CrossCurve DeFi Protocol Loses $3M in Smart Contract Exploit
Cross-chain bridge CrossCurve suffered a $3 million exploit across multiple networks due to a vulnerability in its smart contracts. The protocol warned users to suspend all interactions as investigations continue.
Attackers exploited a flaw in the ReceiverAxelar contract, allowing spoofed cross-chain messages to bypass gateway validation. This led to unauthorized token unlocks on Porta, with 10 addresses identified as receiving wrongfully taken funds.
The incident raises fresh concerns about security in cross-chain infrastructure, particularly as DeFi protocols continue to expand multi-chain operations. CrossCurve has appealed for cooperation in recovering the misdirected assets.