Crypto M - Crypto News
2.08K subscribers
15.9K photos
194 links
Your #1 destination for the latest and most unbiased market news on Bitcoin, Ethereum, NFT, Fintech, Web3, DeFi, and Blockchain.
Download Telegram
🚀 Dubai Financial Authority Opens Applications for Tokenization Sandbox

According to PANews, the Dubai Financial Services Authority (DFSA) has announced an invitation for companies to apply for its tokenization regulatory sandbox, with the application deadline set for April 24, 2025. The DFSA, an independent body responsible for overseeing the Dubai International Financial Centre (DIFC), revealed in a March 17 announcement that the sandbox initiative aims to attract firms interested in offering tokenized investment products and services. This sandbox provides a controlled environment for businesses to test tokenized financial solutions under regulatory supervision.

The DFSA specified that eligible services include tokenized stocks, bonds, Islamic bonds, and units of collective investment funds. Both existing DFSA-authorized firms looking to expand into tokenization and new eligible applicants are encouraged to apply. Once applications are submitted, companies will undergo an evaluation process. Successful candidates will gain structured testing opportunities within the sandbox and receive tailored regulatory guidance. The DFSA emphasized that only companies with robust business models and strong compliance capabilities will be selected. This sandbox initiative is part of the DFSA's broader innovation testing license program, designed to help companies refine financial products and prepare for full authorization.


#Dubai #FinancialAuthority #Tokenization #Sandbox #InvestmentProducts #RegulatorySupervision #DIFC #FinancialSolutions #Compliance #Innovation #Testing #Authorization
🚀 Security Concerns Arise Over Smart Contract Deployment Vulnerability

According to PANews, a recent article by SlowMist highlights a security vulnerability in smart contract deployment that has garnered significant attention. The issue involves an attack method using CREATE and CREATE2 to deploy 'same address, different contract' scenarios. Attackers can initially deploy a secure contract to gain authorization, then self-destruct it and redeploy a malicious contract using the same deployment path. This tactic can lead to the execution of malicious logic through delegatecall, potentially resulting in the hijacking of DAO governance rights.

SlowMist advises developers to record and verify code hashes, exercise caution when using delegatecall, and be aware of the risks associated with contract self-destruction and address reuse. These measures are recommended to mitigate the potential threats posed by this vulnerability.


#Security #SmartContracts #Vulnerability #BlockchainSecurity #AttackMethod #CREATE #CREATE2 #Authorization #MaliciousContract #DAO #GovernanceRights #CodeHashes #Delegatecall #ContractSelfDestruction #AddressReuse #Mitigation
🚀 HashiCorp Vault Vulnerabilities Pose Security Risks in Cryptocurrency Sector

According to PANews, recent reports from Cyata have revealed multiple zero-day vulnerabilities in HashiCorp Vault, a widely used tool for wallet and key management in the cryptocurrency industry. These vulnerabilities affect critical areas such as authentication, identification, and authorization. Some of these flaws can bypass lock and multi-factor authentication protections, potentially allowing attackers to execute remote code, posing a significant threat to infrastructure security. The Cyata team has collaborated with HashiCorp to address these issues. 23pds, the Chief Information Security Officer at SlowMist Technology, advises relevant organizations to promptly upgrade to the latest version to mitigate potential risks.

#HashiCorp #Vault #Vulnerabilities #Security #Cryptocurrency #ZeroDay #Authentication #Authorization #RemoteCode #InfrastructureSecurity #Upgrade
🚀 Victim Loses $78,187 Due to Phishing Authorization

According to PANews, a victim has suffered a loss of $78,187 due to a phishing authorization signed 623 days ago, as reported by Scam Sniffer. Users are advised to regularly review and revoke outdated authorizations to prevent such incidents.

#phishing #phishingauthorization #authorization #fraud #cybersecurity #scamsniffer #panews
🚀 BitMine's Ethereum Acquisition Hinges on Shareholder Approval

According to BlockBeats, BitMine Chairman Thomas "Tom" Lee announced on Monday that the company's ability to continue acquiring Ethereum (ETH) depends on shareholder approval for the authorization to issue new shares. Without this approval, BitMine may be forced to slow down its purchasing pace in the coming weeks.

Lee stated, "We must proceed with the issuance immediately as BitMine's current authorization limit of 500 million shares is nearing exhaustion. Once this limit is reached, our rate of ETH acquisition will decelerate." The shareholder vote is scheduled for Thursday. The proposal requires support from 50.1% of all outstanding shares to pass. "This is a very high threshold, making it extremely challenging to obtain authorization for issuance," Lee emphasized in the statement.


#BitMine #Ethereum #ETH #shareholderapproval #ThomasLee #acquisition #crypto #stocks #newshares #authorization
🚀 Airstrikes Highlight Importance of War-Powers Rules

Airstrikes resulting in the death of Iran's Supreme Leader Ali Khamenei emphasize the significance of adhering to the Constitution's war-powers regulations. Bloomberg posted on X, highlighting the critical nature of these rules in maintaining checks and balances in military engagements. The incident serves as a reminder of the constitutional framework designed to prevent unilateral military actions without proper authorization. The discussion around war-powers rules is crucial in ensuring that military decisions are made with due consideration and oversight.

#Airstrikes #WarPowers #Constitution #Iran #AliKhamenei #MilitaryEngagements #ChecksAndBalances #UnilateralMilitaryActions #Authorization #Oversight