Orcus Finance incident

Orcus Finance
2 min readMay 29, 2022

Dear community,

The Orcus Finance EOA hot wallet that provided liquidity into the ORU/USDC pair was hijacked.

A malicious program hacked the personal computer of the contract deployer. Personal funds and some funds from the protocol were withdrawn, which affected the price of the ORU token. oUSD is unaffected due to algorithms and price protection. The liquidity in oUSD/USDC pair is unaffected.

The hacker’s wallet:
https://blockscout.com/astar/address/0x7bD1ed3aDF588A89c392c5c424583C0FfFfCe145/transactions

The problem solution

1. The hacker now doesn’t have any ORU tokens, all the contracts’ ownership was transferred to the new address. New contracts’ owner:
https://blockscout.com/astar/address/0x779497A66fc99f5aB2c9218c542C3540c0eA7e9A/transactions

Ownership transferred:
https://blockscout.com/astar/tx/0xa0f30007140f0c1c16aaeb92e3e0604b499346c2623bd7e242d15a45e2b7a001/internal-transactions

https://blockscout.com/astar/tx/0x911c6be45915e5b4bfccbdcc2313b6e0cbee77f375393356a0b3292bf41a01f2/internal-transactions

https://blockscout.com/astar/tx/0x602b6b8794ba6784a02720f52b0a796e5b23967661d3bcdcf686cc44bc874908/internal-transactions

https://blockscout.com/astar/tx/0xcb90813f409e52e99e6c63a8b3f96362d07eae0e284b0305cb2727ed8362b10d/internal-transactions

https://blockscout.com/astar/tx/0x979ba8eefdc9665618ea37328746d0b581bd315685e22fae29b1559398f2821d/internal-transactions

https://blockscout.com/astar/tx/0x47515c07c305a84614bf22a3aabf3066ec1b31082d164d02d6084a8bd32d469a/internal-transactions

https://blockscout.com/astar/tx/0x6cbc56fa2b880c04867bb421bca41fd1ddfa5708c31b04a6f323661232af68b0/internal-transactions

https://blockscout.com/astar/tx/0x30dc88c9e94edf4ddc5f8c07e6c3ae5dffb204198f71ecd68c7b0be9a28071d3/internal-transactions

https://blockscout.com/astar/tx/0x8ff75c7481464671f26ff1ed9f445714d6dc4452beeca725f08b2dd4173f90f4/internal-transactions

https://blockscout.com/astar/tx/0x53a34cc99e7f43b5840142cc18e5c778ae32664ed89e033a362f4eaccd503819/internal-transactions

https://blockscout.com/astar/tx/0x6444fd500140b57e870e21d73cf83cc70bf0ccc2589ba747792be81bc5e2e1f7/internal-transactions

https://blockscout.com/astar/tx/0xa5ae3254086492db7adf0098d3de5e1d5ffa05fddc466a038c9c3bc5bf578e74/internal-transactions

2. Multisig wallet will be added to the ownership once Gnosis Safe will be live on Astar.

3. Orcus Vaults will be released on the next day, and fees from the vaults will be used daily to push the ORU price up back.

4. Rewards from pools ORU/USDC and ORU/oUSD are disabled for a while until the situation will be solved.

5. oUSD/USDC pair received lower reward distribution, the current one is 0.5 ORU per second.

6. In such a case we have provided reserved funds to buyback token from the market to stabilize pair reserves, activity can be tracked here:

https://debank.com/profile/0x779497a66fc99f5ab2c9218c542c3540c0ea7e9a/history

Deeply sorry for that, contracts remain safe and unaffected.

Contracts are secured and the hacker doesn’t have access to the wallet anymore, he also has no tokens. We will keep updating the community concerning further steps and the whole situation.

Tomorrow, Orcus Vaults will be released and more liquidity will be provided. Please follow official announcements.

🖥️Discord | 🐦Twitter | 📄 Docs

--

--

Orcus Finance

№1 fractional-algorithmic stablecoin protocol on Astar Network ⭐️