QUADRIGA INITIATIVE
CRYPTO WATCHDOG & FRAUD RECOVERY PLATFORM
A COMMUNITY-BASED, NOT-FOR-PROFIT
$2 092 000 USD
AUGUST 2024
GLOBAL
NEXERA
DESCRIPTION OF EVENTS
"DAO stands for "Decentralized Autonomous Organization". The AllianceBlock DAO is the decision-making tool for NXRA holders in the AllianceBlock ecosystem. Through Votes in the DAO, the community can let it’s voice be heard and steer AllianceBlock towards a bright future. It can propose new ideas for product & business development, issue grants that promote ecosystem growth, from the DAO Community Fund, and in the future it’ll also assume control over the smart contracts within our solutions."
"Empowering the future of finance with cutting edge open-source innovation Nexera is advancing finance with open-source infrastructure, seamlessly blending blockchain technology for streamlined management of digital, financial, and real-world assets" "The Nexera infrastructure stack is built with these principles in mind to make it seamless and easy to build with or on top of decentralized and open source technologies"
"The NXRA token plays a key part across the Nexera ecosystem's reputation system." "Staking NXRA unlocks exclusive access to features and opportunities." "Holding NXRA enables DAO participants to shape the future of the Nexera DAO actively." "NXRA is utilized for fees, payments and transaction mechanisms."
"Our system has detected a suspicious transaction involving your proxy contract. An address took ownership of your proxy contract and upgraded it. Shortly after, the address used the withdraw admin function to transfer all the $NXRA tokens.
The address is currently selling all the tokens for $ETH, and some of the funds have already been bridged to the $BNB chain. The total estimated loss is around $1.5 million."
"A suspicious transaction involving Nexera's proxy contract has occurred. An address took ownership of the proxy contract and upgraded it. Shortly after, the address used the withdraw admin function to transfer all the NXRA tokens. Currently, the address is selling all the tokens for ETH, and some of the funds have already been bridged to the BNB chain. The total estimated loss is around $1.5 million."
"The team is investigating an exploit involving smart contracts containing NXRA tokens.
While we are still finalizing our findings, there are already a couple of things that we can share: 1️) The $NXRA token contract has already been paused. Trading is halted on decentralized exchanges, and we are working with centralized exchanges to halt trading. 2️) Everyone is advised to stop trading.
We continue to investigate the exploit now and will come back here ASAP with follow-up steps.
Thank you for your understanding and patience while we sort this out with the utmost priority."
"We have already identified the exploit in the past hours. We have acted fast and managed to stop further damage.
We have also taken the following steps:
We are working with our partners at @HypernativeLabs to trace the source of the exploit and have begun discussions with law enforcement.
KuCoin has already suspended deposits and withdrawals, with trading to halt in the next few hours.
MEXC has already suspended deposits and withdrawals and halted trading.
Trading on DEXes has already been halted.
We have suspended bridging on Nexera Bridge.
As mentioned, everyone is advised to stop trading. We will continue to investigate and provide updates as we go."
"We recently concluded our technical investigation into the exploit and have determined that there is no issue with our smart contracts.
As mentioned in the previous update, we have already acted on freezing the $NXRA assets remaining in the attacker’s wallet and stopped further damage.
From this, we have these additional updates:
The exploit was part of a wider coordinated attack targeting multiple projects and protocols. Thanks to our team and partners, we managed to identify and stop it quickly and mitigate damage.
Of the total $NXRA tokens that were transferred, only $440k was effectively compromised. The remaining $NXRA assets in the attacker’s wallet have been frozen, and they cannot do anything with them.
We have made a technical assessment and determined that there will be no need to issue a new $NXRA token. We are keeping the same token address as we have now.
We are taking steps to ensure we can get the token live as soon as possible.
We are also issuing a full post-mortem report in the coming days.
Users who have staked on Fundrs will have all their $NXRA restored. For now, nothing needs to be done.
Users are still strongly advised against trading. KuCoin and MEXC have already halted their services (deposits, withdrawals and trading), and more exchanges have been notified and advised to do the same.
We greatly appreciate your patience and continued trust as we resolve this exploit.
Rest assured, we are working as fast as possible and with the community’s best interest in mind."
"The NXRA token is trading at $0.036, down 40% since the exploit occurred, according to CoinMarketCap. Blockchain sleuth ZachXBT revealed on Telegram that the attacker is connected to a string of recent compromised private-key incidents including SpaceCatch, Concentric Finance, OKX DEX, Serenity Shield and Reach. Data from Zapper shows that the attacker holds 32.5 million NXRA tokens worth $1.23 million and $555,000 of tether's USDT stablecoin."
"Nexera(@Nexera_Official), a decentralized finance (DeFi) protocol, has burned 32.5 million of its native NXRA tokens involved in a recent hack as part of efforts to address the incident and enhance security."
Nexera, formerly called the Alliance Block DAO, is a decentralized autonomous organization. Holders of the token can participate in community governance, stake their tokens, or fund different community grants. The protocol founders appear to have been tricked into exposing access to their private keys and/or upgrading the smart contract. Once the upgrade was completed, the tokens were withdrawn and sold for BNB. Both the smart contract and trading were temporarily halted. Some of the funds were able to be recovered and burned before they were traded.
SlowMist Hacked - SlowMist Zone (Aug 8)
@Nexera_Official Twitter (Aug 8)
@zachxbt Twitter (Aug 8)
Hacking Employers and Seeking Employment: Two Job-Related Campaigns Bear Hallmarks of North Korean Threat Actors (Aug 8)
@Nexera_Official Twitter (Aug 8)
@Nexera_Official Twitter (Aug 8)
@CoinDesk Twitter (Aug 8)
Blockchain Protocol Nexera Suffers $1.8M Exploit, NXRA Token Price Tumbles 40% (Aug 8)
@Echoeweb Twitter (Aug 8)
@web3_watchdog Twitter (Aug 8)
@CyversAlerts Twitter (Aug 8)
@JoshuaTensor Twitter (Aug 8)
@AegisWeb3 Twitter (Aug 8)
@CertiKAlert Twitter (Aug 8)
@PeckShieldAlert Twitter (Aug 8)
Nexera Foundation — Cutting edge open-source innovation on blockchain (Aug 8)
Notion – The all-in-one workspace for your notes, tasks, wikis, and databases. (Aug 8)
Notion – The all-in-one workspace for your notes, tasks, wikis, and databases. (Aug 8)