📈 Get daily crypto insights that make you smarter about your money

Ethereum Classic Suffers Second 51% Attack in a Week as $3.3 Million Double-Spend Exposes Network Vulnerabilities

The Ethereum Classic (ETC) network suffered its second major 51% attack in less than a week on August 6, 2020, when an unidentified attacker orchestrated a massive blockchain reorganization spanning over 4,200 blocks and attempted to double-spend approximately $3.3 million worth of ETC tokens.

TL;DR

  • Ethereum Classic hit by second 51% attack in under a week on August 6, 2020
  • Attacker reorganized 4,236 blocks in an operation lasting over 15 hours
  • Approximately 465,444 ETC ($3.3 million) targeted in double-spend attempt
  • 238,306 ETC ($1.68 million) successfully double-spent through Bitfinex and other services
  • Same attacker linked to the July 31 ETC attack, using proceeds from the first breach

Attack Anatomy: A 15-Hour Siege on the Blockchain

According to blockchain analytics firm Bitquery, the attack began at approximately 11:50 UTC on August 5, 2020, when the attacker started privately mining a fork of the ETC blockchain. The reorganization was finalized at 02:54 UTC on August 6, affecting blocks numbered 10,935,623 through 10,939,858 — a staggering 4,236 consecutive blocks that were silently replaced.

The attacker, operating from a known address, used rented hash power from NiceHash’s daggerhashimoto marketplace to overwhelm the network’s legitimate miners. By controlling more than 50% of the network’s total hash rate, the attacker was able to build a longer chain in secret and then broadcast it, effectively rewriting transaction history.

Follow the Money: From First Attack to Second

Bitquery’s investigation revealed a direct link between the August 6 attack and the earlier July 31 incident. The attacker recycled funds stolen during the first breach to finance the second operation. Wallet addresses used in the initial attack served as the source of funds for multiple transactions in the second attack.

The attacker attempted to double-spend a total of 465,444 ETC, valued at approximately $3.3 million at the time. Of that amount, approximately 238,306 ETC ($1.68 million) was successfully double-spent through Bitfinex and other cryptocurrency services. Additionally, the attacker accumulated 14,234 ETC in block rewards during the 15-hour mining operation.

Ethereum Classic’s Security Crisis Deepens

The back-to-back attacks exposed fundamental vulnerabilities in the Ethereum Classic network’s security model. ETC, which was born from the original Ethereum blockchain following the 2016 DAO hack, relies on a proof-of-work consensus mechanism with significantly lower hash power than its larger sibling Ethereum.

Ethereum co-founder Vitalik Buterin acknowledged the attacks publicly, drawing attention to the inherent risks smaller proof-of-work networks face when their hash rates are insufficient to prevent takeovers. The incidents reignited debate about the long-term viability of smaller PoW chains in an increasingly competitive mining landscape.

Exchange Response and Market Impact

Major cryptocurrency exchanges responded to the attacks by heightening deposit requirements for ETC, with some implementing significantly increased confirmation times. Binance publicly flagged the attack on social media, alerting users to the network disruption.

Despite the security incidents, ETC’s price showed surprising resilience, declining only modestly in the immediate aftermath. At the time of the attack, Bitcoin was trading near $11,780 and Ethereum at approximately $395, with the broader crypto market capitalization exceeding $340 billion.

Why This Matters

The consecutive 51% attacks on Ethereum Classic represent a cautionary tale for the broader cryptocurrency industry. They demonstrate that hash rate remains the ultimate security guarantor for proof-of-work networks, and that smaller chains with insufficient mining power are inherently vulnerable to sophisticated attackers with access to rented hash power. The attacks also highlighted the growing sophistication of blockchain forensic analysis, as firms like Bitquery were able to trace the attacker’s movements across both incidents in near real-time. For investors and exchanges, the events served as a stark reminder that not all proof-of-work blockchains offer equal security guarantees, and that network hash power should be a primary consideration when evaluating cryptocurrency investments.

Disclaimer: This article is for informational purposes only and does not constitute financial advice. Cryptocurrency investments carry significant risk. Always conduct your own research before making investment decisions.

🌱 FOR BUSINESSES BitcoinsNews.com
Reach 100K+ Crypto Readers
Sponsored content, press releases, banner ads, and newsletter placements. Put your brand in front of Bitcoin's most engaged audience.

27 thoughts on “Ethereum Classic Suffers Second 51% Attack in a Week as $3.3 Million Double-Spend Exposes Network Vulnerabilities”

  1. null_pointer_btc

    4,236 blocks reorged. That is not a small attack, thats a sustained siege. ETCs security model was fundamentally broken.

  2. NiceHash rental for under 5k an hour to attack a chain with 3.3M at stake. ETC security budget was a rounding error

  3. Same attacker using proceeds from the first breach to fund the second. PoW chains with low hashrate are sitting ducks.

    1. Bitfinex getting hit for $1.68M in the double spend. exchanges really need better confirmation policies for smaller chains.

    2. 0x51pct.eth and they used the first attack proceeds to fund the second. ETC had no defense because renting hashrate was trivially cheap back then

      1. reorg_sam correct, renting hashrate on nicehash cost almost nothing for ETC. the lesson is PoW only works if attacking costs more than the reward

        1. hash_rental_ NiceHash being cheaper to rent than buy hashrate was the structural flaw. attacking ETC cost less than 5000 dollars per hour. absurd security model

          1. rental_cap_ under 5k per hour to attack a chain with real money on it. ETC was a security theater experiment

        2. nicehash was basically a rental marketplace for attack hashrate. the fact that it was cheaper to rent than buy tells you everything about small PoW chain security

          1. nicehash made it trivially cheap to rent enough hashrate. ETC was basically a testnet with real money on it

    1. tomoko its worse than that. ETC 51% attacks happened THREE times in 2020 alone. market didnt care because hashrate rentals made it cheap entertainment

  4. using proceeds from the first attack to fund the second is next level. ETC holders still pretended the chain was fine

    1. dagur_ and exchanges kept listing ETC after both attacks. listing standards were completely nonexistent in 2020

  5. 238,306 ETC successfully double-spent through Bitfinex. the exchange ate the loss because they accepted deposits without enough confirmations on a chain with known hash vulnerabilities

  6. the attacker used proceeds from the July 31 attack to fund this one. literally compounding stolen hashpower. ETC should have hard forked to PoS right after this but waited 3 more years

  7. 4,236 blocks reorged over 15 hours and no exchange implemented longer confirmation times for ETC until after the second attack. reactive security at its finest

  8. reorg_realist_

    4236 blocks reorganized in 15 hours and ETC kept trading. the market literally did not care about chain security

    1. reorg_realist_ 4236 blocks and the market didnt flinch. ETC kept trading on binance like nothing happened. zero price discovery efficiency

  9. confirm_depth_

    Bitfinex could have required 200+ confirmations for ETC deposits after the first attack. they waited until the second one. reactive not proactive

    1. confirm_depth_ Bitfinex requiring more confirmations after the fact is peak exchange security. they ate 1.68M because they couldnt be bothered to check chain depth

    2. 4236 blocks reorganized in 15 hours. that is not a shallow attack, someone rented massive hashpower specifically to destabilize ETC. the second attack in a week proves the first one was profitable

Leave a Comment

Your email address will not be published. Required fields are marked *

BTC$77,126.00-1.3%ETH$2,458.71-0.1%SOL$99.76-2.3%BNB$714.00-1.6%XRP$1.35-3.3%ADA$0.2083-2.0%DOGE$0.0841-2.8%DOT$1.12+0.8%AVAX$7.57-3.1%LINK$11.58-1.3%UNI$6.01-4.5%ATOM$1.79-3.1%LTC$52.34-2.0%ARB$0.1467-3.7%NEAR$2.51+2.4%FIL$0.7909-5.1%SUI$0.7385-5.0%BTC$77,126.00-1.3%ETH$2,458.71-0.1%SOL$99.76-2.3%BNB$714.00-1.6%XRP$1.35-3.3%ADA$0.2083-2.0%DOGE$0.0841-2.8%DOT$1.12+0.8%AVAX$7.57-3.1%LINK$11.58-1.3%UNI$6.01-4.5%ATOM$1.79-3.1%LTC$52.34-2.0%ARB$0.1467-3.7%NEAR$2.51+2.4%FIL$0.7909-5.1%SUI$0.7385-5.0%
Scroll to Top