A million-dollar EOS gambling dApp suffered a major blow.
Hackers took 40,000 EOS ($200,000) from the operating wallet of EOSBet by exploiting vulnerabilities in its smart contracts.
It appears hackers were able to call EOSBet’s ‘transfer’ function externally, using a fake hash.
Scammers attempted to trick users into believing that EOSBet was reimbursing customers for any funds stolen.
Source: https://thenextweb.com/news/eos-gambling-app-hacked
TPRM report: https://www.rankiteo.com/company/eos
"id": "eos0130922",
"linkid": "eos",
"type": "Ransomware",
"date": "6/2017",
"severity": "100",
"impact": "6",
"explanation": "Attack threatening the economy of a geographical region"
{'affected_entities': [{'industry': 'Gambling, Blockchain',
'name': 'EOSBet',
'type': 'Company'}],
'attack_vector': 'Smart Contract Vulnerability',
'description': "Hackers exploited vulnerabilities in EOSBet's smart contracts "
'to steal 40,000 EOS ($200,000) from the operating wallet.',
'impact': {'brand_reputation_impact': 'High', 'financial_loss': '$200,000'},
'motivation': 'Financial Gain',
'post_incident_analysis': {'root_causes': 'Vulnerabilities in smart '
'contracts'},
'references': [{'source': 'Various News Articles'}],
'threat_actor': 'Unknown Hackers',
'title': 'EOSBet Gambling dApp Hack',
'type': 'Cryptocurrency Theft',
'vulnerability_exploited': "External call to 'transfer' function using a fake "
'hash'}