All public logs
Jump to navigation
Jump to search
Combined display of all available logs of Quadriga Initiative Cryptocurrency Hacks, Scams, and Frauds Repository. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).
- 15:43, 27 August 2025 Azoundria talk contribs created page Equilibria Finance Reward Mechanism stk-ePendle Balance Hack (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/equilibriafinancerewardmechanismstkependlebalancehack.php}} {{Unattributed Sources}} thumb|Equilibria FinanceEquilibria Finance, a DeFi platform built around the Pendle Finance ecosystem, experienced an exploit in its Ethereum auto-compounder due to a misconfigured contract that allowed reward farming through repeated transfers. The attacker drained approx...")
- 15:43, 27 August 2025 Azoundria talk contribs created page File:Equilibriafinance.jpg
- 15:43, 27 August 2025 Azoundria talk contribs uploaded File:Equilibriafinance.jpg
- 15:43, 27 August 2025 Azoundria talk contribs created page ShibaSwap Treasure Finder Convert() EOA Restriction Bypass (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/shibaswaptreasurefinderconverteoarestrictionbypass.php}} {{Unattributed Sources}} thumb|ShibaSwap Logo/HomepageA vulnerability in the ShibaSwap: Treasure Finder smart contract led to an exploit resulting in an estimated $27,000 loss. The issue stemmed from the convert() function lacking slippage protection during LEASH-to-WETH swaps, making it vulnerable to sandwi...")
- 15:42, 27 August 2025 Azoundria talk contribs created page BNB Token Drain After Granting Multicall3 Contract Approval (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/bnbtokendrainaftergrantingmulticall3contractapproval.php}} {{Unattributed Sources}} thumb|Binance Security ImageA user or contract mistakenly approved token spending rights to the Multicall3 contract, a generic batching utility with no internal access controls, allowing an attacker to exploit that approval and drain approximately 41 BNB (around $36,000) by forwardi...")
- 15:42, 27 August 2025 Azoundria talk contribs created page Coinbase MainnetSettler Approve Bug Hold Token Theft 2 (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/coinbasemainnetsettlerapprovebugholdtokentheft2.php}} {{Unattributed Sources}} thumb|Coinbase Building/LogoCoinbase, a major cryptocurrency platform known for its security and broad user base, had a second repeat of a previous vulnerability in their Mainnet Settler smart contract, which led to an exploit. A wallet which has approved permissions on this contract all...")
- 15:41, 27 August 2025 Azoundria talk contribs created page GrizziFi milestoneReward Mechanism collectRefBonus Exploit (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/grizzifimilestonerewardmechanismcollectrefbonusexploit.php}} {{Unattributed Sources}} thumb|Grizzifi Demo Site Logo/HomepageGrizziFi was a decentralized finance (DeFi) platform launched on the Binance Smart Chain on August 12, 2025, offering BNB staking with attractive fixed returns and a 17-level passive income system. While it promoted itself as a secure, comm...")
- 15:41, 27 August 2025 Azoundria talk contribs created page File:Grizzifiapp.jpg
- 15:41, 27 August 2025 Azoundria talk contribs uploaded File:Grizzifiapp.jpg
- 15:41, 27 August 2025 Azoundria talk contribs created page WXC Token Smart Contract Token Burn Mechanism Triggered (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/wxctokensmartcontracttokenburnmechanismtriggered.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe WXC smart contract was launched on the Binance Smart Chain. Shortly after, a vulnerability in its token burn mechanism—specifically triggered when selling tokens to the pair—was exploited by an attacker. As a result, approximately $30.9k was st...")
- 15:41, 27 August 2025 Azoundria talk contribs created page Ethereum ZeroTransfer Address Pollution Phishing Twice (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/ethereumzerotransferaddresspollutionphishingtwice.php}} {{Unattributed Sources}} thumb|Ethereum Address PoisoningAn Ethereum address fell victim to an address pollution phishing attack. The attacker created a similar-looking wallet address to impersonate the intended recipient’s address. Due to the visual similarity, the victim mistakenly sent fun...")
- 15:40, 27 August 2025 Azoundria talk contribs created page YDT Yellow Duck Token proxyTransfer Backdoor Exploited (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/ydtyellowducktokenproxytransferbackdoorexploited.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe Yellow Duck Token (YDT), launched on May 24th, suffered a \$41.4k loss due to a vulnerability—or possible backdoor—in its `proxyTransfer()` function, which allowed an attacker to transfer tokens from any address using a privileged account; the...")
- 15:40, 27 August 2025 Azoundria talk contribs created page DAOSquare Treasury RICE Exploit Theft New Token Recovery (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/daosquaretreasuryriceexploittheftnewtokenrecovery.php}} {{Unattributed Sources}} thumb|DAOSquare Logo/HomepageDAOSquare, a decentralized platform for launching and investing in Venture DAOs, suffered a security breach due to improper access controls in its smart contracts, allowing an attacker to withdraw RICE tokens without restriction. The exploit led to losses...")
- 15:40, 27 August 2025 Azoundria talk contribs created page File:Daosquare.jpg
- 15:40, 27 August 2025 Azoundria talk contribs uploaded File:Daosquare.jpg
- 15:40, 27 August 2025 Azoundria talk contribs created page IRYS AI Programmable Blockchain Revolution Backdoor Rug Pull (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/irysaiprogrammableblockchainrevolutionbackdoorrugpull.php}} {{Unattributed Sources}} thumb|IRYS AI Logo/HomepageIRYS AI was promoted as a groundbreaking blockchain platform enabling programmable, on-chain data interaction for smart contracts and AI agents. It introduced a multi-ledger architecture, the IrysVM execution layer, and a hybrid consensus model, positioning...")
- 15:40, 27 August 2025 Azoundria talk contribs created page File:Irysai.jpg
- 15:40, 27 August 2025 Azoundria talk contribs uploaded File:Irysai.jpg
- 15:38, 27 August 2025 Azoundria talk contribs created page MapleStory Universe NXPC PancakeSwap Arbitrage Opportunity (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/maplestoryuniversenxpcpancakeswaparbitrageopportunity.php}} {{Unattributed Sources}} thumb|MapleStory Universe Logo/Homepage<ref name="tenarmortweet-20846" /><ref name="bscscantransaction-20847" /><ref name="soong1911tweet-20848" /><ref name="qashnfttweet-20849" /><ref name="nxpccontract-20850" /><ref name="nxpccreation-20851" /><ref name="nxpccoinmarketca...")
- 15:38, 27 August 2025 Azoundria talk contribs created page File:Maplestoryuniverse.jpg
- 15:38, 27 August 2025 Azoundria talk contribs uploaded File:Maplestoryuniverse.jpg
- 15:38, 27 August 2025 Azoundria talk contribs created page AIBlockmind Block DevManage Set Using Official Private Key (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/aiblockmindblockdevmanagesetusingofficialprivatekey.php}} {{Unattributed Sources}} thumb|Binance Security ImageAiBlockmind, a smart contract deployed on March 5, 2025, was heavily promoted starting mid-February but ultimately suffered a breach or was malicious by design. A wallet with "DevManage" permissions minted additional Block tokens, which were sold fo...")
- 15:37, 27 August 2025 Azoundria talk contribs created page X3 Unverified BSC Smart Contract Suspicious Attack Transaction (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/x3unverifiedbscsmartcontractsuspiciousattacktransaction.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe X3 unverified smart contract, created on May 7th, was found to have a vulnerability that led to a reported loss of $131.4K USD, according to blockchain security firm TenArmor. No technical analysis of the exploit has been conducted, and asid...")
- 15:37, 27 August 2025 Azoundria talk contribs created page Term Finance tETH Decimal Precision Mismatch Liquidations (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/termfinancetethdecimalprecisionmismatchliquidations.php}} {{Unattributed Sources}} thumb|Term Finance Logo/HomepageTerm Finance, a decentralized lending platform offering fixed-rate crypto loans via on-chain auctions, experienced an incident caused by an internal human error during an update to the tETH price oracle. Specifically, a decimal precision mismatch be...")
- 15:37, 27 August 2025 Azoundria talk contribs created page File:Termfinance.jpg
- 15:37, 27 August 2025 Azoundria talk contribs uploaded File:Termfinance.jpg
- 15:37, 27 August 2025 Azoundria talk contribs created page Zora BaseSettler BaseSettlerMetaTxn Mistakenly Claimable (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/zorabasesettlerbasesettlermetatxnmistakenlyclaimable.php}} {{Unattributed Sources}} thumb|Zora Network Logo/HomepageZora, an onchain social network aimed at empowering creators through decentralized tools and the $ZORA token, suffered a smart contract vulnerability due to human error. The team mistakenly set claimable tokens for contracts that could execute arbi...")
- 15:36, 27 August 2025 Azoundria talk contribs created page File:Zoranetwork.jpg
- 15:36, 27 August 2025 Azoundria talk contribs uploaded File:Zoranetwork.jpg
- 15:36, 27 August 2025 Azoundria talk contribs created page BTNFT Contract BTT Rewards Not Validating NFT Ownership (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/btnftcontractbttrewardsnotvalidatingnftownership.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe BTNFT smart contract was deployed, though its connection to BitTorrent remains uncertain. A vulnerability in the contract's logic allowed anyone to exploit the reward mechanism by transferring BTNFT tokens to the contract without needing to prove N...")
- 15:36, 27 August 2025 Azoundria talk contribs created page Sola Unverified Contract withdrawToken Lacking Access Control (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/solaunverifiedcontractwithdrawtokenlackingaccesscontrol.php}} {{Unattributed Sources}} thumb|Binance Security ImageAn unverified smart contract at address 0x623c—possibly linked to the Sola Token—was exploited due to a critical lack of access control on its withdrawToken() function, allowing anyone to transfer tokens from it. The attacker used a maliciou...")
- 15:36, 27 August 2025 Azoundria talk contribs created page Unknown Contract uniswapV3SwapCallback Lacks Access Control (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/unknowncontractuniswapv3swapcallbacklacksaccesscontrol.php}} {{Unattributed Sources}} thumb|Base Blockchain Logo/HomepageA base blockchain wallet was exploited due to a vulnerability in its smart contract, specifically a lack of access control on the uniswapV3SwapCallback() function. This flaw allowed attackers to easily exploit the contract, resulting in an...")
- 15:35, 27 August 2025 Azoundria talk contribs created page Morpho Labs Bundler3 Misconfiguration Drains User Wallet (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/morpholabsbundler3misconfigurationdrainsuserwallet.php}} {{Unattributed Sources}} thumb|Morpho Labs Logo/HomepageMorpho experienced a front-end incident caused by a misconfigured SDK update during the transition from Bundler2 to Bundler3, which mistakenly directed token approvals to the Bundler3 contract rather than its adapters. This oversight left a bundled tra...")
- 15:35, 27 August 2025 Azoundria talk contribs created page File:Morpholabs.jpg
- 15:35, 27 August 2025 Azoundria talk contribs uploaded File:Morpholabs.jpg
- 15:35, 27 August 2025 Azoundria talk contribs created page Poofknuckle Ancient Ethereum Mixing Test Contract Exploited (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/poofknuckleancientethereummixingtestcontractexploited.php}} {{Unattributed Sources}} thumb|Ethereum FoundationLaundromat, a decentralized Ethereum mixer developed by BitBoost, aimed to provide transaction privacy by allowing users to mix ETH in sessions via smart contracts and ring signatures. Though initially well-received as an experimental privacy tool...")
- 15:34, 27 August 2025 Azoundria talk contribs created page Mochi DeFi Contract Multiple Transactions Suspicious Attack (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/mochideficontractmultipletransactionssuspiciousattack.php}} {{Unattributed Sources}} thumb|Mochi DeFi Logo/HomepageMochiFi, a DeFi platform that enabled users to use digital assets and NFTs as collateral to borrow its native stablecoin USDM, suffered a security breach due to a vulnerability in its smart contract. This led to a suspicious transaction resulting in a...")
- 15:34, 27 August 2025 Azoundria talk contribs created page File:Mochidefi.jpg
- 15:34, 27 August 2025 Azoundria talk contribs uploaded File:Mochidefi.jpg
- 15:34, 27 August 2025 Azoundria talk contribs created page AIRWA Access Control Public Burn Rate Function Exploited (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/airwaaccesscontrolpublicburnratefunctionexploited.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe $AIRWA token on Binance Smart Chain was exploited due to a critical vulnerability in its smart contract. Launched just a day earlier, the contract lacked access control on its setBurnRate() function, allowing anyone to change the token’s burn ra...")
- 15:34, 27 August 2025 Azoundria talk contribs created page Alkimiya SilicaPools uint128 Truncation Unsafe Downcasting (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/alkimiyasilicapoolsuint128truncationunsafedowncasting.php}} {{Unattributed Sources}} thumb|AlkimiyaAlkimiya, a protocol for trading on real blockchain and macroeconomic metrics, was recently targeted in a sophisticated exploit due to an unsafe type cast (from uint256 to uint128) in its SilicaPools contract. The attacker used a flash loan to exploit this truncation...")
- 15:33, 27 August 2025 Azoundria talk contribs created page File:Alkimiya.jpg
- 15:33, 27 August 2025 Azoundria talk contribs uploaded File:Alkimiya.jpg
- 15:31, 27 August 2025 Azoundria talk contribs created page Coinbase MainnetSettler Approval Issue Hold Token Theft 1 (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/coinbasemainnetsettlerapprovalissueholdtokentheft1.php}} {{Unattributed Sources}} thumb|Coinbase Building/LogoCoinbase, a major cryptocurrency platform known for its security and broad user base, had a vulnerability in their Mainnet Settler smart contract, which led to an exploit. A wallet which has approved permissions on this contract allowed an attacker to execu...")
- 15:31, 27 August 2025 Azoundria talk contribs created page HMS HMagician Smart Contract Burn Mechanism Exploited (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/hmshmagiciansmartcontractburnmechanismexploited.php}} {{Unattributed Sources}} thumb|Binance Security ImageA recently deployed HMS (short for HMagician) smart contract contained a vulnerability in its burn mechanism. This flaw was exploited, leading to an estimated loss of approximately $94.6K, according to a report by TenArmor. The project does not appear t...")
- 14:38, 27 August 2025 Azoundria talk contribs created page ABCCApp USDT Overclaim addFixedDay Access Control Missing (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/abccappusdtoverclaimaddfixeddayaccesscontrolmissing.php}} {{Unattributed Sources}} thumb|Binance Security ImageThe ABCCApp smart contract on Binance Smart Chain allowed users to claim daily stablecoin rewards but contained a critical vulnerability due to a missing access control on the addFixedDay function. This function was essential in calculating claimabl...")
- 14:38, 27 August 2025 Azoundria talk contribs created page Missing Access Control in uniswapV3SwapCallback Function (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/missingaccesscontrolinuniswapv3swapcallbackfunction.php}} {{Unattributed Sources}} thumb|Analysis Of Malicious TransactionA recent exploit on the Base chain targeted a smart contract at address 0x8d2e, resulting in a $40,000 loss in USDC due to improper access control on the uniswapV3SwapCallback function. This function is a core part of Uniswap V...")
- 14:37, 27 August 2025 Azoundria talk contribs created page File:Uniswapv3weakaccesscontrol.jpg
- 14:37, 27 August 2025 Azoundria talk contribs uploaded File:Uniswapv3weakaccesscontrol.jpg
- 14:37, 27 August 2025 Azoundria talk contribs created page ImToken Third Party Selling Pre-Initialized Secure Cold Wallet (Created page with "{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/imtokenthirdpartysellingpreinitializedsecurecoldwallet.php}} {{Unattributed Sources}} thumb|imToken Logo/Homepage, Screenshots Of SellerimToken is a popular non-custodial digital wallet used by over 20 million people across 150+ countries, offering secure access to a wide range of blockchain networks including Bitcoin, Ethereum, and TRON. A victim lost 4.35 BTC...")