Our claim contract is live for LP claims, this one will have no expiration date. We are going to ask you to use Arbiscan, and follow the steps below:
1. Open Link to Contract: https://t.co/gYNZTnVZ18
2. You are going to "connect your wallet" and then go to the section where it says claim, click "write" and after confirming the transaction the USDC will be sent to your wallet from the contract. If you have any issues, please do not hesitate to reach out
If you were a holder of CONE, xCONE, or were vesting xCONE, please claim your USDC @ https://t.co/8DQSqeMU0R
There is a 30 day claim window, and after it is complete any leftover funds will go towards reimbursing LP's
https://t.co/oDrCckcJNL
Please find balances posted above. There will be a 7 days dispute period if the balance is wrong or you don’t see your wallet. Deadline is next Sunday, so please DM us if you would like to open a dispute.
This is an immediate post-mortem of the hack that occurred this morning. While the teams determines if there is a path to remediation now that the deployer has been compromised, we are also working with relevant investigative authorities. The protocol will be entirely halted for the foreseeable future, until we can determine if, when, and how LP's can be made whole. We have 8 ETH in our treasury, along with any USDC remaining in the CONE-USDC LP.
https://t.co/L8nmVHdYZx
We regret to inform you that our protocol has suffered a severe security breach due to a targeted social engineering attack on one of our team members holding the deployer wallet. This unfortunate incident led to unauthorized access and subsequent exploitation of our protocol.
What Happened?
- The Attack Vector: The exploit was initiated through a social engineering attack compromising the deployer wallet.
- The Exploit: Despite having audited vaults, our protocol was vulnerable as these vaults were upgradable. The attacker leveraged this feature to upgrade the vaults, mint new LP tokens, and subsequently drain the vaults of their assets.
Immediate Actions Taken:
1. Security Measures: We have initiated a thorough investigation and have contacted some security researchers, to analyze the breach and prevent future damage and identify the exploiters.
2. Communication: We are committed to transparency and will release a detailed post-mortem report soon. This report will provide in-depth insights into the incident and our plan to address the vulnerabilities.
3. Community Support: We understand the gravity of the situation and its impact on our users. We are exploring all possible options to mitigate the losses and safeguard our community's interests.
We sincerely apologize for the inconvenience and distress this incident has caused. Our team is fully committed to resolving this issue and restoring the integrity of the Concentric protocol. We appreciate your support and understanding during this difficult time.
The Concentric Team
@PeckShieldAlert@ConcentricFi Users need to revoke token approval from vaults on arbitrum:
0x39c1bc90ba23d4d95eafa9335ceb83e0826e7ea7
0x0f9da8eaf006079d772955644bac36f17934b36e
0x319e70fc896a138619617b7d06f0dfcd2e554808
0x6277f4f9f55bfc331bcbe8db2f221ae186489915
0x7f8863c2086fde3d199f5dd27d555574d1bb7228
We regret to inform you that our protocol has suffered a severe security breach due to a targeted social engineering attack on one of our team members holding the deployer wallet. This unfortunate incident led to unauthorized access and subsequent exploitation of our protocol.
What Happened?
- The Attack Vector: The exploit was initiated through a social engineering attack compromising the deployer wallet.
- The Exploit: Despite having audited vaults, our protocol was vulnerable as these vaults were upgradable. The attacker leveraged this feature to upgrade the vaults, mint new LP tokens, and subsequently drain the vaults of their assets.
Immediate Actions Taken:
1. Security Measures: We have initiated a thorough investigation and have contacted some security researchers, to analyze the breach and prevent future damage and identify the exploiters.
2. Communication: We are committed to transparency and will release a detailed post-mortem report soon. This report will provide in-depth insights into the incident and our plan to address the vulnerabilities.
3. Community Support: We understand the gravity of the situation and its impact on our users. We are exploring all possible options to mitigate the losses and safeguard our community's interests.
We sincerely apologize for the inconvenience and distress this incident has caused. Our team is fully committed to resolving this issue and restoring the integrity of the Concentric protocol. We appreciate your support and understanding during this difficult time.
The Concentric Team