Cover Protocol Hack
Incident Overview
Exploit in Blacksmith contract leads to theft of $4.4 million in $COVER tokens.
The attacker exploited the Blacksmith contract by depositing BPT tokens, and then withdrawing them along with a large amount of $COVER tokens. The attacker continued to mint and sell $COVER tokens while the vulnerability was still present. In total, the attacker stole around $4.4 million of user funds.
Grap Finance Deployer also exploited the same vulnerability, minting a large amount of $COVER tokens and selling them on 1inch.exchange. They then burned the minted tokens and transferred the ETH they had gained to the deployer account.
Exploiter 1's address:
https://etherscan.io/address/0x85abf036…a52b95#tokentxns
Transactions involved in the exploit:
https://etherscan.io/tx/0xd721b0ef…8f7a50
https://etherscan.io/tx/0xadf27f5d…a4373b
https://etherscan.io/tx/0x66128a16…754beb
https://etherscan.io/tx/0xf81fb72e…fa79da
https://etherscan.io/tx/0xca135d1c…5b035f
https://etherscan.io/tx/0xaf94d9b5…866a6b
https://etherscan.io/tx/0x01b35178…caa959
https://etherscan.io/tx/0xe6c068ca…8cb5d2
https://etherscan.io/tx/0x23cb9bdf…4a3051
https://etherscan.io/tx/0xc2fd5094…3f982e
Incident Report
Protocol Information
What the Attacker Needed to Succeed
Understanding the prerequisites for this type of attack helps auditors identify protocols that are most at risk and helps developers build better defenses.
What Auditors Should Check
If you're auditing a protocol with similar architecture to Cover Protocol, these are the critical security checks that could have prevented this incident (December 2020).
- Verify all logic paths related to Incentives Function Mistake / Other are guarded by proper access controls and input validation
- Review privileged functions (owner, admin, governance) for potential abuse vectors - centralization risks should be documented and bounded with timelocks or multi-sigs
Master these auditing techniques with hands-on labs and real exploit scenarios in the Smart Contract Hacking course.
Free TrialFunds Recovery
Recovered
$3.2M
Net Loss
6204000
Security Audit History
- Audit Report 1 Report
Proof-of-Concept Exploits
On-Chain Evidence & References
Sources & References
- 01
-
02
Reference https://rekt.news/cover-rekt/
- 03
Learn to Prevent the Next Cover Protocol
The Cover Protocol hack is one of many attacks that skilled auditors are trained to detect before deployment. Master real exploit patterns and defense techniques with hands-on Web3 security training.