Originally published on: September 25, 2024
Ether.fi, a leading decentralized finance (DeFi) staking protocol, recently thwarted a domain account takeover attack, reassuring users that their funds remained safe throughout the incident.
The DeFi protocol successfully prevented a domain account takeover involving their domain registrar, Gandi.net, averting any significant damage from occurring.
The internal team at Ether.fi confirmed that the attackers failed to introduce any malicious decentralized applications (DApps) on Ether.fi-related domains, ensuring the safety of user funds.
The breach was initiated on Sept. 24 when Ether.fi received a recovery notification email from Gandi.net, leading to the discovery of the attacker’s involvement in the attempted takeover.
While the attackers tried to exploit the legitimate recovery flow of Gandi to gain unauthorized access, Ether.fi’s security measures, including “SPF, DKIM, and DMARC authentication records,” helped identify and counter the threat promptly.
Following the incident, Ether.fi implemented additional security upgrades to fortify its defenses against potential attacks, including requiring hardware authentication for account recovery and management processes.
Ether.fi expressed gratitude to its security partners, Seal911, Doppel, Ethena, and Distrust, for their swift assistance during the attack, underscoring the importance of collaboration in maintaining robust cybersecurity measures.
In a statement to users on social media platform X, Ether.fi advised against interacting with any links or domains and reassured that official communications would be exclusively through X or Discord, emphasizing zero communication through email channels.
After successfully resolving the incident, Ether.fi affirmed that all user funds were secure and that the attackers had no opportunity to deploy any malicious DApps on Ether.fi-related domains, ensuring the integrity and safety of the platform.
Stay ahead with Ether.fi as they redefine decentralized finance and safeguard user investments from potential threats.


