The
@KiloEx_perp protocol was hacked today with a loss of ~7.5m ($3.3m in base, $3.1m in opBNB, $1m in BSC).
The protocol is now paused! Our initial analysis on one exploit tx indicates a price oracle issue. And the hacker exploits it to create a new position with initial given ETHUSD price of 100 and then immediately close the position with *INFLATED* ETHUSD price of 10000, netting the $3.12m profit in one single tx.
Here is an example tx:
https://t.co/ShnXlpds6t
The stolen funds are parked in the following account (being bridged now):
0x00faC92881556A90FdB19eAe9F23640B95B4bcBd