Beosin: The attack method of the Bybit event is similar to that of WazirX, which is spoofed through the front-end UI.
The Beosin security team analyzed that the attack methods of Bybit in this incident were similar to those of WazirX. They were all deceived through the front-end UI, allowing the multi-signature wallet to sign malicious content and tampering with the logical implementation contract of the multi-signature wallet, resulting in the transfer of funds from the multi-signature wallet.
Beosin Trace monitored the withdrawal of $1.44 billion worth of Bybit security incidents, including:
401,347 ETH worth 1.12 billion USD;
90,376 stETH, valued at $253.16 million;
15,000 cmETH worth $44.13 million.
8,000 mETH worth $23 million.
At present, the funds are divided into a group of 10,000 ETH and deposited in more than 40 Ethereum addresses. All hacker addresses have been added to the Beosin tag library. Beosin KYT will alert all fund transfers involving hacker addresses.