On Oct 31st, Shoebill Finance experienced a security incident affecting the BTC Market on the BOB chain.
Cause
The incident stemmed from an unexpected interaction within the oracle configuration during the integration of solvBTC and solvBTC.BBN assets. This interaction inadvertently created an exploitable condition that was leveraged by the attacker through a multi-stage exploit.
Actions Taken
- Vulnerability Fix: The vulnerability in the oracle configuration has been resolved to prevent further exploitation.
- Security Review: We conducted a thorough review of our systems and have verified that other markets remain unaffected by this issue.
- Engagement with on-chain security firms: We are actively working with Cryptoforensic and AMLBot to trace the movement of stolen assets across various chains and bridges.
- Law Enforcement: We have reported this incident to law enforcement agencies and are cooperating with them to facilitate any potential recovery of the stolen assets.
Next Steps
Shoebill Finance remains committed to transparency and security. We will continue to provide updates on this matter as we progress in our investigation and recovery efforts. Our top priority is ensuring the safety and trust of our community.
Please check more details here
https://medium.com/@shoebill.finance/shoebill-finance-incident-report-btc-market-on-bob-chain-8b5b487eed7c