Velodrome Finance Hack
What happened
Velodrome DEX on Optimism chain was exploited due to a DNS attack, resulting in a loss of 42,000 USD.
Velodrome, a decentralized trading protocol on the Optimism chain, experienced a DNS attack on November 29, 2023. The frontend was compromised, and users were urged not to interact with the platform. The Velodrome team regained control of their domain after a social engineering attack on their provider.
However, the provider was exploited again, and the frontend was compromised a second time. The domain was eventually restored and locked at the TLD level. The stolen funds, totaling 42,000 USD, were distributed among multiple addresses and deposited into KuCoin.
Attacker Addresses:
https://optimistic.etherscan.io/address/0xf64fCEdF…231443
https://optimistic.etherscan.io/address/0x02BA13f3…C4ae78
KuCoin Deposit Transactions:
https://etherscan.io/tx/0xf51eac8b…ca3e64
https://etherscan.io/tx/0x8ac2654b…dc509e
https://optimistic.etherscan.io/tx/0x607d00b8…0c670e
Case & protocol details
Evidence & learning
Sources and on-chain records
- report Report twitter.com
- analysis Web Archive archive.ph
Practice this exploit pattern safely
Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.