Crypto M - Crypto News
2.08K subscribers
15.9K photos
194 links
Your #1 destination for the latest and most unbiased market news on Bitcoin, Ethereum, NFT, Fintech, Web3, DeFi, and Blockchain.
Download Telegram
πŸš€ Ethereum Deposited into Tornado Cash Following Contract Exploit

According to BlockBeats, CertiK Alert has reported that an attacker deposited 95 ETH into Tornado Cash, valued at approximately $280,000. The incident followed the initialization of an uninitialized EIP-7702 delegate contract, which granted the attacker ownership rights. Subsequently, the attacker withdrew all funds from the delegate's address.

#Ethereum #TornadoCash #Exploit #CertiK #EIP7702 #Cybersecurity #ETH
πŸš€ Flow Blockchain Implements Protocol Fix Following Exploit

According to Foresight News, Flow has announced the deployment of a protocol fix to address a recent exploit. Node operators are coordinating the upgrade to revert the network to a checkpoint prior to the attack, removing unauthorized transactions from the ledger. Flow emphasized that this rollback is essential to mitigate the impact of the attack. Users are advised to resubmit transactions made during the network interruption from December 27, 15:25 to December 27, 21:30 UTC+8 once the network is restored. The foundation will confirm these transactions upon the network's official relaunch.

Flow reported that attackers exploited a vulnerability in the Flow execution layer on December 27, transferring approximately $3.9 million before the network shutdown. The attack did not compromise existing user balances, ensuring the safety of all deposits. The funds were primarily moved through bridges like Celer, Debridge, Relay, and Stargate. The attacker’s wallet has been identified and flagged, with laundering activities via Thorchain and Chainflip being actively monitored. Flow Foundation has also requested asset freezes from Circle, Tether, and major exchanges.


#FlowBlockchain #ProtocolFix #Exploit #NetworkUpgrade #CheckpointRollback #UnauthorizedTransactions #TransactionResubmission #December27Attack #FlowExecutionLayer #NetworkRelaunch #FundsSafety #LaunderingMonitoring #AssetFreezes #Celer #Debridge #Relay #Stargate #Thorchain #Chainflip #FLOW
πŸš€ [ContractVulnerability] SynapLogic Contract Exploit Leads to Significant Losses

A vulnerability in the SynapLogic contract has resulted in substantial financial losses. According to PANews, BlockSec Alert reported that the contract's swapExactTokensForETHSupportingFeeOnTransferTokens function lacked essential parameter verification. This oversight allowed attackers to manipulate the 'whitelist' logic and designate any address for profit. Additionally, the contract failed to verify whether the total distribution of native tokens exceeded the actual payment, enabling attackers to withdraw excess native tokens and simultaneously receive newly minted SYP tokens. This exploit has led to an estimated loss of approximately $186,000.

#ContractVulnerability #SynapLogic #Exploit #FinancialLosses #BlockSec #WhitelistLogic #TokenManipulation #SYP #CryptoSecurity #TokenExploitation #PANews
πŸš€ MakinaFi Suffers Major Exploit Resulting in Significant Loss

MakinaFi, a decentralized finance protocol, has been exploited for 1,299 ETH, equating to approximately $4.13 million. According to NS3.AI, the stolen assets have been transferred to two new cryptocurrency addresses. This incident underscores the persistent security challenges faced by DeFi platforms.

#MakinaFi #DeFi #exploit #ETH #cryptocurrency #security #loss #NS3AI #blockchain #decentralizedfinance
πŸš€ Makina Finance Exploit Results in $4.13 Million Loss

Makina Finance experienced a significant exploit resulting in a loss of $4.13 million. According to NS3.AI, the incident involved MEV bots intercepting the hacker's transaction and redirecting the funds to addresses under their control, thereby preventing a complete loss. These MEV bots serve as an emergency crypto fund recovery mechanism, but their increasing influence and profit-driven motives pose governance challenges concerning fund custody and returns.

Efforts to address these issues include frameworks like Safe Harbor, which aim to formalize and regulate the process by pre-authorizing white hats and establishing clear terms. However, the adoption of such frameworks is still developing amid concerns over centralization and opaque custody.


#MakinaFinance #Exploit #CryptoLoss #MEVbots #CryptoGovernance #FundRecovery #SafeHarbor #WhiteHats #Centralization #Custody #NS3AI
πŸš€ Aperture Finance Investigates Contract Vulnerability Exploitation

Aperture Finance has reported a vulnerability exploitation affecting its V3/V4 contracts, according to PANews. The company announced on the X platform that it has halted core functions in its front-end application to prevent further authorizations and is collaborating with security partners to investigate the root cause of the incident. Users are advised to revoke all authorizations on the Ethereum mainnet for the contract address 0xD83d960deBEC397fB149b51F8F37DD3B5CFA8913 to ensure wallet security.

Previously, BlockSec detected an attack on Aperture Finance resulting in a loss of approximately $3.67 million.


#ApertureFinance #SmartContract #Vulnerability #Exploit #BlockchainSecurity #Ethereum #DeFi #CryptoSecurity #PANews #BlockSec
πŸš€ CrossCurve Cross-Chain Bridge Faces Exploit Due to Smart Contract Vulnerability

CrossCurve has announced that its cross-chain bridge has been exploited due to a vulnerability in a smart contract. According to Odaily, the project team has urged users to immediately halt all interactions with CrossCurve until the investigation is complete and promised to provide updates through official channels.

The team confirmed that some addresses received tokens that should have belonged to users due to the vulnerability. CrossCurve stated that no malicious intent has been detected from these addresses and has requested cooperation in returning the misappropriated assets. Under its Safe Harbor white hat policy, those assisting in the recovery of funds may retain up to 10% as a bounty.

The announcement warned that if funds are not returned or contact is not made within 72 hours from Ethereum block height 24,364,392, the project team may escalate the situation. This could include initiating criminal and civil proceedings and collaborating with exchanges, stablecoin issuers, and on-chain analysis firms to freeze or track the involved assets.


#CrossCurve #CrossChainBridge #Exploit #SmartContractVulnerability #Odaily #SafeHarbor #WhiteHat #Bounty #FundsRecovery #Ethereum #CriminalProceedings #AssetTracking
πŸš€ Privacy Game Project FOOMCASH Experiences Exploit in Lottery Contract

CertiK has reported an exploit in the lottery contract of the privacy game project FOOMCASH, involving approximately $1.8 million. According to Foresight News, the vulnerability may stem from the configuration of its Groth16 verifier, allowing attackers to repeatedly collect ZOOM tokens under identical input conditions.

#PrivacyGame #FOOMCASH #Exploit #LotteryContract #CertiK #ZOOMTokens #Groth16 #Vulnerability #Blockchain #CryptoSecurity #ForesightNews
πŸš€ Solv Protocol Exploit Results in $2.7 Million Loss

Solv Protocol experienced an exploit in one of its BRO vaults, resulting in approximately $2.7 million in losses, equivalent to 38.0474 SolvBTC. According to NS3.AI, the incident impacted fewer than 10 users, and Solv has committed to compensating their losses. The protocol assured that all other vaults and user assets are secure, and the SOLV token continues to trade in line with the broader market recovery.

#SolvProtocol #Exploit #CryptoLoss #BlockchainSecurity #SolvBTC #DeFi #CryptoNews #NS3AI #SOLVToken #Compensation
πŸš€ Aave Labs Secures Narrow Victory in Governance Vote Amid Tensions

Aave Labs has narrowly secured a victory in its 'Aave Will Win' Snapshot vote, garnering 52.6% of approximately 1.2 million AAVE tokens cast. According to NS3.AI, this outcome has intensified tensions with governance delegate ACI. The newsletter also draws attention to several security incidents within the decentralized finance (DeFi) sector, including a $2.7 million exploit of Solv Protocol and recent issues related to zero-knowledge proof verifier exploits.

#AaveLabs #SnapshotVote #AAVE #Governance #ACI #DeFi #SecurityIncidents #SolvProtocol #Exploit #ZeroKnowledgeProof