Hack in the DeFi world: analysis of the report on Web3 in February 2024

Related

Digital Reserve成为2026香港Web3嘉年华二级展位赞助商

Digital Reserve已确认加入2026香港Web3嘉年华,将作为二级展位赞助商为大会提供支持 Digital Reserve 是一家澳洲持牌的加密货币出入金与交易平台,深耕行业多年、穿越多轮牛熊周期,凭借对华人市场的深刻理解、完善的银行通道与高质量服务,持续为专业客户提供稳定、顺畅的数字资产流动解决方案。更多信息: https://digitalreserve.net/ 香港Web3嘉年华是由万向区块链实验室与HashKey Group联合推出的Web3活动品牌,由W3ME承办,自2023年起于每年4月在香港会议展览中心举办,聚焦行业热点话题与政策趋势,是亚洲规模最大、最受关注的Web3行业盛会之一。 2026香港Web3嘉年华将于4月20日-23日在香港会议展览中心盛大举行。自2023年首届举办以来,香港Web3嘉年华已飞速成长为全球最具影响力的加密峰会之一,为全球东西方交流构建了一个高规格、高质量、高纵深的平台。过往三届盛会累计吸引超10万名现场参会者,汇聚超350个前沿项目参加,邀请超1200位演讲嘉宾分享,并衍生超400场周边活动,成功构建了一个以大会为核心、辐射全港的活力生态圈。 目前,香港特别行政区财政司司长陈茂波,香港证监会中介机构部执行董事叶志衡,万向区块链董事长、Hashkey Group董事长兼CEO肖风,香港特别行政区立法会议员(科技创新界)邱达根,Solana Foundation总裁Lily Liu,MatrixPort创始合伙人及首席商务官Cynthia Wu,Animoca...

卓锐证券成为2026香港Web3嘉年华白金赞助商

Hong Kong, 5th March 2026, 卓锐证券已确认加入2026香港Web3嘉年华,将作为白金赞助商为大会提供支持。 卓锐证券(香港)有限公司(中央编号:BRE865)是香港证监会认可持牌法团,持有第1、2、4、5、9类牌照。作为全港增速TOP1的持牌虚拟资产券商*,卓锐证券专注构建合规安全的交易生态,实现传统资产与加密货币的无缝流动。通过自主研发的一站式交易平台“ZR”,投资者只需一个账户,即可借助AI赋能的机构级视野,灵活配置股票、ETF及加密货币。了解更多:https://www.zr.hk/ 香港Web3嘉年华是由万向区块链实验室与HashKey Group联合推出的Web3活动品牌,由W3ME承办,自2023年起于每年4月在香港会议展览中心举办,聚焦行业热点话题与政策趋势,是亚洲规模最大、最受关注的Web3行业盛会之一。 2026香港Web3嘉年华将于4月20日-23日在香港会议展览中心盛大举行。自2023年首届举办以来,香港Web3嘉年华已飞速成长为全球最具影响力的加密峰会之一,为全球东西方交流构建了一个高规格、高质量、高纵深的平台。过往三届盛会累计吸引超10万名现场参会者,汇聚超350个前沿项目参加,邀请超1200位演讲嘉宾分享,并衍生超400场周边活动,成功构建了一个以大会为核心、辐射全港的活力生态圈。 目前,香港特别行政区财政司司长陈茂波,香港证监会中介机构部执行董事叶志衡,万向区块链董事长、Hashkey Group董事长兼CEO肖风,香港特别行政区立法会议员(科技创新界)邱达根,Solana Foundation总裁Lily Liu,MatrixPort创始合伙人及首席商务官Cynthia...

Sui stablecoin USDsui debuts as new backbone for on-chain payments and DeFi

Backed by institutional-grade infrastructure and strong demand for digital...

Share

MarketWaves has recently analyzed reports on hacks in the DeFi and Web3 world, specifically examining the De.Fi REKT report.

This highlights the losses exceeding 82 million dollars recorded in the month of February 2024. DeFi is expanding rapidly, but with such growth also come threats and vulnerabilities that impact the entire ecosystem. 

Let’s see below all the details. 

Emerging Hacks in DeFi and Web3: the complete report 

As anticipated, with the imminent end of February 2024, critical insights emerge outlining the predominant trends in security in DeFi, highlighting concerns and ongoing recovery efforts. 

The analysis of data from the De.Fi REKT database has allowed to formulate useful suggestions aimed at supporting investors in devising more effective strategies to safeguard their assets within this space.

During the month in question, the DeFi sector experienced a significant increase in security-related incidents. A total of 82,287,101 dollars was lost on various platforms and chains due to various exploits.

However, efforts to mitigate these losses have led to the recovery of $1,325,932, highlighting the ongoing battle between security mechanisms and hacks. 

February saw several notable cases, with PlayDapp, Fixed Float, and Jeffrey Zirlin among the most affected. 

PlayDapp has suffered the biggest loss, amounting to $32,350,000 on the Ethereum chain, mainly concentrated in the games/metaverses category. Fixed Float followed with a loss of $26,130,157 on Bitcoin, highlighting the vulnerabilities of exchange platforms.

Jeffrey Zirlin’s $9.7 million loss on Ronin, on the other hand, highlighted the diversified nature of goals within the DeFi ecosystem.

Challenges and tips for security

The month of February saw significant issues arise in access controls, with significant losses amounting to $72,823,472 in four separate cases. 

This underlines the persistent vulnerability in permission settings and access management within DeFi platforms. 

The importance of adopting strict access control policies is emphasized by these incidents. Specifically highlighting the need to ensure that only authorized users can perform critical operations.

At the same time, exploits that exploit vulnerabilities in smart contracts or platform architectures have caused losses of $2,202,006 in four separate cases. 

These episodes underline the importance of thorough control and testing of smart contracts before deployment. In order to reduce the risk of exploits and protect users’ resources.

Furthermore, phishing attacks, which aim to obtain sensitive information through deceiving users, have caused significant losses of $5,499,384 in four cases, completing the Top 3 of incidents. 

These attacks underline the need for user education and awareness programs. 

In particular, highlighting the importance of informing users about the tactics used by attackers and promoting the verification of the authenticity of communications and websites before sharing personal or financial information.

Vulnerabilities: analysis of DeFi targets in February 2024

The category of games/metaverses (web3) emerges as a significant target, with substantial losses highlighted in this period. 

This trend reflects the growing interest in NFTs and gaming platforms within DeFi, attracting both users and malicious individuals.

The exploits in this category have caused losses exceeding 32.6 million dollars, with PlayDapp significantly contributing to this figure.

The DEX confirms itself as the second most popular exploit target, maintaining its attractiveness thanks to the significant liquidity that facilitates users’ transactions in the DeFi space. 

Once again, this type of project has been targeted, with FixedFloat being the main victim during this month.

In third place are the loan and mortgage platforms. These, along with tokens, have recorded significant activity, highlighting their critical role in the DeFi ecosystem and their attractiveness to attackers. 

Despite losses exceeding 1.3 million dollars, the recovery of this amount, even if it represents only a fraction of the total losses, highlights the effectiveness of recovery efforts of assets and underscores the importance of rapid response mechanisms. 

Platforms and communities are called to pursue the development and continuous support of tools and strategies aimed at mitigating post-exploitation losses.