Zodiac DAO Rug Pull: Difference between revisions

From Quadriga Initiative Cryptocurrency Hacks, Scams, and Frauds Repository
Jump to navigation Jump to search
No edit summary
(Another 30 minutes complete.)
Line 1: Line 1:
{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/zodiacdaorugpull.php}}
{{Case Study Under Construction}}[[File:Zodiacdao.jpg|thumb|Zodiac DAO]]The ZodiacDAO was a collateralized reserve currency. The liquidity, website, Twitter, Medium, and Telegram have disappeared. There is limited information on how much was lost and no apparent recovery plan.
{{Unattributed Sources}}


[[File:Zodiacdao.jpg|thumb|Zodiac DAO]]The ZodiacDAO was a collateralized reserve currency. The liquidity, website, Twitter, Medium, and Telegram have disappeared. There is limited informatino on how much was lost and no apparent recovery plan.
== About Zodiac DAO ==
<ref name="coinmarketcap-5288" /><ref name="thepost-5289" /><ref name="zodiacdaofinancearchive-5290" /><ref name="dappradar-5291" /><ref name="newsfilecorp-5292" /><ref name="zodiacdaomediumarchive-5294" /><ref name="yahoomovies-5296" /><ref>[https://github.com/zodiacdao Zodiac DAO Github] (Aug 28, 2023)</ref>
 
"Zodiac is a belt of the heavens within about 8° either side of the ecliptic, including all apparent positions of the sun, moon, and most familiar planets. It is divided into twelve equal divisions or signs which each carry its deep meanings."


This is a global/international case not involving a specific country.<ref name="certik-5262" /><ref name="coinmarketcap-5288" /><ref name="thepost-5289" /><ref name="zodiacdaofinancearchive-5290" /><ref name="dappradar-5291" /><ref name="newsfilecorp-5292" /><ref name="youtube-5293" /><ref name="zodiacdaomediumarchive-5294" /><ref name="certikorgtwitter-5295" /><ref name="yahoomovies-5296" />


== About Zodiac DAO ==
ZodiacDAO has launched an advanced OlympusDAO fork with features such as Rebased, NFT, GameFi, and Web3. It operates as a decentralized protocol based on the $ZD token, collateralized and supported by the Zodiac DAO, serving as the reserve currency on the Binance Smart Chain (BSC) network. Zodiac employs the Algorithmic Reserve Currency algorithm for price stability and utilizes Protocol Owned Liquidity (POL)<ref name=":0">[https://web.archive.org/web/20220102102603/https://ca.style.yahoo.com/introducing-zodiacdao-advanced-olympusdao-fork-100300177.html Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, NFT, Gamefi and Web3 - Yahoo Life] (Aug 28, 2023)</ref>. Community ownership is emphasized, enabling $ZD holders to make decisions through on-chain voting and holding activities. ZodiacDAO addresses issues faced by other DAOs and aims to bring innovation to DeFi 2.0. Pre-sold tokens are locked in a Liquidity Pool to prevent Pump & Dump scenarios<ref name=":0">[https://web.archive.org/web/20220102102603/https://ca.style.yahoo.com/introducing-zodiacdao-advanced-olympusdao-fork-100300177.html Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, NFT, Gamefi and Web3 - Yahoo Life] (Aug 28, 2023)</ref>. The protocol involves Staking and Bonding strategies, and it integrates NFT and GameFi components with anti-inflation mechanisms for price stability and value growth<ref name=":0">[https://web.archive.org/web/20220102102603/https://ca.style.yahoo.com/introducing-zodiacdao-advanced-olympusdao-fork-100300177.html Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, NFT, Gamefi and Web3 - Yahoo Life] (Aug 28, 2023)</ref>.
"Zodiac is a belt of the heavens within about 8° either side of the ecliptic, including all apparent positions of the sun, moon, and most familiar planets. It is divided into twelve equal divisions or signs which each carry its deep meanings."


"ZodiacDAO is a DeFi 2.0+ decentralized reverse currency protocol based on the $ZD token. We use the POL (Protocol Owned Liquidity) to make sure that $ZD is back into ZodiacDAO treasury stable and sufficiently."
"ZodiacDAO is a DeFi 2.0+ decentralized reverse currency protocol based on the $ZD token. We use the POL (Protocol Owned Liquidity) to make sure that $ZD is back into ZodiacDAO treasury stable and sufficiently."
Line 15: Line 15:
"Their GameFi is currently under development and anti-inflation will be applied as well, so people can play, earn, and rest assured about the stable price of ZD along with their great marketing strategy."
"Their GameFi is currently under development and anti-inflation will be applied as well, so people can play, earn, and rest assured about the stable price of ZD along with their great marketing strategy."


"We’ve received inbounds that may indicate high risks regarding to a project named Zodiac DAO. The twitter account is gone and we wish the community DYOR enough before interacting with the dApp."


"#zodiacdao has been identified as a #rugpull. Their twitter account @zodiacdao_bep20 has been deactivated. The team is currently looking into it. DO NOT interact with this project!"


This is a global/international case not involving a specific country.
This is a global/international case not involving a specific country.
Line 54: Line 52:
!Description
!Description
|-
|-
|January 4th, 2022
|December 23rd, 2021 11:04:00 PM MST
|Main Event
|Last Github Update
|Expand this into a brief description of what happened and the impact. If multiple lines are necessary, add them here.
|The project completed their last Github update to the "Zodiac Supply Endpoint"<ref>[https://github.com/zodiacdao/zodiac-supply-endpoint- Zodiac Supply Endpoint - Zodiac DAO Github] (Aug 28, 2023)</ref>.
|-
|January 4th, 2022 12:41:00 PM MST
|CertiK Community Leaderboard
|The CertiK Community Leaderboard shares a tweet which reports that the Zodiac DAO project has rugpulled and their Twitter account is deactivated. They advise the community to not interact with this project and state they are looking into it further<ref name="certikorgtwitter-5295" />.
|-
|-
|
|January 5th, 2022 1:45:01 AM MST
|
|Karma Finance Video
|
|YouTube channel Karma Finance reports on the rug pull and resulting price crash<ref name="youtube-5293" />. The price was reportedly trading well above the $10-$20 mark, but at the time of the video there was a 100% drop and the website is completely "banished". It references the "CertiK Security Leaderboard" post confirmation and reports that the community is closely monitoring the situation.
|}
|}


Line 73: Line 75:
== Immediate Reactions ==
== Immediate Reactions ==
How did the various parties involved (firm, platform, management, and/or affected individual(s)) deal with the events? Were services shut down? Were announcements made? Were groups formed?
How did the various parties involved (firm, platform, management, and/or affected individual(s)) deal with the events? Were services shut down? Were announcements made? Were groups formed?
<ref name="certik-5262" />
"We’ve received inbounds that may indicate high risks regarding to a project named Zodiac DAO. The twitter account is gone and we wish the community DYOR enough before interacting with the dApp."
=== CertiK Security Leaderboard Tweet ===
The CertiK Security Leaderboard shared a Tweet to warn the community<ref name="certikorgtwitter-5295" />.<blockquote>"#zodiacdao has been identified as a #rugpull. Their twitter account @zodiacdao_bep20 has been deactivated.
The team is currently looking into it.
DO NOT interact with this project!"</blockquote>
=== Karma Finance YouTube Video ===
YouTube channel Karma Finance reports on the rug pull and resulting price crash<ref name="youtube-5293" />. The price was reportedly trading well above the $10-$20 mark, but at the time of the video there was a 100% drop and the website is completely "banished". It references the "CertiK Security Leaderboard" post confirmation and reports that the community is closely monitoring the situation.


== Ultimate Outcome ==
== Ultimate Outcome ==
Line 86: Line 107:
== Individual Prevention Policies ==
== Individual Prevention Policies ==
{{Prevention:Individuals:Placeholder}}
{{Prevention:Individuals:Placeholder}}
{{Prevention:Individuals:Question Unrealistic Profit}}


{{Prevention:Individuals:End}}
{{Prevention:Individuals:End}}
Line 91: Line 114:
== Platform Prevention Policies ==
== Platform Prevention Policies ==
{{Prevention:Platforms:Placeholder}}
{{Prevention:Platforms:Placeholder}}
{{Prevention:Platforms:Establish Industry Insurance Fund}}


{{Prevention:Platforms:End}}
{{Prevention:Platforms:End}}
Line 96: Line 121:
== Regulatory Prevention Policies ==
== Regulatory Prevention Policies ==
{{Prevention:Regulators:Placeholder}}
{{Prevention:Regulators:Placeholder}}
{{Prevention:Regulators:Platform Security Assessments}}
{{Prevention:Regulators:Establish Industry Insurance Fund}}


{{Prevention:Regulators:End}}
{{Prevention:Regulators:End}}


== References ==
== References ==
<references><ref name="certik-5262">[https://www.certik.com/ CertiK Blockchain Security Leaderboard] (Jan 4, 2022)</ref>
<references>
 
<ref name="certik-5262">[https://www.certik.com/ CertiK Blockchain Security Leaderboard] (Jan 4, 2022)</ref>
<ref name="coinmarketcap-5288">[https://coinmarketcap.com/currencies/zodiacdao/ https://coinmarketcap.com/currencies/zodiacdao/] (Jan 6, 2022)</ref>
<ref name="coinmarketcap-5288">https://coinmarketcap.com/currencies/zodiacdao/ (Jan 6, 2022)</ref>
 
<ref name="thepost-5289">[https://www.thepost.on.ca/newsfile/108894-introducing-zodiacdao-an-advanced-olympusdao-fork-contains-rebased-nft-gamefi-and-web3 Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, | Hanover Post] (Jan 6, 2022)</ref>
<ref name="thepost-5289">[https://www.thepost.on.ca/newsfile/108894-introducing-zodiacdao-an-advanced-olympusdao-fork-contains-rebased-nft-gamefi-and-web3 Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, | Hanover Post] (Jan 6, 2022)</ref>
 
<ref name="zodiacdaofinancearchive-5290">[https://web.archive.org/web/20220102142710/https://zodiacdao.finance/ ZodiacDAO Finance Archive] (Jan 6, 2022)</ref>
<ref name="zodiacdaofinancearchive-5290">[https://web.archive.org/web/20220102142710/https://zodiacdao.finance/ ZodiacDAO Finance] (Jan 6, 2022)</ref>
 
<ref name="dappradar-5291">[https://dappradar.com/binance-smart-chain/defi/zodiacdao ZodiacDAO | DappRadar] (Jan 6, 2022)</ref>
<ref name="dappradar-5291">[https://dappradar.com/binance-smart-chain/defi/zodiacdao ZodiacDAO | DappRadar] (Jan 6, 2022)</ref>
<ref name="newsfilecorp-5292">[https://www.newsfilecorp.com/release/108894/Introducing-ZodiacDAO-an-Advanced-OlympusDAO-Fork-Contains-Rebased-NFT-Gamefi-and-Web3 Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, NFT, Gamefi and Web3] (Jan 6, 2022)</ref>
<ref name="newsfilecorp-5292">[https://www.newsfilecorp.com/release/108894/Introducing-ZodiacDAO-an-Advanced-OlympusDAO-Fork-Contains-Rebased-NFT-Gamefi-and-Web3 Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, NFT, Gamefi and Web3] (Jan 6, 2022)</ref>
 
<ref name="youtube-5293">[https://www.youtube.com/watch?v=Cv47uAmeUxw Karma Finance News - Zodiac DAO Rugpull -Big Crash, Website Twitter Closed- ZodiacDao Plummets after Listing ZD fall down - YouTube] (Jan 6, 2022)</ref>
<ref name="youtube-5293">[https://www.youtube.com/watch?v=Cv47uAmeUxw Zodiac DAO Rugpull -Big Crash, Website Twitter Closed- ZodiacDao Plummets after Listing ZD fall down - YouTube] (Jan 6, 2022)</ref>
<ref name="zodiacdaomediumarchive-5294">https://web.archive.org/web/20211224233658/https://medium.com/@zodiacdao (Jan 6, 2022)</ref>
 
<ref name="certikorgtwitter-5295">[https://mobile.twitter.com/certikorg/status/1478451532685324295 CertiK Security Leaderboard - "#zodiacdao has been identified as a #rugpull. Their twitter account @zodiacdao_bep20 has been deactivated." - Twitter] (Jan 6, 2022)</ref>
<ref name="zodiacdaomediumarchive-5294">[https://web.archive.org/web/20211224233658/https://medium.com/@zodiacdao https://web.archive.org/web/20211224233658/https://medium.com/@zodiacdao] (Jan 6, 2022)</ref>
<ref name="yahoomovies-5296">[https://ca.movies.yahoo.com/introducing-zodiacdao-advanced-olympusdao-fork-100300177.html Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, NFT, Gamefi and Web3] (Jan 6, 2022)</ref>
 
</references>
<ref name="certikorgtwitter-5295">[https://mobile.twitter.com/certikorg/status/1478451532685324295 https://mobile.twitter.com/certikorg/status/1478451532685324295] (Jan 6, 2022)</ref>
 
<ref name="yahoomovies-5296">[https://ca.movies.yahoo.com/introducing-zodiacdao-advanced-olympusdao-fork-100300177.html Introducing ZodiacDAO, an Advanced OlympusDAO Fork Contains: Rebased, NFT, Gamefi and Web3] (Jan 6, 2022)</ref></references>

Revision as of 15:23, 28 August 2023

Notice: This page is a new case study and some aspects have not been fully researched. Some sections may be incomplete or reflect inaccuracies present in initial sources. Please check the References at the bottom for further information and perform your own additional assessment. Please feel free to contribute by adding any missing information or sources you come across. If you are new here, please read General Tutorial on Wikis or Anatomy of a Case Study for help getting started.

Zodiac DAO

The ZodiacDAO was a collateralized reserve currency. The liquidity, website, Twitter, Medium, and Telegram have disappeared. There is limited information on how much was lost and no apparent recovery plan.

About Zodiac DAO

[1][2][3][4][5][6][7][8]

"Zodiac is a belt of the heavens within about 8° either side of the ecliptic, including all apparent positions of the sun, moon, and most familiar planets. It is divided into twelve equal divisions or signs which each carry its deep meanings."


ZodiacDAO has launched an advanced OlympusDAO fork with features such as Rebased, NFT, GameFi, and Web3. It operates as a decentralized protocol based on the $ZD token, collateralized and supported by the Zodiac DAO, serving as the reserve currency on the Binance Smart Chain (BSC) network. Zodiac employs the Algorithmic Reserve Currency algorithm for price stability and utilizes Protocol Owned Liquidity (POL)[9]. Community ownership is emphasized, enabling $ZD holders to make decisions through on-chain voting and holding activities. ZodiacDAO addresses issues faced by other DAOs and aims to bring innovation to DeFi 2.0. Pre-sold tokens are locked in a Liquidity Pool to prevent Pump & Dump scenarios[9]. The protocol involves Staking and Bonding strategies, and it integrates NFT and GameFi components with anti-inflation mechanisms for price stability and value growth[9].

"ZodiacDAO is a DeFi 2.0+ decentralized reverse currency protocol based on the $ZD token. We use the POL (Protocol Owned Liquidity) to make sure that $ZD is back into ZodiacDAO treasury stable and sufficiently."

"Singapore, Singapore–(Newsfile Corp. – January 2, 2022) – ZodiacDAO Launches an advanced OlympusDAO fork containing Rebased, NFT, GameFi and Web3. Zodiac is a decentralized protocol based on the $ZD token – collateralized and backed by the Zodiac DAO. ZD will be the reserve currency on the BSC network. In order to maintain price stability, Zodiac will use the Algorithmic Reserve Currency algorithm and will also be supported by the POL (Protocol Owned Liquidity) for the most sufficiency. Zodiac will be community owned; $ZD holders decide on Zodiac’s future via on-chain voting and HODL-ing activities."

"Their GameFi is currently under development and anti-inflation will be applied as well, so people can play, earn, and rest assured about the stable price of ZD along with their great marketing strategy."


This is a global/international case not involving a specific country.

The background of the exchange platform, service, or individuals involved, as it would have been seen or understood at the time of the events.

Include:

  • Known history of when and how the service was started.
  • What problems does the company or service claim to solve?
  • What marketing materials were used by the firm or business?
  • Audits performed, and excerpts that may have been included.
  • Business registration documents shown (fake or legitimate).
  • How were people recruited to participate?
  • Public warnings and announcements prior to the event.

Don't Include:

  • Any wording which directly states or implies that the business is/was illegitimate, or that a vulnerability existed.
  • Anything that wasn't reasonably knowable at the time of the event.

There could be more than one section here. If the same platform is involved with multiple incidents, then it can be linked to a main article page.

The Reality

This sections is included if a case involved deception or information that was unknown at the time. Examples include:

  • When the service was actually started (if different than the "official story").
  • Who actually ran a service and their own personal history.
  • How the service was structured behind the scenes. (For example, there was no "trading bot".)
  • Details of what audits reported and how vulnerabilities were missed during auditing.

What Happened

The specific events of the loss and how it came about. What actually happened to cause the loss and some of the events leading up to it.

Key Event Timeline - Zodiac DAO Rug Pull
Date Event Description
December 23rd, 2021 11:04:00 PM MST Last Github Update The project completed their last Github update to the "Zodiac Supply Endpoint"[10].
January 4th, 2022 12:41:00 PM MST CertiK Community Leaderboard The CertiK Community Leaderboard shares a tweet which reports that the Zodiac DAO project has rugpulled and their Twitter account is deactivated. They advise the community to not interact with this project and state they are looking into it further[11].
January 5th, 2022 1:45:01 AM MST Karma Finance Video YouTube channel Karma Finance reports on the rug pull and resulting price crash[12]. The price was reportedly trading well above the $10-$20 mark, but at the time of the video there was a 100% drop and the website is completely "banished". It references the "CertiK Security Leaderboard" post confirmation and reports that the community is closely monitoring the situation.

Technical Details

This section includes specific detailed technical analysis of any security breaches which happened. What specific software vulnerabilities contributed to the problem and how were they exploited?

Total Amount Lost

The total amount lost is unknown.

How much was lost and how was it calculated? If there are conflicting reports, which are accurate and where does the discrepancy lie?

Immediate Reactions

How did the various parties involved (firm, platform, management, and/or affected individual(s)) deal with the events? Were services shut down? Were announcements made? Were groups formed?


[13]


"We’ve received inbounds that may indicate high risks regarding to a project named Zodiac DAO. The twitter account is gone and we wish the community DYOR enough before interacting with the dApp."


CertiK Security Leaderboard Tweet

The CertiK Security Leaderboard shared a Tweet to warn the community[11].

"#zodiacdao has been identified as a #rugpull. Their twitter account @zodiacdao_bep20 has been deactivated.

The team is currently looking into it.

DO NOT interact with this project!"


Karma Finance YouTube Video

YouTube channel Karma Finance reports on the rug pull and resulting price crash[12]. The price was reportedly trading well above the $10-$20 mark, but at the time of the video there was a 100% drop and the website is completely "banished". It references the "CertiK Security Leaderboard" post confirmation and reports that the community is closely monitoring the situation.

Ultimate Outcome

What was the end result? Was any investigation done? Were any individuals prosecuted? Was there a lawsuit? Was any tracing done?

Total Amount Recovered

There do not appear to have been any funds recovered in this case.

What funds were recovered? What funds were reimbursed for those affected users?

Ongoing Developments

What parts of this case are still remaining to be concluded?

Individual Prevention Policies

No specific policies for individual prevention have yet been identified in this case.

Any time that you are promised any profit or benefit in exchange for an initial payment, smart contract approval, or deposit, pay special care as to whether the entity making that offer is trustworthy, actually who they say they are, and has the means to fulfill what they're promising. There are no magic algorithms providing guaranteed returns from trading or mining. Trading on average will lose money. Mining is expensive and complex. No one is going to immediately send back more than you sent them. NFT projects will rarely announce a surprise mint in only a single location. Are you fully prepared for the event your money is kept and nothing is delivered in return?

For the full list of how to protect your funds as an individual, check our Prevention Policies for Individuals guide.

Platform Prevention Policies

Policies for platforms to take to prevent this situation have not yet been selected in this case.

Work with other industry platforms to set up a multi-signature wallet with private keys held separately by delegate signatories from seven prominent platforms and services within the industry. Establish requirements for contributions by all platforms and services, designed to be affordable for small platforms yet large enough to cover anticipated breach events. Any breach event can be brought forth by a member platform or a petition of 100 signatures for consideration by the delegate signatories. A vote of 4 or more delegate signatures is required to release any funds, which could partially or fully restore lost funds based on their assessment.

For the full list of how to protect your funds as a financial service, check our Prevention Policies for Platforms guide.

Regulatory Prevention Policies

No specific regulatory policies have yet been identified in this case.

All platforms should undergo published security and risk assessments by independent third parties. Two assessments are required at founding or major upgrade, one after 3 months, and one every 6 months thereafter. The third parties must not repeat within the past 14 months. A risk assessment needs to include what assets back customer deposits and the risk of default from any third parties being lent to. The security assessment must include ensuring a proper multi-signature wallet, and that all signatories are properly trained. Assessments must be performed on social media, databases, and DNS security.

Set up a multi-signature wallet with private keys held separately by delegate signatories from seven prominent platforms and services within the industry. Establish requirements for contributions by all platforms and services within the country, designed to be affordable for small platforms yet large enough to cover anticipated breach events. Any breach event can be brought forth by a member platform or a petition of 100 signatures for consideration by the delegate signatories. A vote of 4 or more delegate signatures is required to release any funds, which could partially or fully restore lost funds based on their assessment.

For the full list of regulatory policies that can prevent loss, check our Prevention Policies for Regulators guide.

References