User contributions for Azoundria
Jump to navigation
Jump to search
27 August 2025
- 15:3815:38, 27 August 2025 diff hist 0 N File:Maplestoryuniverse.jpg No edit summary current
- 15:3815:38, 27 August 2025 diff hist +6,747 N AIBlockmind Block DevManage Set Using Official Private Key Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/aiblockmindblockdevmanagesetusingofficialprivatekey.php}} {{Unattributed Sources}} thumb|Binance Security ImageAiBlockmind, a smart contract deployed on March 5, 2025, was heavily promoted starting mid-February but ultimately suffered a breach or was malicious by design. A wallet with "DevManage" permissions minted additional Block tokens, which were sold fo..." current
- 15:3715:37, 27 August 2025 diff hist +3,594 N X3 Unverified BSC Smart Contract Suspicious Attack Transaction Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/x3unverifiedbscsmartcontractsuspiciousattacktransaction.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe X3 unverified smart contract, created on May 7th, was found to have a vulnerability that led to a reported loss of $131.4K USD, according to blockchain security firm TenArmor. No technical analysis of the exploit has been conducted, and asid..." current
- 15:3715:37, 27 August 2025 diff hist +11,967 N Term Finance tETH Decimal Precision Mismatch Liquidations Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/termfinancetethdecimalprecisionmismatchliquidations.php}} {{Unattributed Sources}} thumb|Term Finance Logo/HomepageTerm Finance, a decentralized lending platform offering fixed-rate crypto loans via on-chain auctions, experienced an incident caused by an internal human error during an update to the tETH price oracle. Specifically, a decimal precision mismatch be..." current
- 15:3715:37, 27 August 2025 diff hist 0 N File:Termfinance.jpg No edit summary current
- 15:3715:37, 27 August 2025 diff hist +6,627 N Zora BaseSettler BaseSettlerMetaTxn Mistakenly Claimable Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/zorabasesettlerbasesettlermetatxnmistakenlyclaimable.php}} {{Unattributed Sources}} thumb|Zora Network Logo/HomepageZora, an onchain social network aimed at empowering creators through decentralized tools and the $ZORA token, suffered a smart contract vulnerability due to human error. The team mistakenly set claimable tokens for contracts that could execute arbi..." current
- 15:3615:36, 27 August 2025 diff hist 0 N File:Zoranetwork.jpg No edit summary current
- 15:3615:36, 27 August 2025 diff hist +5,515 N BTNFT Contract BTT Rewards Not Validating NFT Ownership Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/btnftcontractbttrewardsnotvalidatingnftownership.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe BTNFT smart contract was deployed, though its connection to BitTorrent remains uncertain. A vulnerability in the contract's logic allowed anyone to exploit the reward mechanism by transferring BTNFT tokens to the contract without needing to prove N..." current
- 15:3615:36, 27 August 2025 diff hist +6,461 N Sola Unverified Contract withdrawToken Lacking Access Control Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/solaunverifiedcontractwithdrawtokenlackingaccesscontrol.php}} {{Unattributed Sources}} thumb|Binance Security ImageAn unverified smart contract at address 0x623c—possibly linked to the Sola Token—was exploited due to a critical lack of access control on its withdrawToken() function, allowing anyone to transfer tokens from it. The attacker used a maliciou..." current
- 15:3615:36, 27 August 2025 diff hist +4,371 N Unknown Contract uniswapV3SwapCallback Lacks Access Control Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/unknowncontractuniswapv3swapcallbacklacksaccesscontrol.php}} {{Unattributed Sources}} thumb|Base Blockchain Logo/HomepageA base blockchain wallet was exploited due to a vulnerability in its smart contract, specifically a lack of access control on the uniswapV3SwapCallback() function. This flaw allowed attackers to easily exploit the contract, resulting in an..." current
- 15:3515:35, 27 August 2025 diff hist +10,857 N Morpho Labs Bundler3 Misconfiguration Drains User Wallet Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/morpholabsbundler3misconfigurationdrainsuserwallet.php}} {{Unattributed Sources}} thumb|Morpho Labs Logo/HomepageMorpho experienced a front-end incident caused by a misconfigured SDK update during the transition from Bundler2 to Bundler3, which mistakenly directed token approvals to the Bundler3 contract rather than its adapters. This oversight left a bundled tra..." current
- 15:3515:35, 27 August 2025 diff hist 0 N File:Morpholabs.jpg No edit summary current
- 15:3515:35, 27 August 2025 diff hist +8,158 N Poofknuckle Ancient Ethereum Mixing Test Contract Exploited Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/poofknuckleancientethereummixingtestcontractexploited.php}} {{Unattributed Sources}} thumb|Ethereum FoundationLaundromat, a decentralized Ethereum mixer developed by BitBoost, aimed to provide transaction privacy by allowing users to mix ETH in sessions via smart contracts and ring signatures. Though initially well-received as an experimental privacy tool..." current
- 15:3415:34, 27 August 2025 diff hist +6,313 N Mochi DeFi Contract Multiple Transactions Suspicious Attack Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/mochideficontractmultipletransactionssuspiciousattack.php}} {{Unattributed Sources}} thumb|Mochi DeFi Logo/HomepageMochiFi, a DeFi platform that enabled users to use digital assets and NFTs as collateral to borrow its native stablecoin USDM, suffered a security breach due to a vulnerability in its smart contract. This led to a suspicious transaction resulting in a..." current
- 15:3415:34, 27 August 2025 diff hist 0 N File:Mochidefi.jpg No edit summary current
- 15:3415:34, 27 August 2025 diff hist +7,105 N AIRWA Access Control Public Burn Rate Function Exploited Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/airwaaccesscontrolpublicburnratefunctionexploited.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe $AIRWA token on Binance Smart Chain was exploited due to a critical vulnerability in its smart contract. Launched just a day earlier, the contract lacked access control on its setBurnRate() function, allowing anyone to change the token’s burn ra..." current
- 15:3415:34, 27 August 2025 diff hist +10,065 N Alkimiya SilicaPools uint128 Truncation Unsafe Downcasting Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/alkimiyasilicapoolsuint128truncationunsafedowncasting.php}} {{Unattributed Sources}} thumb|AlkimiyaAlkimiya, a protocol for trading on real blockchain and macroeconomic metrics, was recently targeted in a sophisticated exploit due to an unsafe type cast (from uint256 to uint128) in its SilicaPools contract. The attacker used a flash loan to exploit this truncation..." current
- 15:3315:33, 27 August 2025 diff hist 0 N File:Alkimiya.jpg No edit summary current
- 15:3115:31, 27 August 2025 diff hist +6,302 N Coinbase MainnetSettler Approval Issue Hold Token Theft 1 Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/coinbasemainnetsettlerapprovalissueholdtokentheft1.php}} {{Unattributed Sources}} thumb|Coinbase Building/LogoCoinbase, a major cryptocurrency platform known for its security and broad user base, had a vulnerability in their Mainnet Settler smart contract, which led to an exploit. A wallet which has approved permissions on this contract allowed an attacker to execu..." current
- 15:3115:31, 27 August 2025 diff hist +3,813 N HMS HMagician Smart Contract Burn Mechanism Exploited Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/hmshmagiciansmartcontractburnmechanismexploited.php}} {{Unattributed Sources}} thumb|Binance Security ImageA recently deployed HMS (short for HMagician) smart contract contained a vulnerability in its burn mechanism. This flaw was exploited, leading to an estimated loss of approximately $94.6K, according to a report by TenArmor. The project does not appear t..." current
- 14:3814:38, 27 August 2025 diff hist +4,718 N ABCCApp USDT Overclaim addFixedDay Access Control Missing Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/abccappusdtoverclaimaddfixeddayaccesscontrolmissing.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe ABCCApp smart contract on Binance Smart Chain allowed users to claim daily stablecoin rewards but contained a critical vulnerability due to a missing access control on the addFixedDay function. This function was essential in calculating claimabl..." current
- 14:3814:38, 27 August 2025 diff hist +10,071 N Missing Access Control in uniswapV3SwapCallback Function Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/missingaccesscontrolinuniswapv3swapcallbackfunction.php}} {{Unattributed Sources}} thumb|Analysis Of Malicious TransactionA recent exploit on the Base chain targeted a smart contract at address 0x8d2e, resulting in a $40,000 loss in USDC due to improper access control on the uniswapV3SwapCallback function. This function is a core part of Uniswap V..." current
- 14:3714:37, 27 August 2025 diff hist 0 N File:Uniswapv3weakaccesscontrol.jpg No edit summary current
- 14:3714:37, 27 August 2025 diff hist +8,400 N ImToken Third Party Selling Pre-Initialized Secure Cold Wallet Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/imtokenthirdpartysellingpreinitializedsecurecoldwallet.php}} {{Unattributed Sources}} thumb|imToken Logo/Homepage, Screenshots Of SellerimToken is a popular non-custodial digital wallet used by over 20 million people across 150+ countries, offering secure access to a wide range of blockchain networks including Bitcoin, Ethereum, and TRON. A victim lost 4.35 BTC..." current
- 14:3714:37, 27 August 2025 diff hist 0 N File:Imtokendrain.jpg No edit summary current
- 14:3614:36, 27 August 2025 diff hist +6,838 N LotteryTicket50 Smart Contract Nalakuvara Tokens Frained Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/lotteryticket50smartcontractnalakuvaratokensfrained.php}} {{Unattributed Sources}} thumb|Base Blockchain Logo/HomepageA critical vulnerability in the `LotteryTicketSwap50` contract was exploited due to flawed logic in how it calculated ticket value and handled liquidity. Specifically, the contract used fixed ticket valuations and lacked slippage protection, a..." current
- 14:3614:36, 27 August 2025 diff hist +5,358 N YB Token Sandwich Attack Due To No Slippage Protection Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/ybtokensandwichattackduetonoslippageprotection.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe YB token smart contract, launched on May 18th, 2024, had a vulnerability in its _tokenTransfer function, which automatically triggers a bot to perform token swaps without proper slippage protection. This flaw allowed attackers to manipulate token pri..." current
- 14:3614:36, 27 August 2025 diff hist +15,276 N LibertyCoin LibertyLife LibertyUseCase Price Manipulation Attack Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/libertycoinlibertylifelibertyusecasepricemanipulationattack.php}} {{Unattributed Sources}} thumb|Liberty Coin/Liberty Life Logo/HomepageLiberty Life, a DeFi project built around Liberty Coin (LBTC) on Binance Smart Chain, recently suffered a major exploit due to a flaw in its new smart contract. The vulnerability stemmed from relying on PancakeSwap’s spot pric..." current
- 14:3614:36, 27 August 2025 diff hist 0 N File:Libertycoin.jpg No edit summary current
- 14:3514:35, 27 August 2025 diff hist +8,213 N OPC Token Flawed Sell Burn Mechanism Price Logic Exploited Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/opctokenflawedsellburnmechanismpricelogicexploited.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe OPC smart contract on Binance Smart Chain contained a critical flaw in its sell function that caused the token’s price to rise instead of fall during sales. This backwards logic stemmed from burning OPC tokens directly from the liquidity pool e..." current
1 August 2025
- 14:0614:06, 1 August 2025 diff hist +6,811 N MOne Meta Pro App Allows Anyone To Unwrap Their ETH Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/monemetaproappallowsanyonetounwraptheireth.php}} {{Unattributed Sources}} thumb|MOne Meta Pro App Logo/HomepagemOne, a superapp combining payments, entertainment, and identity management, suffered a security breach due to a vulnerability in its base blockchain infrastructure. Specifically, the `unwrapWETH()` function in the `MPRODoubleRewardAutoStake` contrac..." current
- 14:0614:06, 1 August 2025 diff hist 0 N File:Monemetaproapp.jpg No edit summary current
31 July 2025
- 16:5416:54, 31 July 2025 diff hist +9,532 N VDS V-Dimension BEP20 Smart Contract Business Logic Flaw Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/vdsvdimensionbep20smartcontractbusinesslogicflaw.php}} {{Unattributed Sources}} thumb|Binance Security ImageA smart contract at address 0x6ce69d7146dbaae18c11c36d8d94428623b29d5a, associated with a token named "BEP-20: V-Dimension (VDS)," was exploited due to a vulnerability. An attacker manipulated the contract to over-mint and over-redeem synthetic tokens..." current
- 16:5316:53, 31 July 2025 diff hist +4,874 N TokenVault Old Smart Contract Exploited Similarly To Bankroll Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/tokenvaultoldsmartcontractexploitedsimilarlytobankroll.php}} {{Unattributed Sources}} thumb|Binance Security ImageA 2021 smart contract named TokenVault, created by "donfunction.bnb" was deployed with a critical vulnerability. Similar to the Bankroll exploit, this flaw allowed attackers to drain funds from users who had granted the contract unlimited token p..." current
- 16:5316:53, 31 July 2025 diff hist +5,610 N KRC Smart Contract Deflationary Mechanism Burn Exploit Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/krcsmartcontractdeflationarymechanismburnexploit.php}} {{Unattributed Sources}} thumb|Binance Security ImageAn attacker exploited a vulnerability in the KRC smart contract on Binance Smart Chain by bypassing `transfer()` restrictions to burn tokens from the liquidity pair during sell swaps, ultimately profiting $37.1k in USDT through a deflationary mechanism..." current
29 July 2025
- 17:5917:59, 29 July 2025 diff hist +3,108 Curve Finance Curve.Fi DNS Hijack Malicious Frontend No edit summary current
- 17:5817:58, 29 July 2025 diff hist +659 Ether.fi Domain Name Failed Takeover Attempt No edit summary current
- 17:5317:53, 29 July 2025 diff hist +14,238 N SuperRare updateMerkleRoot Backwards Permission Check Logic Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/superrareupdatemerklerootbackwardspermissionchecklogic.php}} {{Unattributed Sources}} thumb|SuperRare Logo/HomepageSuperRare, a high-end digital art marketplace known for its curated one-of-one crypto artworks and artist-centric community, recently suffered a critical exploit in its RareStakingV1 smart contract. A flaw in the access control logic of the updateMerk..."
- 17:5217:52, 29 July 2025 diff hist 0 N File:Superrare.jpg No edit summary current
28 July 2025
- 17:5617:56, 28 July 2025 diff hist −1,032 Alex Lab Private Key Compromise No edit summary current
- 17:5417:54, 28 July 2025 diff hist −2,947 Nexo Disabling Withdrawals Forcing Token Sale No edit summary current
- 17:5217:52, 28 July 2025 diff hist +75 Pantera Capital HubSpot Data Breach and Pantera Coin Fraud No edit summary current
- 17:4917:49, 28 July 2025 diff hist +2,712 BitoPro XRP Partial Payment Theft No edit summary current
- 17:4817:48, 28 July 2025 diff hist +8,974 N Swapp Protocol Old Ethereum Staking Smart Contract Drained Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/swappprotocololdethereumstakingsmartcontractdrained.php}} {{Unattributed Sources}} thumb|Swapp Protocol Logo/Twitter BannerSwapp Protocol was a decentralized finance (DeFi) platform launched in 2021 on the Ethereum blockchain, aiming to give users control over their personal data and allow them to monetize it through its native SWAPP token. Despite innovative featur..." current
- 17:4717:47, 28 July 2025 diff hist 0 N File:Swappee.jpg No edit summary current
- 17:4717:47, 28 July 2025 diff hist +14,578 N CoinDCX Sophisticated Server Breach Precise Cross-Chain Heist Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/coindcxsophisticatedserverbreachprecisecrosschainheist.php}} {{Unattributed Sources}} thumb|CoinDCX Logo/HomepageCoinDCX suffered a sophisticated hack that drained approximately $44.3 million from an internal operational account used for liquidity, without impacting customer funds. The attackers used cross-chain transfers, mixers, and bridges to launder the stole..." current
- 17:4717:47, 28 July 2025 diff hist 0 N File:Coindcxcom.jpg No edit summary current
- 17:4617:46, 28 July 2025 diff hist +10,509 N Arcadia Finance Rebalancer swapData Delegated Power Abuse Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/arcadiafinancerebalancerswapdatadelegatedpowerabuse.php}} {{Unattributed Sources}} thumb|Arcadia Finance Logo/HomepageArcadia Finance, a DeFi platform known for its automated liquidity strategies, was exploited via its rebalancer contract, which allowed arbitrary "swapData" execution. The attacker stole approximately $3.5 million in assets, including 2.3M USD..." current
- 17:4617:46, 28 July 2025 diff hist 0 N File:Arcadiafinance.jpg No edit summary current
- 17:4517:45, 28 July 2025 diff hist +7,688 N Plasma Network USDT0 Liquidity Pool Twitter/X Takeover Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/plasmanetworkusdt0liquiditypooltwitterxtakeover.php}} {{Unattributed Sources}} thumb|Plasma Network Logo/HomepagePlasma has announced a strategic partnership with USD₮0 to enhance cross-chain stablecoin transfers, enabling zero-fee, instant USD₮ (Tether) transactions across major blockchains like Ethereum and Tron. This collaboration aims to simplify and s..." current