ChainCatcher news, according to the official blog, 1inch disclosed that on December 9, it discovered a security vulnerability. The attacker fraudulently gained access to the private keys belonging to the owner of the 1inch Labs parser smart contract.
The attacker utilized this access to alter the contract's settings and transferred funds from the 1inch parser. 1inch stated that its team quickly took action to resolve the issue, the attacker revoked the stolen access, and 1inch strengthened its security measures to prevent such incidents from happening again in the future.
1inch stated: "Since our protocol is non-custodial, user funds are safe. The 1inch application and infrastructure are unaffected and remain completely secure."