MIT Brothers Charged With Exploiting Ethereum to Steal $25 Million – Dark Reading
Many cryptocurrency traders play fast and loose with the systems in place to empower decentralized finance (DeFi), using a variety of hacks to gain an advantage in their trades from sandwich attacks to rug pull scams and losses typically run into the tens of millions of dollars per month.
Yet, two traders brothers who both graduated from the Massachussetts Institute of Technology took their scheme too far, exploiting a vulnerability in a common component used by traders on the Etherium blockchain to score nearly $25 million in an attack that lasted 12 seconds, the US Department of Justice charged on May 16. The two brothers Anton Peraire-Bueno of Boston and James Peraire-Bueno of New York discovered the software flaw in 2022, prepared and planned the attacks for months, and then executed the theft in April 2023, law enforcement alleges.
The attack worried traders and technologists, calling "the very integrity of the blockchain into question," Damian Williams, US attorney for the Southern District of New York, said in a statement from the Justice Department announcing the indictment.
"The brothers, who studied computer science and math at one of the most prestigious universities in the world, allegedly used their specialized skills and education to tamper with and manipulate the protocols relied upon by millions of Ethereum users across the globe," he said. "And once they put their plan into action, their heist only took 12 seconds to complete. This alleged scheme was novel and has never before been charged."
Cryptocurrency has gained legitimacy over the past decade and a half, but continues to in many ways be a Wild West. In 2023, more than $24 billion in transactions ended up in illicit cryptocurrency wallets or addresses although more than half of the total belonged to sanctioned organizations and nations, and the total rate of fraud is only 0.34%, according to Chainalysis, a blockchain intelligence firm.
While ransomware gangs prefer Bitcoin, Ethereum has seen its fair share of attacks, from the $60 million DAO hack in 2016 that led to a hard fork a rewriting of the Ethereum ledger to the more than $600 million in Ethereum stolen from game players on the Ronin Network.
In many ways, the ecosystem behind cryptocurrencies is undergoing the growing pains that the Internet faced over the past three decades, says Oded Vanunu, chief technologist for Web 3.0 and head of product vulnerability research at cybersecurity firm Check Point Software Technologies.
"It's crazy, because we are seeing tactics that are being done already in Web 2 platforms that are taking a different shape in the Web 3 protocols," he says.
Cryptocurrency transfers, the proposal of a smart contract, and the execution of smart contracts are all transactions that are recorded on the blockchain in Ethereum's case, a public distributed state machine. However, before being recorded, every transaction is placed in a memory pool, or mempool, pending its validation and execution, which typically takes a few steps.
A participant in the ecosystem known as a "block builder" will create a bundle or block of transactions and get paid by the originator of each transaction for completion, while a "block proposer" chooses blocks based on the fees advertised by the builder, validates them, and sends those transactions to its peers on the blockchain network. Typically, a builder is attempting to structure blocks based on a strategy of maximal extractable value (MEV), seeking to maximize profits.
Dividing participants into proposers and builders what's called a proposer-builder separation (PBS) splits the responsibility of validating transactions to limit the monopolization of the process by large traders who could order transactions in specific ways to drive profits. MEV bots help traders identify and create bundles of transactions that maximize their profits from a transaction.
Yet, there is still a lot that traders can do to tilt the playing field. In a sandwich attack, for example, the trader profits from the natural price increases or decreases caused by large cryptocurrency transactions. When a large buy order appears, a builder could place a buy order for the cryptocurrency in front of the order, and a matching sell order after, profiting from the price change caused by the original buy order.
For many DeFi participants, MEV traders are little better than the equivalent of modern ticket scalpers, but they do serve a critical role, says Adam Hart, product manager at Chainalysis.
"To many, MEV strategies look like hyper-sophisticated, deep-pocketed traders using their resources to profit by forcing less sophisticated traders to take worse prices," he says. "However, others argue that MEV is inevitable in an open, transparent blockchain network, and that MEV traders play a positive role by ensuring that arbitrage opportunities are exploited quickly so that asset prices remain aligned across protocols."
The Peraire-Bueno brothers discovered a vulnerability in an open source component of a common tool, known as a MEV-Boost relay, according to a postmortem analysis of the incident. MEV-Boost is a protocol for limiting the centralization of the two components of the Ethereum blockchain proposers and builders and the monopolization of profits, which historically could have resulted in a few players dominating the blockchain process.
A key criteria of the MEV-Boost protocol is that the proposer commits to validating a block based on price, before knowing its contents. The brothers allegedly found that signing the header gave them the information in the block, even if the signature was invalid, the postmortem stated.
"The attack ... was possible because the exploited relay revealed block bodies to the proposer, so long as the proposer correctly signed a block header," the analysis stated. "However, the relay did not check if the block header that was signed was valid."
While the vulnerability could have continued to cause problems for traders, this was not an attack on the Ethereum network or its validators directly, but rather on a specific albeit, common third-party component, says Mario Rivas, blockchain security global practice lead at NCC Group.
"The attack exploited a vulnerability in the relay's code, which caused the relay to send private transactions to the block builder when it signed a block with invalid headers," he says. "This vulnerability was promptly addressed, mitigating the risk of similar attacks unless other vulnerabilities are identified."
The investigation and indictment, however, is a win for the DOJ. US law enforcement is increasingly cracking down on cryptocurrency scams, hacking, and other questionable practices. In August, for example, the US Securities and Exchange Commission charged a correctional officer for creating a worthless cryptocurrency and selling it to other members of law enforcement.
Yet, other attacks have remained below the threshold for legal action. In a 2021 attack, for example, one trader acknowledged selling a non-liquid token to a rival in something referred to as a Salmonella attack and making money off his rival's automated system buying the worthless coin, according to a Forbes report.
The alleged attack by the two brothers stands apart from those contentious tactics, says Check Point's Vanunu.
"In essence, while both types of attacks are harmful, the MIT brothers' actions were explicitly illegal due to their direct and unauthorized exploitation of vulnerabilities to steal funds, whereas [a] Salmonella attack leverage[s] market manipulation and deception, staying within the murkier boundaries of legality in the crypto world," he says.
The investigation of the scheme and subsequent indictment underscores that government officials and their private partners are keeping pace with the latest innovative attacks. Despite the sophistication of the exploit and laundering of the proceeds, the investigators traced the funds, identified two suspects, and made their arrests, Chainalysis' Hart says.
"The Peraire-Bueno brothers' exploit is an incredibly innovative, technically sophisticated attack, and it represents the first time a bad actor has managed to abuse the MEV system widely used by Ethereum block builders in this way and to this degree," he says. "Thats what makes this indictment so impressive, and a promising sign for the future in the fight against cryptocurrency-based crime."
Go here to read the rest:
MIT Brothers Charged With Exploiting Ethereum to Steal $25 Million - Dark Reading
- 1 Top Cryptocurrency to Buy Before It Soars 1,477%, According to Cathie Wood - The Motley Fool - January 6th, 2025 [January 6th, 2025]
- Trump to set the course for cryptocurrency market this year with his cabinet - Hurriyet Daily News - January 6th, 2025 [January 6th, 2025]
- Happy Birthday, Bitcoin! The top cryptocurrency is old enough to drive - Quartz - January 6th, 2025 [January 6th, 2025]
- XRP Overtakes Tether to Become Third-Largest Cryptocurrency - "The Defiant" - The Defiant - DeFi News - January 6th, 2025 [January 6th, 2025]
- Irans Crackdown on Cryptocurrency Exchanges: A Blow to Digital Economy and Livelihoods - Iran News Update - January 6th, 2025 [January 6th, 2025]
- Top 10 cryptocurrency rankings on January 1 2025 vs 2024 sees Avalanche replaced by Tron - CryptoSlate - January 6th, 2025 [January 6th, 2025]
- Founder of collapsed cryptocurrency to stand trial in US - Global Investigations Review - January 6th, 2025 [January 6th, 2025]
- My Top Cryptocurrency to Buy in 2025 - The Motley Fool - January 6th, 2025 [January 6th, 2025]
- Weekly Cryptocurrency Market Analysis: Altcoins Continue Their Upward Trend And Mark Higher Highs And Lows - CoinIdol - January 6th, 2025 [January 6th, 2025]
- Cryptocurrency prices surge this year as bitcoin, altcoins gain - Tech in Asia - January 6th, 2025 [January 6th, 2025]
- Montenegro extradites cryptocurrency mogul to the United States - The Associated Press - January 6th, 2025 [January 6th, 2025]
- XRP Flips USDT to Become the 3rd Largest Cryptocurrency - Crypto Times - January 6th, 2025 [January 6th, 2025]
- Top New Cryptocurrency to Buy: 5 Tokens Ready to Explode in 2025 - NFTevening.com - January 6th, 2025 [January 6th, 2025]
- Singapore Emerges as Asias Leading Cryptocurrency Hub with Risk-Adjusted Regulations - Brave New Coin Insights - January 6th, 2025 [January 6th, 2025]
- Bitcoins Bright Outlook for 2025: What to Expect for the Cryptocurrency Market - The Currency Analytics - January 6th, 2025 [January 6th, 2025]
- Cryptocurrency Price Today (January 6): Bitcoin Nearly Touches $100k, SPX Becomes Top Gainer - ABP Live - January 6th, 2025 [January 6th, 2025]
- Bitwise CEO: The Trump administration may promote merger and acquisition trends, accelerating the development of the cryptocurrency industry -... - January 6th, 2025 [January 6th, 2025]
- We conducted a survey of 42 key figures in the Solana ecosystem. What are their views on the cryptocurrency industry? - ChainCatcher - January 6th, 2025 [January 6th, 2025]
- The cryptocurrency market sector rose slightly, with the DePIN sector leading again with a gain of 3.54%, while AI Agents and the Hyperliquid... - January 6th, 2025 [January 6th, 2025]
- Peter Tassiopoulos Explores Cryptocurrency Fundamentals and Technological Innovations Shaping this Financial Revolution - InvestorNews Inc. - January 6th, 2025 [January 6th, 2025]
- Launch the next big cryptocurrency presale inspired by Dogecoin with Blocksync - crypto.news - January 6th, 2025 [January 6th, 2025]
- The Role of Stablecoins in the Cryptocurrency Ecosystem - BNO News - December 8th, 2024 [December 8th, 2024]
- Bitcoin hits $100,000: what next for the booming cryptocurrency? - BBC.com - December 8th, 2024 [December 8th, 2024]
- 'Victimizing vulnerable people': OPD and DCSO working to combat cryptocurrency scams - KETV Omaha - December 8th, 2024 [December 8th, 2024]
- 1 Top Cryptocurrency to Buy Before It Soars 157%, According to Billionaire Venture Capitalist Tim Draper - The Motley Fool - December 8th, 2024 [December 8th, 2024]
- From Bitcoin to XRP: Key cryptocurrency terms and what they mean - BBC - December 8th, 2024 [December 8th, 2024]
- This $3,000 Android Trojan Targeting Banks and Cryptocurrency Exchanges - The Hacker News - December 8th, 2024 [December 8th, 2024]
- Cryptocurrency Trading Is Now Bigger Than Stocks in South Korea - Bloomberg - December 8th, 2024 [December 8th, 2024]
- Trump names former PayPal exec David Sacks as his White House AI and cryptocurrency 'czar' - USA TODAY - December 8th, 2024 [December 8th, 2024]
- XRP Is Now The Fourth Largest Cryptocurrency After $100 Billion Post-Election Surge - Forbes - December 8th, 2024 [December 8th, 2024]
- New cryptocurrency to mine for free: how to choose the right one - crypto.news - December 8th, 2024 [December 8th, 2024]
- The Bitcoin Bounce: Cryptocurrency surges following election - WTVG - December 8th, 2024 [December 8th, 2024]
- Hackers Stole $1.49 Billion in Cryptocurrency to Date in 2024 - SecurityWeek - December 8th, 2024 [December 8th, 2024]
- Bitcoin at $90K and XAI240Ks Ascent: The Future of Cryptocurrency - TechBullion - December 8th, 2024 [December 8th, 2024]
- Up 137%, Should This Red-Hot Artificial Intelligence Cryptocurrency Be in Your Portfolio for 2025? - The Motley Fool - December 8th, 2024 [December 8th, 2024]
- Cryptocurrency's Global Adoption Likened To Early Internet Era - Binance - December 8th, 2024 [December 8th, 2024]
- The rise of digital currencies in Southeast Asia: How cryptocurrency exchanges are driving adoption - Nation Thailand - December 8th, 2024 [December 8th, 2024]
- Best Crypto To Invest In 2025 | Top 10 Cryptocurrency Coins To Invest For the Bull Run - Techpoint Africa - December 8th, 2024 [December 8th, 2024]
- Hawk Tuahs Back, This Time With A Cryptocurrency Scam - Riverfront Times - December 8th, 2024 [December 8th, 2024]
- Editorial by The (Oneonta, N.Y.) Daily Star: Understanding the complex world of cryptocurrency is vital - New Castle News - December 8th, 2024 [December 8th, 2024]
- Justin Sun eats $6.2 million Comedian banana artwork in bold fusion of art and cryptocurrency says Its - The Times of India - November 30th, 2024 [November 30th, 2024]
- In Our Opinion: Understanding the complex world of cryptocurrency is vital - cnhinews.com - November 30th, 2024 [November 30th, 2024]
- Best Cryptocurrency Investments of 2024 | Top 4 Coins to Hold Now - TCU - November 30th, 2024 [November 30th, 2024]
- Cryptocurrency Investment Strategies: Rational Asset Allocation, Robust Leverage, and Effective Trading Strategies - ChainCatcher - November 30th, 2024 [November 30th, 2024]
- Cryptocurrency: 3 Coins Poised To End 2024 With 200% Gains - Watcher Guru - November 30th, 2024 [November 30th, 2024]
- Stop Thinking Backwards: The True Power of Cryptocurrency for CRYPTOCAP:TOTAL2 by MoNi_MoN - TradingView - November 30th, 2024 [November 30th, 2024]
- Why Cryptocurrency Is Back in the Art Market - Artsy - November 28th, 2024 [November 28th, 2024]
- Behind the Future of Finance: How Cryptocurrency Ownership Shapes the Market - Brave New Coin Insights - November 28th, 2024 [November 28th, 2024]
- Is Trump Media Going to Acquire a Cryptocurrency Trading Business? Here's What That Could Mean for the Stock. - The Motley Fool - November 28th, 2024 [November 28th, 2024]
- Is Trump Media Going to Acquire a Cryptocurrency Trading Business? Here's What That Could Mean for the Stock. - Yahoo Finance - November 28th, 2024 [November 28th, 2024]
- Best Crypto To Invest | Top 10 Cryptocurrency Coins To Buy For the Crypto Bull Run - Brave New Coin Insights - November 28th, 2024 [November 28th, 2024]
- Cryptocurrency is Basketcase Asset With no Intrinsic Value, Wealth Experts Argue - ValueWalk - November 28th, 2024 [November 28th, 2024]
- How cryptocurrency is entering mainstream giving in Hawaii schools - The Business Journals - November 28th, 2024 [November 28th, 2024]
- Cryptocurrency: 3 Coins To Buy Before Bitcoin Reclaims $99K Mark - Watcher Guru - November 28th, 2024 [November 28th, 2024]
- Trump Pushing CFTC To Oversee the Cryptocurrency Industry - Watcher Guru - November 28th, 2024 [November 28th, 2024]
- Cryptocurrency Market Surges on Trump Presidency: Here Are 5 Worth Buying Now - The Motley Fool - November 28th, 2024 [November 28th, 2024]
- Cryptocurrency: Top 3 Coins That May Surge 200% In December 2024 - Watcher Guru - November 28th, 2024 [November 28th, 2024]
- Cryptocurrency Scammers Are Trying to Exploit Typos in Your Digital Wallet - The Debrief - November 28th, 2024 [November 28th, 2024]
- Could Vancouver's public funds be used for investments in cryptocurrency? - CTV News Vancouver - November 28th, 2024 [November 28th, 2024]
- Someone wants you to pay them in cryptocurrency? Its a SCAM - Prescott eNews - November 28th, 2024 [November 28th, 2024]
- N.S. man reached on social media, out more than $150K USD in cryptocurrency scam - Global News Toronto - November 28th, 2024 [November 28th, 2024]
- Hong Kong Plans Tax Exemption on Cryptocurrency Gains for Billionaires - Watcher Guru - November 28th, 2024 [November 28th, 2024]
- The wave of AI is sweeping the cryptocurrency market, summarizing the leading AI+GameFi projects - ChainCatcher - November 28th, 2024 [November 28th, 2024]
- Ether: Why the second largest cryptocurrency can't keep up with bitcoin - Axios - November 26th, 2024 [November 26th, 2024]
- Jim Cramer defends cryptocurrency support: 'National debt worries are never going to go away' - CNBC - November 26th, 2024 [November 26th, 2024]
- Bitcoin Endgame Is Here: The First Chart Will Shock You (Cryptocurrency:BTC-USD) - Seeking Alpha - November 26th, 2024 [November 26th, 2024]
- With bitcoin ticking closer to $100,000, heres a refresher on cryptocurrency - Los Angeles Times - November 26th, 2024 [November 26th, 2024]
- Dogecoin is a joke. Let's talk about the cryptocurrency's rally fueled by Elon Musk and Donald Trump - Quartz - November 26th, 2024 [November 26th, 2024]
- Best Cryptocurrency To Buy This Week | Prepare for the 2024 Bull Run - Brave New Coin Insights - November 26th, 2024 [November 26th, 2024]
- Energy Plug Technologies Introduces Energy Tokenization with Cryptocurrency-Integrated Energy-as-a-Service (EaaS) - Yahoo Finance - November 26th, 2024 [November 26th, 2024]
- Best Crypto To Invest Now | Top 10 Cryptocurrency To Buy For the Bull Run - Brave New Coin Insights - November 26th, 2024 [November 26th, 2024]
- Cryptocurrency: 3 Coins Dips To Buy Before Trump Swears Presidency - Watcher Guru - November 26th, 2024 [November 26th, 2024]
- The accelerationist bubble spawned by cryptocurrency - ChainCatcher - November 26th, 2024 [November 26th, 2024]
- Kumip Emerges as one of the Top Cryptocurrency Exchanges Offering Innovation, Speed, and Security - StreetInsider.com - November 26th, 2024 [November 26th, 2024]
- Professor Tonya M. Evans speaks on cryptocurrency, wealth and the high stakes of the next presidential agenda and Project 2025 - Afro American... - November 26th, 2024 [November 26th, 2024]
- Bitcoin values hit record highs. Should you invest in cryptocurrency? Here's how it works - USA TODAY - November 24th, 2024 [November 24th, 2024]
- Ready to Invest in Cryptocurrency? 3 Tips for Mitigating Risk and Building a Successful Portfolio - The Motley Fool - November 24th, 2024 [November 24th, 2024]
- Bitcoin, Ethereum and Cryptocurrency: Ultimate Beginner's Guide to Mining - MSN - November 24th, 2024 [November 24th, 2024]
- Local leaders respond to signs of cryptocurrency expansion - The Glen Rose Reporter - November 24th, 2024 [November 24th, 2024]
- Hong Kong Zhong An Bank has launched cryptocurrency trading services today, allowing users to buy and sell Bitcoin and Ethereum using Hong Kong... - November 24th, 2024 [November 24th, 2024]