All public logs
Jump to navigation
Jump to search
Combined display of all available logs of Quadriga Initiative Cryptocurrency Hacks, Scams, and Frauds Repository. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).
- 22:08, 27 January 2023 Azoundria talk contribs uploaded File:Pizzadefi.jpg
- 22:08, 27 January 2023 Azoundria talk contribs created page BoosterToken Malicious Front-End (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/boostertokenmaliciousfrontend.php}} thumb|BoosterTokenThe BoosterToken project swapped their front-end for a malicious front-end after getting a CertiK audit, enabling them to steal at least 120 BNB. Anyone who fell for the migration code on the website had their entire wallet drained of any funds. The website is presently offline and it does not appear that any recovery...")
- 22:07, 27 January 2023 Azoundria talk contribs created page File:Boostertoken.jpg
- 22:07, 27 January 2023 Azoundria talk contribs uploaded File:Boostertoken.jpg
- 22:07, 27 January 2023 Azoundria talk contribs created page 8ight Finance Private Key Leak (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/8ightfinanceprivatekeyleak.php}} thumb|8ight Finance8ight Finance was launching an 8-ball themed DAO on the Harmony blockchain. According to the official story, the private key was shared through Google Docs and Facebook, and either of the two admins had access to it. All $1.75m was taken from the treasury. The team offered to disburse $250k of marketing budget or relaunc...")
- 22:07, 27 January 2023 Azoundria talk contribs created page File:8ightfinance.jpg
- 22:07, 27 January 2023 Azoundria talk contribs uploaded File:8ightfinance.jpg
- 22:07, 27 January 2023 Azoundria talk contribs created page Polygon Critical Exploit Fixed (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/polygoncriticalexploitfixed.php}} thumb|PolygonThe Polygon smart chain contained a critical vulnerability which would have allowed for the full drainage of all funds in the network. This was due to an additional function in the smart contract named transferWithSig, which didn't have the proper validation. Due to having a bug bounty, the issue was reported by a couple of white...")
- 22:07, 27 January 2023 Azoundria talk contribs created page BitMart Hot Wallet Security Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/bitmarthotwalletsecuritybreach.php}} thumb|BitMartBitMart is one of the largest cryptocurrency exchange platforms in the globe. On December 4th, two of their hot wallets were breached and $196m worth of various assets were rapidly withdrawn. After the initial confusion, the company started their investigation. Limited information has been revealed publicly, however the company...")
- 22:06, 27 January 2023 Azoundria talk contribs created page Fake Liquidity Mining Scams (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/fakeliquidityminingscams.php}} thumb|VariousVarious fake website have been set up which claim to offer a liquidity mining service. Users will click a button "Receive" which authorizes a smart contract with spend access to their funds. In many wallets such as the CoinBase wallet, details of the transaction are not even provided to users. Scammers will sometimes give...")
- 22:06, 27 January 2023 Azoundria talk contribs created page File:Coinbasewalletclub.jpg
- 22:06, 27 January 2023 Azoundria talk contribs uploaded File:Coinbasewalletclub.jpg
- 22:06, 27 January 2023 Azoundria talk contribs created page CryptBot within KMSPico Trojan (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/cryptbotwithinkmspicotrojan.php}} thumb|CryptBotThe CryptBot is malware which can commonly be downloaded when pirating software, such as Windows license circumvention. Once downloaded, the software will report information from multiple programs including common cryptocurrency wallets. While multiple victims have lost funds, it's unclear and nearly impossible to determine how...")
- 22:06, 27 January 2023 Azoundria talk contribs created page File:Cryptbot.jpg
- 22:06, 27 January 2023 Azoundria talk contribs uploaded File:Cryptbot.jpg
- 22:06, 27 January 2023 Azoundria talk contribs created page BadgerDAO Malicious Code Injected (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/badgerdaomaliciouscodeinjected.php}} thumb|BadgerDAOBadgerDAO suffered a massive attack on their smart contract hot wallets. In this case, the vulnerability was not inherently in the contract, but they were tricked into adding an additional API connection, which allowed the attacker to inject malicious code. So far, the security of the smart contract has een improved and 40%...")
- 22:05, 27 January 2023 Azoundria talk contribs created page File:Badgerdao.jpg
- 22:05, 27 January 2023 Azoundria talk contribs uploaded File:Badgerdao.jpg
- 22:05, 27 January 2023 Azoundria talk contribs created page MonoX Software Bug (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/monoxsoftwarebug.php}} thumb|MonoXThe blockchain project MonoX had their smart contract hot wallets breached and $31m of user funds were taken. As a new project, they didn't have much funds available to assist their users, however they are working on a compensation plan. This is a global/international case not involving a specific country. == About MonoX == "MonoX is a...")
- 22:05, 27 January 2023 Azoundria talk contribs created page File:Monoxprotocol.jpg
- 22:05, 27 January 2023 Azoundria talk contribs uploaded File:Monoxprotocol.jpg
- 22:05, 27 January 2023 Azoundria talk contribs created page Baby Yooshi Liquidity Restrictions (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/babyyooshiliquidityrestrictions.php}} thumb|Baby YooshiThe Baby Yooshi token could be bought but not freely sold, which led to a price rising without the ability to sell. The website is presently offline although Twitter remains. This is a global/international case not involving a specific country. == About Baby Yooshi == "The friendly tiny dinosaur BABY YOOSHI. will fini...")
- 22:04, 27 January 2023 Azoundria talk contribs created page File:Babyyooshi.jpg
- 22:04, 27 January 2023 Azoundria talk contribs uploaded File:Babyyooshi.jpg
- 22:04, 27 January 2023 Azoundria talk contribs created page Lever Network Flash Loan Attack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/levernetworkflashloanattack.php}} thumb|Lever NetworkDespite two audits by CertiK, the Lever Network's smart contract hot wallet was still vulnerable to exploit due to a missing check. The funds were taken from the hacker. Because there wasn't an extreme amount of loss, the team was able to reimburse the loss from their own wallets. This is a global/international case no...")
- 22:04, 27 January 2023 Azoundria talk contribs created page File:Levernetwork.jpg
- 22:04, 27 January 2023 Azoundria talk contribs uploaded File:Levernetwork.jpg
- 22:04, 27 January 2023 Azoundria talk contribs created page Visor Finance Arbitrage Attack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/visorfinancearbitrageattack.php}} thumb|Visor FinanceVisor Finance liquidity pool suffered from an arbitrage attack, which drained at least $773k of funds. The team has promised upgrades to the smart contract hot wallet and all funds will be reimbursed. This is a global/international case not involving a specific country. == About Visor Finance == "Visor Finance is a U...")
- 22:04, 27 January 2023 Azoundria talk contribs created page SnowDog DAO Liquidity Blocked (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/snowdogdaoliquidityblocked.php}} thumb|SnowDog DAOThe SnowDog DAO was a new token with a ridiculously high APY, which was managed by an anonymous team. The ability to sell the tokens was opened up on a smaller liquidity platform, which wasn't expected by the community, and this was initially password-protected. When the password was removed, it was discovered that many of t...")
- 22:03, 27 January 2023 Azoundria talk contribs created page File:Snowdogdao.jpg
- 22:03, 27 January 2023 Azoundria talk contribs uploaded File:Snowdogdao.jpg
- 22:03, 27 January 2023 Azoundria talk contribs created page Ploutoz Finance Oracle Attack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/ploutozfinanceoracleattack.php}} thumb|Ploutoz FinancePloutoz Finance is an audited decentralized lending platform on the Binance Smart Chain. Despite their audit, the protocol's smart contract hot wallet was still vulnerable to an oracle price exploit through a flash loan. $365k of funds were taken. There is no evidence of any funds being returned. This is a global/in...")
- 22:03, 27 January 2023 Azoundria talk contribs created page File:Ploutozfinance.jpg
- 22:03, 27 January 2023 Azoundria talk contribs uploaded File:Ploutozfinance.jpg
- 22:03, 27 January 2023 Azoundria talk contribs created page Celo Optics Project Team Misconduct (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/celoopticsprojectteammisconduct.php}} thumb|CeloOptics Protocol is a cross-chain bridge as part of the Celo platform. Multi-signature permissions were replaced on the protocol by one of the developers. The wrong developer was accused. No funds appear to have been lost due to the development error. This is a global/international case not involving a specific country. == About Ce...")
- 22:03, 27 January 2023 Azoundria talk contribs created page File:Celo.jpg
- 22:03, 27 January 2023 Azoundria talk contribs uploaded File:Celo.jpg
- 22:02, 27 January 2023 Azoundria talk contribs created page Olympus DAO Team Ops Failure (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/olympusdaoteamopsfailure.php}} thumb|Olympus DAOOlympus DAO runs a protocol with a treasury backing the assets, aiming to maintain a minimum price floor. One of their bonds backing a liquidity pool was accidentally left online when not intended, resulting in an attacker being able to exploit that at a significant profit. It's unclear if any losses were covered by the projec...")
- 22:02, 27 January 2023 Azoundria talk contribs created page File:Olympusdao.jpg
- 22:02, 27 January 2023 Azoundria talk contribs uploaded File:Olympusdao.jpg
- 22:02, 27 January 2023 Azoundria talk contribs created page Ribbon Finance Accounting Bug (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/ribbonfinanceaccountingbug.php}} thumb|Ribbon FinanceRibbon Finance realized on November 23rd that, due to a bug in their smart contract, users were being overcharged. The platform compensated affected users in full based on what was overcharged. This is a global/international case not involving a specific country. == About Ribbon Finance == "SUSTAINABLE ALPHA FOR EVER...")
- 22:02, 27 January 2023 Azoundria talk contribs created page HyperFund Ponzi Scheme (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/hyperfundponzischeme.php}} thumb|HyperFundHyperfund is a blockchain company with no products or services, however investors may participate by paying money, which will supposedly generate a passive return. They also can get paid even more by recruiting others to join. In the end, however, the site disappeared, key owners are hiding away, and regulators seem upset. Hyperfund...")
- 22:02, 27 January 2023 Azoundria talk contribs created page Unlock Protocol Private Key Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/unlockprotocolprivatekeybreach.php}} thumb|Unlock ProtocolThe Unlock Protocol is a smart contract utility which allows services to create membership systems easily. Two of the bridges providing liquidity against xDAI and Polygon were run using an exposed private key from one of the founders. The key enabled the attacker tp upgrade the smart contract and remove 50,000 to...")
- 22:01, 27 January 2023 Azoundria talk contribs created page Formation Finance Flash Loan Vulnerability (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/formationfinanceflashloanvulnerability.php}} thumb|Formation FinanceFormation Finance is a risk management service which offers synthetic products with particular risk profiles to help retail investors manage the risks in their profile. An unknown amount of money was taken from the liquidity pool smart contract hot wallet via a flash loan exploit. The situation was qu...")
- 22:01, 27 January 2023 Azoundria talk contribs created page File:Formationfinance.jpg
- 22:01, 27 January 2023 Azoundria talk contribs uploaded File:Formationfinance.jpg
- 22:01, 27 January 2023 Azoundria talk contribs created page Phantom Galaxies Discord Malware Attack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/phantomgalaxiesdiscordmalwareattack.php}} thumb|Phantom GalaxiesThe Phantom Galaxies, by Animoca Brands, is a sci-fi NFT game where users mint tokens. The official discord for the project was taken over by attackers who compromised a single device of one of the project leads which held both factors in a 2FA. This allowed the attackers to post links to a malicious websi...")
- 22:01, 27 January 2023 Azoundria talk contribs created page File:Phantomgalaxies.jpg
- 22:01, 27 January 2023 Azoundria talk contribs uploaded File:Phantomgalaxies.jpg
- 22:01, 27 January 2023 Azoundria talk contribs created page Coffin Dollar Stablecoin Depegs (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/coffindollarstablecoindepegs.php}} thumb|Coffin DollarCoffin Finance offers a prtially collateralized stablecoin on the Fantom blockchain. The peg was lost near the end of November 2021, after the protocol published a Medium article that seemed to question their own security. After a buy-back proposal failed to restore the peg, allowing it to drop all the way to a low of...")