Attackers steal 30,000 XRP due to software bug in bridge system
A software bug allowed attackers to steal 30,000 XRP by treating fake deposits as real. This breach highlights that even audited cross-chain bridges remain vulnerable to complex smart-contract flaws.
An attacker drained the XRP Bridge, stealing 30,000 XRP, after a software bug treated fake deposits as real. On Tuesday, Marchโฏ5, 2024, the bridge that lets users move XRP from the XRP Ledger to Solana and other blockchains was compromised. The flaw, which had passed several independent audits, allowed the attacker to create unbacked balances and withdraw the stolen XRP from the bridgeโs reserve pool.
The XRP Bridge is a crossโchain bridge that locks XRP on the XRP Ledger and issues wrapped tokens on other chains. It is designed to expand XRPโs use beyond its native ledger by enabling liquidity and trading on Solana and other ecosystems. The recent breach shows that even wellโaudited code can contain hidden vulnerabilities, especially in complex smartโcontract interactions that span multiple blockchains.
Security researchers discovered that the bridgeโs deposit function did not properly
Read Full Story at Decrypt โ


