Bug-induced ‘discrepancies’ found in Compound Finance token distribution update

Even as billions of dollars were poured into the DeFi space over the past year, the industry continues to be plagued with regular exploits and hacks. Most recently, one of DeFi’s biggest lending and borrowing protocols, Compound Finance, fell victim to a bug that could potentially cost the company millions of dollars.

The interest rate protocol recently introduced an update that led “some users to receive far too much COMP” tokens in unearned rewards. Compound Labs, the team behind the Compound protocol, tweeted about the incident earlier, stating,

“Unusual activity has been reported regarding the distribution of COMP following the execution of Proposal 062. No supplied/borrowed funds are at risk — Compound Labs and members of the community are investigating discrepancies in the COMP distribution.”

Later, the protocol’s founder, Robert Leshner, tweeted out an explanation stating that the newly introduced Proposal 62 which updated the Comptroller contract, tasked with distributing COMP to users of the protocol, contained a bug that caused this issue.

The update’s purpose was to split the COMP distribution to borrowers and liquidity suppliers based on governance-set ratios rather than the 50/50 model that was used previously, along with fixing minor bugs. However, as the upgraded contract contained a bug, some users were able to claim around 168,000 COMP tokens already, which were worth almost $50 million at press time.

Leshner further revealed that “the impact is bounded, at worst, 280,000 COMP tokens,” which was worth about $80 million at the time of writing. While there are still thousands of tokens left in the Comptroller, the protocol’s decentralized nature prevents the distribution contract from being changed without governance interaction. He said,

“There are no admin controls or community tools to disable the COMP distribution; any changes to the protocol require a 7-day governance process to make their way into production. Labs, and members of the community, are evaluating potential steps to patch the COMP distribution.”

DeFi Llama developer “0xngmi,” who delved deeper into the issue, reported on Twitter that most of the faulty rewards were on the borrower side, with one user taking their 10 million in COMP and dumping them on OKEX and Huobi for stablecoins.

He also stated that the bug only allowed people who had borrowed from the protocol earlier to claim these rewards, while those greedy enough to try borrowing now to earn these rewards wouldn’t be successful.

At the time of writing, COMP had lost over 11% of its valuation over the past day and was priced at $300, presumably due to fear spread by the bug.

DeFi protocols are vulnerable to bugs because of hackers having the ability to leverage through even minor bugs in the codebase. Last month, one of the biggest DeFi hacks took place when a white hat hacker stole over $600 million from Poly Network. While this protocol was lucky enough to be returned their funds, pNetwork lost $12.7 million last week in an exploit that cost them 277 Bitcoins.

Where to Invest?

Subscribe to our newsletter

Anjali is a full-time journalist at AMBCrypto. With a strong background in humanities, her personal inclination lies towards the political and socio-economic aspects of the crypto-sphere

Note: This article have been indexed to our site. We do not claim ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
HSG ready to operate safely under new normal thumbnail

HSG ready to operate safely under new normal

01/10/2021 08:00 3 01-10-2021 08:00:00+07:00 HSG sẵn sàng hoạt động an toàn trong điều kiện bình thường mới Sự bùng phát mạnh của làn sóng Covid-19 lần thứ 4 kéo dài từ cuối tháng 4/2021 đến nay với nhiều diễn biến phức tạp đã gây ra nhiều tác động đến hoạt động sản xuất kinh…
Read More
Indigo suffers ‘cyber incident,’ knocking it offline thumbnail

Indigo suffers ‘cyber incident,’ knocking it offline

Canada’s biggest book chain has suffered what it calls a cyber incident that knocked it offline on Wednesday. “We experienced a cybersecurity incident earlier today and are working with third-party experts to investigate and resolve the situation,” a notice on the Indigo website said. “Our hope is to have systems back online as soon as
Read More
Recomendaciones que debería tener en cuenta para comprar carro usado thumbnail

Recomendaciones que debería tener en cuenta para comprar carro usado

Más de un millón de transacciones con carros se registraron en el país en el último año.Archivo particular POR: febrero 12 de 2022 - 06:21 p. m. 2022-02-12 2022-02-12 Actualmente, cerca del 80 % de las compras de carros usados son realizadas a través de personas naturales con poco o nulo conocimiento en mecánica automotriz y…
Read More
Jerry Chan talks about Frobots and COPA v Wright on CoinGeek Weekly Livestream thumbnail

Jerry Chan talks about Frobots and COPA v Wright on CoinGeek Weekly Livestream

On this week’s episode of the CoinGeek Weekly Livestream, Kurt Wuckert Jr. talked to Frobots Founder Jerry Chan about the latest developments with his game and his thoughts on the upcoming COPA v Wright trial.An important update on FrobotsChan is the founder of Frobots, a battle-bots-style game that utilizes the BSV blockchain. He tells Wuckert he silently released it
Read More
Bitmain Could Stop Selling to China thumbnail

Bitmain Could Stop Selling to China

By Mark Hunter1 day agoWed Sep 29 2021 12:47:02 Reading Time: 2 minutesBitmain could stop selling its equipment in China following the country’s crackdown Bitmain has recently overcome a civil war and seemed to be in a better position The company could also stop manufacturing equipment in China Bitmain could stop selling equipment in China…
Read More
Index Of News
Total
0
Share