Top

Suspected Malicious Activity Drains AnySwap Tokens via Multichain Executor

Web3 & Enterprise·July 13, 2023, 12:06 AM

According to an on-chain sleuth known as Spreek, a person is using the Multichain Executor to drain tokens associated with the AnySwap bridging protocol.

Multichain is a cross-chain routing network, established and maintained by a Chinese developer team. It supports in excess of 25 blockchains and more than 1,100 tokens.

Photo by Marek Piwnicki on Unsplash

 

$100 million outflow

This revelation comes after abnormal outflows of over $100 million from Multichain bridges on July 7, which were flagged by the Multichain team. Spreek’s report via Twitter on July 10 states that the Multichain Executor address has been draining anyToken addresses across multiple chains and transferring them to a new externally owned account (EOA).

Evidence provided in the report includes an Ethereum transaction, 0x53ede4462d90978b992b0a88727de19afe4e96f0374aa1a221b8ff65fda5a6fe, which called the “anySwapFeeTo” method on the Multichain Router: V4 contract. This transaction resulted in approximately $15,275.90 worth of anyDAI being minted on Ethereum, sent to the Multichain Executor, burned, and exchanged for the underlying DAI backing the asset.

The funds from these transactions were sent to the following address:0x1eed63efba5f81d95bfe37d82c8e736b974f477b. Similarly, on the BNB Smart Chain (BSC), the Multichain Executor used the anySwapFeeTo function to convert $208,997 worth of anyUSDC into Binance-pegged USDC and sent them to the same address. Additionally, 50.80 anyBTC, equivalent to $39,251.43 at the time, was converted into Binance-pegged Bitcoin and sent to the address.

In total, approximately $263,524.33 worth of tokens were sent to this address through the anySwapFeeTo method. Spreek suggests that this behavior could be part of the protocol’s normal functioning. However, a different account engaged in similar activity the day before and ultimately sold the drained tokens, indicating malicious intent.

 

Potential exploit

Spreek theorizes that the attacker may be exploiting the anySwapFeeTo function by setting fees to an arbitrarily large amount, allowing them to drain users’ funds. The function apparently permits setting any value, enabling the address to choose the total value of the token held in that anyToken.

The Multichain incident has puzzled blockchain analysts, as it remains unclear whether it resulted from an exploit or if it was simply large token-holders moving their funds between networks. The mystery began on July 7 when over $100 million worth of tokens were withdrawn from the Ethereum side of Multichain’s bridges and transferred to wallet addresses with no prior transactions. This represented the majority of funds held on each bridge.

 

Hack or rug pull

The Multichain team labeled these withdrawals as “abnormal” and advised users to stop using the protocol. However, they have not disclosed the source or nature of the anomaly. In response to the incident, stablecoin issuers Circle and Tether froze some of the addresses involved in the suspicious transactions. Chainanalysis, a blockchain analytics firm, has commented that the incident appears more like a hack or rug pull rather than a migration.

Adding to the complexity, the Multichain team has reported that their CEO is missing, and they have shut down certain bridges due to losing access to some of the network’s multi-party computation network servers. There have been various concerns relative to Multichain since May. The situation continues to evolve, with ongoing investigations and efforts to mitigate any potential damage caused by the suspected malicious activity.

More to Read
View All
Web3 & Enterprise·

Dec 22, 2023

WEMIX Foundation launches omnichain wallet

WEMIX Foundation launches omnichain walletThe WEMIX Foundation, a subsidiary of South Korean blockchain gaming publisher Wemade, has officially launched the una Wallet, according to an official announcement on the company’s website on Thursday (KST). una Wallet is a core application of the Unbound Networking & Accelerating Growth Initiative, or “unagi,” the company’s newest innovative omnichain network and interoperable Web3 gaming platform.Photo by Shubham’s Web3 on UnsplashEasy asset managementThe wallet service offers a solution for users to conveniently earn, manage and trade their digital assets like NFTs and tokens on multiple blockchains — such as WEMIX3.0, Ethereum and Polygon — in one borderless place. The WEMIX Foundation said it would add more supported chains in the future.Effortless access and robust securityIn particular, una Wallet’s convenience and security stem from an easy login procedure utilizing connections to social media accounts and multi-party computation (MPC) technology. MPC is a cryptographic security measure that enables multiple parties to assess a computation without revealing their private information or data. This technology splits private keys, or mnemonic phrases, and allows users to easily recover their wallets through social login even if they lose their keys.The service also provides transaction route recommendations, allowing users to move or trade assets across chains with minimal costs or signature procedures. Subsequently, they can also view their transaction history on each chain and the movement of assets between different chains.WEMIX plans to add various features to make authentication and asset-tracking processes even easier. una Wallet is currently available on Google Play and the Apple App Store.

news
Policy & Regulation·

Sep 12, 2025

China funds research on stablecoin risks to financial system

China’s leading science foundation has initiated a research program to examine the effects of stablecoins, reflecting concerns that such digital currencies could pose a risk to the nation’s financial system and its fiat currency. According to the South China Morning Post, the National Natural Science Foundation of China (NSFC) is now offering grants for studies focused on stablecoins and the creation of cross-border monitoring frameworks. The foundation expressed that the unmonitored circulation of private stablecoins, particularly those pegged to the U.S. dollar, could weaken capital controls and present a potential challenge to the yuan. This initiative emerges as governments around the world, from the U.S. to regional financial centers, are actively developing rules for the digital asset sector.Photo by  Christian Lue on UnsplashStrategic research and internal debateThe NSFC will fund the projects with grants valued between 200,000 and 300,000 yuan ($28,042 to $42,063). Researchers are expected to complete their work within a year and deliver policy recommendations on how China can manage the challenges posed by global stablecoins and contribute to digital finance governance. The deadline for applications is Oct. 9. This research program is set against a backdrop of internal discussion in China regarding the possible launch of a yuan-backed stablecoin. While some economists support the idea of boosting the yuan's international profile, Bloomberg noted that former central bank governor Zhou Xiaochuan has advised caution. He recently said the high efficiency of China's current payment systems and warned that financial stability could be threatened by speculation in the stablecoin market. Analysts believe any state-sanctioned yuan stablecoin would likely be confined to offshore markets and tied to the offshore CNH. Global regulatory landscapeChina’s examination of stablecoins is part of a broader global trend of increased regulatory focus on the asset class. In Hong Kong, a new ordinance took effect on Aug. 1, creating a mandatory licensing system for stablecoin issuers under the oversight of the Hong Kong Monetary Authority. Other Asian nations are also taking action. South Korea’s government is reportedly exploring a model for a won-pegged stablecoin involving a consortium of banks and non-bank entities. Separately, Cointelegraph reported that Kyrgyzstan has introduced legislation outlining a regulatory framework for such assets. Developments are also accelerating in the U.S., where the Guiding and Establishing National Innovation for U.S. Stablecoins (GENIUS) Act was signed into law, creating a federal structure for stablecoin oversight. On a commercial level, a Minnesota-based credit union, St. Cloud Financial, intends to introduce its own stablecoin later this year, a move highlighted by Cointelegraph. This token, named Cloud Dollar (CLDUSD), is designed to integrate with the credit union's banking system to facilitate faster and cheaper transactions for its members within a regulated environment.

news
Policy & Regulation·

Oct 06, 2023

Hong Kong Authorities Unite to Form Crypto-Centric Taskforce

Hong Kong Authorities Unite to Form Crypto-Centric TaskforceAuthorities in Hong Kong are taking action to address recent mounting concerns surrounding illicit cryptocurrency activities, particularly in light of the recent JPEX scandal. The Hong Kong Police Force and the Securities and Futures Commission (SFC) have come together to establish a specialized working group dedicated to closely monitoring and countering suspicious activities connected to virtual asset trading platforms (VATPs).In a statement published by Hong Kong’s Securities and Futures Commission (SFC) on Wednesday (local time), the agency set out details of a collaborative task force which has been formed in the wake of a high-level meeting held on September 28.The collaboration draws on input from the SFC as well as a number of law enforcement divisions within the Chinese autonomous territory, including the Commercial Crime Bureau, Cyber Security and Technology Crime Bureau, and Financial Intelligence and Investigations Bureau.Photo by Cheung Yin on UnsplashGreater coordination and information sharingThe primary objectives of this alliance are to enhance coordination, foster information sharing, assess risks tied to VATPs, and, above all, safeguard the interests of the Hong Kong public.Christopher Wilson, Director of Enforcement at the SFC, underscored the regulator’s commitment to allocating resources to combat problematic VATPs and safeguard investor interests. Eve Chung, Assistant Commissioner of Police (Crime) at the Hong Kong Police Force, emphasized the significance of intelligence exchange and collaborative efforts in responding to the challenges posed by VATPs to protect the Hong Kong public.Knee jerk response to JPEX scandalIt would appear that the necessity for such a concerted effort became patently clear as a direct response to the errant activities of Dubai-based crypto platform JPEX within Hong Kong.Issues with the exchange first emerged in September when the platform outlined that it was having liquidity issues as a consequence of some third party market makers having withdrawn their services. JPEX subsequently raised withdrawal fees to an unreasonable level to deter customers from withdrawing funds from the platform.The saga has affected over 1,600 investors with more than $150 million in assets becoming unavailable to them. The case resulted in the arrest of at least 20 individuals, with local telecom providers blocking online access to the platform as requested by law enforcement.Earlier, on September 13, the SFC had issued a warning accusing JPEX and crypto influencers of disseminating false or misleading information on social media about their application for a virtual asset trading license in Hong Kong.The ongoing JPEX controversy has prompted regulators in Hong Kong to explore measures to strengthen regulations governing the cryptocurrency market. The establishment of the task force signifies a proactive stance to address these concerns and ensure swift, effective action against illicit activities in the crypto sector.In addition to the joint task force, the SFC has taken steps to enhance transparency by publishing a comprehensive list that includes licensed, deemed licensed, closing down, and application-pending crypto exchanges, along with a list of “suspicious VATPs.” This transparency initiative aims to provide clarity and protect investors by offering insights into legitimate and questionable cryptocurrency trading platforms operating in Hong Kong.

news
Loading