Belt Finance Loses $6.3 Million

Belt Finance, a Binance Smart Chain-based decentralized lending protocol, lost $6.3 million in a flash loan attack last week. The attackers took advantage of a series of inefficiencies in the smart contract to manipulate the price of the set and obtain profit from a series of transactions. This is just the last of a series of attacks that seem to be pointing to Binance Chain protocols due to their vulnerabilities.

Belt Finance Loses $6.3 Million in Flash Loan Attack

Belt Finance, a borrowing and loaning protocol that operates in the Binance Smart Chain suffered a flash attack last week that caused losses of over six million dollars. The attack, that used Pancakeswap as a tool for executing its strategy, used a series of operations to manipulate its belt/BUSD pool, a stable token in the protocol, and profit due to this inefficiency. The Belt Finance team declared in a post mortem report that the attackers managed to exploit this bug eight times before being detected.

The team of Belt Finance immediately suspended withdrawals and deposits to the affected pools and claimed the attack vector that was used for the attack has been patched after the attack. In addition to this, they are studying how to reimburse the users affected by this event. The team declared:

We are currently working to create a fair and comprehensive compensation plan for those affected with a snapshot of the accounts that were affected by this attack. We will release a compensation plan within the next 48 hours, a time frame necessary for us to get and go through all the logs to see exactly which users need to get compensated.

The team also denied allegations and rumors surrounding the sale of tokens by part of the members of Belt Finance. While some point in the direction of a possible rug pull, the similarity with other attackers can lead to believe this is yet another flash loan attack directed to poorly secured Binance Smart Chain (BSC) protocols.

