoing exploit on EOSIO is allowing an attacker to win every roll on gambling dApp EOSPlay by paying to fill blocks with their transactions. So far, the attacker stole 30,000 EOS worth over $110,000 while making the network “unusable.”

A clever attacker was able to use REX, an EOS resource exchange for RAM and CPU, to ensure that blocks were filled with their transactions to continuously win on the gambling dApp EOSPlay. This resulted in the EOSIO network “freezing” as thousands of EOS were fed to the attacker’s wallet, as confirmed by another source.

For 300 EOS, worth a little over $1,000, the attacker was able to make away with 30,000 EOS tokens, said Jared Moore to CryptoSlate, an investor in the EOS ICO and an active community member. A look at on-chain transactions involved confirm the attack.

Until there’s a fork or a patch, the exploit can continue to be abused whenever a EOSIO user spends $1,000 or more on REX, Moore stated. 

There’s discussion about getting the EOS Core Arbitration Forum (ECAF) involved to potentially freeze the account or reverse the unscrupulous transactions. This is controversial, however, since “technically he legally obtained” the funds, added Moore.

Until the exploit is resolved users are recommended to trade their EOS for stablecoin.

EOS, currently ranked #7 by market cap, is down 0.06% over the past 24 hours. EOS has a market cap of $3.47B with a 24 hour volume of $1.37B.

Chart by CryptoCompare

EOS is down 0.06% over the past 24 hours.

Filed Under: EOS, Hacks, Price Watch

Mitchell Moos

Mitchell is a software enthusiast and entrepreneur. In addition to writing, he runs a non-profit that teaches people about the blockchain. In his spare time he loves playing chess or hiking.

View author profile

Commitment to Transparency: The author of this article is invested and/or has an interest in one or more assets discussed in this post. CryptoSlate does not endorse any project or asset that may be mentioned or linked to in this article. Please take that into consideration when evaluating the content within this article.

Disclaimer: Our writers’ opinions are solely their own and do not reflect the opinion of CryptoSlate. None of the information you read on CryptoSlate should be taken as investment advice, nor does CryptoSlate endorse any project that may be mentioned or linked to in this article. Buying and trading cryptocurrencies should be considered a high-risk activity. Please do your own due diligence before taking any action related to content within this article. Finally, CryptoSlate takes no responsibility should you lose money trading cryptocurrencies.

Posted in , ,

American Crypto Association Exclusives!

Bookmark the site and sign up for relevant alerts, trading tips, masternode updates and important news hosted within our exclusive newsletter. Valued at $3,588, we are offering this service free for one year!

Get onboard now!

Exclusive Newsletter!

Sign up for exclusive trading tips, masternode updates and important news hosted within our newsletter!
Terms and Conditions checkbox is required.
Something went wrong. Please check your entries and try again.
Scroll to Top