All public logs
Jump to navigation
Jump to search
Combined display of all available logs of Quadriga Initiative Cryptocurrency Hacks, Scams, and Frauds Repository. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).
- 14:57, 27 January 2023 Azoundria talk contribs created page PERI Finance ChainSwap Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/perifinancechainswapbreach.php}} thumb|PERI FinancePERI Finance is a derivates protocol and liquidity provider. Their token used ChainSwap to exist on multiple blockchains, which required some funds to be stored in the smart contract hot wallet. The ChainSwap bridge was hacked, and the attacker was able to obtain the tokens, some of which were sold. The platform froze the...")
- 14:57, 27 January 2023 Azoundria talk contribs created page File:Perifinance.jpg
- 14:57, 27 January 2023 Azoundria talk contribs uploaded File:Perifinance.jpg
- 14:57, 27 January 2023 Azoundria talk contribs created page FEI Protocol ChainSwap Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/feiprotocolchainswapbreach.php}} thumb|FEI ProtocolFei Protocol is a new stablecoin. Some of their tokens use ChainSwap to exist on multiple blockchains, which required some funds to be stored in the smart contract hot wallet. The ChainSwap bridge was hacked, and the attacker was able to obtain tokens from many projects, which were sold. Fei Protocol was listed as being a...")
- 14:56, 27 January 2023 Azoundria talk contribs created page FM Gallery ChainSwap Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/fmgallerychainswapbreach.php}} thumb|FM GalleryFM Gallery is a service which enables the sale and purchase of NFTs. Their token used ChainSwap to exist on multiple blockchains, which required some funds to be stored in the smart contract hot wallet. The ChainSwap bridge was hacked, and the attacker was able to obtain the tokens, which were sold. A delayed announcement was p...")
- 14:56, 27 January 2023 Azoundria talk contribs created page File:Fmgallery.jpg
- 14:56, 27 January 2023 Azoundria talk contribs uploaded File:Fmgallery.jpg
- 14:56, 27 January 2023 Azoundria talk contribs created page CORRA Finance ChainSwap Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/corrafinancechainswapbreach.php}} thumb|CORRA FinanceCorra Finance is a service which enables the sale and purchase of NFTs. Their token used ChainSwap to exist on multiple blockchains, which required some funds to be stored in the smart contract hot wallet. The ChainSwap bridge was hacked, and the attacker was able to obtain the tokens, which were sold. ChainSwap was ab...")
- 14:56, 27 January 2023 Azoundria talk contribs created page File:Corrafinance.jpg
- 14:56, 27 January 2023 Azoundria talk contribs uploaded File:Corrafinance.jpg
- 14:55, 27 January 2023 Azoundria talk contribs created page ANTIMatter Finance ChainSwap Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/antimatterfinancechainswapbreach.php}} thumb|ANTIMatter FinanceAntiMatter Finance is a service which simplified derivatives trading. Their token used ChainSwap to exist on multiple blockchains, which required some funds to be stored in the smart contract hot wallet. The ChainSwap bridge was hacked, and the attacker was able to obtain the tokens, which were sold. AntiMatter...")
- 14:55, 27 January 2023 Azoundria talk contribs created page File:Antimatter.jpg
- 14:55, 27 January 2023 Azoundria talk contribs uploaded File:Antimatter.jpg
- 14:54, 27 January 2023 Azoundria talk contribs created page Defi Plaza Integer Overflow (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/defiplazaintegeroverflow.php}} thumb|Defi PlazaDefi Plaza was a complex exchange platform focused on optimization to reduce gas fees. To facilitate faster exchanges, all the funds were stored in a smart contract hot wallet. The hot wallet was breached due to an integer overflow which was possible when a balance was 0. This was used multiple times to extract funds. The team...")
- 14:54, 27 January 2023 Azoundria talk contribs created page File:Defiplaza.jpg
- 14:54, 27 January 2023 Azoundria talk contribs uploaded File:Defiplaza.jpg
- 14:54, 27 January 2023 Azoundria talk contribs created page Dora Factory ChainSwap Exploit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/dorafactorychainswapexploit.php}} thumb|Dora FactoryDora Factory is a service which assists in creating decentralized governance. Their token used ChainSwap to exist on multiple blockchains, which required some funds to be stored in the smart contract hot wallet. The ChainSwap bridge was hacked, and the attacker was able to obtain the tokens, which were sold. Dora has bee...")
- 14:54, 27 January 2023 Azoundria talk contribs created page File:Dorafactory.jpg
- 14:54, 27 January 2023 Azoundria talk contribs uploaded File:Dorafactory.jpg
- 14:53, 27 January 2023 Azoundria talk contribs created page Umbrella Network ChainSwap Exploit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/umbrellanetworkchainswapexploit.php}} thumb|Umbrella NetworkUmbrella Network provides a price oracle. The UMB token, used by the oracle, could be swapped between chains using the ChainSwap bridge. As part of this process, a large number of UMB tokens were stored in a smart contract hot wallet. There was also a minting function which was accessible to the external smart...")
- 14:53, 27 January 2023 Azoundria talk contribs created page File:Umbrellanetwork.jpg
- 14:53, 27 January 2023 Azoundria talk contribs uploaded File:Umbrellanetwork.jpg
- 14:53, 27 January 2023 Azoundria talk contribs created page DAO Ventures ChainSwap Exploit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/daoventureschainswapexploit.php}} thumb|DAO VenturesDAO Ventures is a robo-advisor and automated investing service for DeFi users. As part of this, they offer users the ability to move between chains using the ChainSwap protocol. The protocol depends on storing funds in a smart contract hot wallet, which was breached. This is a global/international case not involving a s...")
- 14:53, 27 January 2023 Azoundria talk contribs created page File:Daoventures.jpg
- 14:53, 27 January 2023 Azoundria talk contribs uploaded File:Daoventures.jpg
- 14:52, 27 January 2023 Azoundria talk contribs created page DAFI Protocol ChainSwap Attack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/dafiprotocolchainswapattack.php}} thumb|DAFI ProfocolThe DAFI protocol smart contract for cross-chain swapping had a vulnerability, which allowed $200,000 to be removed. The protocol has agreed to a buyback to reimburse those affected. This is a global/international case not involving a specific country. == About DAFI Profocol == "DAFI is building an entirely new incen...")
- 14:52, 27 January 2023 Azoundria talk contribs created page File:Dafiprotocol.jpg
- 14:52, 27 January 2023 Azoundria talk contribs uploaded File:Dafiprotocol.jpg
- 14:52, 27 January 2023 Azoundria talk contribs created page AnySwap ECDSA Exploit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/anyswapecdsaexploit.php}} thumb|AnyswapRather than use a multi-sig, AnySwap funds were locked in a complex MPC (multi-party computation) protocol. In an MPC there is only one private key, which multiple parties have partial information for. The MPC protocol counts on uniquely generated "R" values, and having repeated "R" values allows an attacker to deduce the private key. Any...")
- 14:51, 27 January 2023 Azoundria talk contribs created page File:Anyswap.jpg
- 14:51, 27 January 2023 Azoundria talk contribs uploaded File:Anyswap.jpg
- 14:51, 27 January 2023 Azoundria talk contribs created page Bitmart BSV 51% Attack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/bitmartbsv51attack.php}} thumb|BitmartBitmart operates a large crypto-asset exchange platform, which includes BSV. On BSV, there are well documented and regular 51% attacks, which occur due to a lack of mining power. Securing against a 51% attack generally consists of implementing a large enough number of confirmations before a deposit is accepted. Bitmart did not secure thems...")
- 14:51, 27 January 2023 Azoundria talk contribs created page File:Bitmart.jpg
- 14:51, 27 January 2023 Azoundria talk contribs uploaded File:Bitmart.jpg
- 14:50, 27 January 2023 Azoundria talk contribs created page Helios Cash Runs Off (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/helioscashrunsoff.php}} thumb|Helios CashThe Helios Cash project was started by an anonymous team (possibly even an individual). The project used various techniques to gain trust and credibility before using an exploit that they'd built into the platform to make off with everyone's funds. This is a global/international case not involving a specific country. == About Helio...")
- 14:50, 27 January 2023 Azoundria talk contribs created page File:Helioscash.jpg
- 14:50, 27 January 2023 Azoundria talk contribs uploaded File:Helioscash.jpg
- 14:49, 27 January 2023 Azoundria talk contribs created page Fake Crypto Mining Applications on Google Play (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/fakecryptominingapplicationsongoogleplay.php}} Hundreds of applications on the Google Play store claim to mine cryptocurrency, and in fact don't do any such function. Over 93,000 people downloaded these applications and believed they were accumulating cryptocurrency, some even purchasing upgrades to the application to improve their position. In total, customers paid at least $350,000 to download...")
- 14:49, 27 January 2023 Azoundria talk contribs created page Overflow0X Physical Cryptocurrency Robbery (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/overflow0xphysicalcryptocurrencyrobbery.php}} Reddit user Overflow0X from Morocco reports having his phone stolen by a physical threat with a knife. Limited details are provided in his account of events in which his phone was taken and presumably used to gain access to his cryptocurrency trading accounts. Because the physical phone was used as his 2-factor authentication, he had it registered with...")
- 14:49, 27 January 2023 Azoundria talk contribs created page DEXTools Token Minting (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/dextoolstokenminting.php}} thumb|DEXToolsDexTools offers a suite of information services for crypto-asset investors. They fund the operation through a DEXT token. Unfortunately, the hacker appears to have been able to mint new tokens, and sold those for $1.2m. This is a global/international case not involving a specific country. == About DEXTools == "Real-time data analysis...")
- 14:48, 27 January 2023 Azoundria talk contribs created page ChainSwap ETH Exploit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/chainswapethexploit.php}} thumb|ChainSwapChainSwap is a smart contract which gives users the ability to move tokens between chains using their protocol. The protocol depends on storing funds in smart contract hot wallets. On July 2nd, an exploit allowed attackers to steal $800k from the smart contract. ChainSwap is using their treasury to recover the losses. This is a glo...")
- 14:48, 27 January 2023 Azoundria talk contribs created page File:Chainswap.jpg
- 14:48, 27 January 2023 Azoundria talk contribs uploaded File:Chainswap.jpg
- 14:48, 27 January 2023 Azoundria talk contribs created page DDEX XDX Swap Backdoor (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/ddexxdxswapbackdoor.php}} thumb|DDEXThe DDEX XDX Swap project is an exchange platform operating on the HECO blockchain. The funds were stored in a smart contract hot wallet, which was exploited to take $5m USD worth of assets. A node governance maneuver allowed the funds to be returned from the attacker's wallet. This is a global/international case not involving a specific count...")
- 14:48, 27 January 2023 Azoundria talk contribs created page NFTX Asset Validation Error (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/nftxassetvalidationerror.php}} thumb|NFTXNFTX is a NFT trading platform. During a contract upgrade, a transaction involving two NFTs was frontrun and the NFTs were taken. The tokens needed to be repurchased for 6 ETH. It's unclear if this affected any users of the platform. This is a global/international case not involving a specific country. == About NFTX == "Buy, sell, and sw...")
- 14:48, 27 January 2023 Azoundria talk contribs created page File:Nftx.jpg
- 14:48, 27 January 2023 Azoundria talk contribs uploaded File:Nftx.jpg
- 14:47, 27 January 2023 Azoundria talk contribs created page Yearn Finance Liquidation Vulnerability (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/yearnfinanceliquidationvulnerability.php}} thumb|Yearn FinanceYearn Finance offers a large variety of tools, including a leveraged strategy referred to as "GenLevComp". That strategy, and a few others, had funds stored in smart contract hot wallets for leverage. The funds were removed from the contracts into a safe vault, and the vulnerabilities were fixed. A bounty of $...")
- 14:46, 27 January 2023 Azoundria talk contribs created page Merlin Labs Profit Inflation Vulnerability (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/merlinlabsprofitinflationvulnerability.php}} thumb|Merlin LabsThe newly deployed (and not yet intended to be public) Merlin Labs smart contract allowed the attacker to profit a higher value in MERL by sending a smaller amount of BNB. This was obviously a good deal, and the attacker took full advantage of it before mixing their funds on Tornado. As a result, Merlin Labs clo...")
- 14:45, 27 January 2023 Azoundria talk contribs created page Haven Protocol Triple Attack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/havenprotocoltripleattack.php}} thumb|Haven ProtocolHaven Protocol is a complex blockchain focused around privacy. There were at least 3 vulnerabilities in the blockchain, which allowed the minting of a significant number of additional tokens, which were then sold by the hacker. The Haven Protocol has subsequently rolled back the largest attack and focused extensively o...")