Sunday, March 12, 2023
  • Login
  • Register
Islet Crypto
  • Home
  • Crypto News
  • Bitcoin
  • Ethereum
  • BSC
  • Altcoins
  • Defi
  • NFT
  • Mining
  • Metaverse
  • Videos
No Result
View All Result
  • Home
  • Crypto News
  • Bitcoin
  • Ethereum
  • BSC
  • Altcoins
  • Defi
  • NFT
  • Mining
  • Metaverse
  • Videos
No Result
View All Result
Islet Crypto
No Result
View All Result
Home Altcoins

Statemind Saves Avalanche & Others Half A Billion In Crypto

Islet crypto by Islet crypto
September 9, 2022
in Altcoins
0
Statemind Saves Avalanche & Others Half A Billion In Crypto
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


Exploits have been regularly plaguing the blockchain industry and DeFi protocols like never before. Nearly each passing day there is another horror story of a well-known protocol being drained of funds by hackers through an exploit that could have been caught in advance. Even worse is the impact the news can have on the community of the impacted cryptocurrency, which can crash in value and lose valuable support. 

This is exactly why a critical vulnerability and an anonymous white hat tipster captivated the crypto community recently and led to a widespread public investigation on Twitter between top blockchain developers. But who exactly was behind the discovery that saved the cryptocurrency industry a combined more than $650 million in value? 

Here are the details of the incident and how it spiraled into a widespread search for the blockchain security auditing firm behind the discovery. We’ll also reveal exactly who the heroes are. 

Why Crypto Twitter Launched An Investigation Into An Anonymous Tipster

Emerging technologies are put through rigorous stress tests using the public as the beta testers. Although more often than not the development team has the purest intentions, even the tiniest vulnerability can be exploited so no stones can be left unturned when it comes to clean and secure code. 

Yet it is impossible to read crypto media headlines without stumbling upon story after story of millions of dollars lost in a matter of moments. Affected projects can struggle to recover, and the community suffers as a result. Developers are usually stuck delivering the bad news to the community about what exactly happened and why, and then reluctantly receiving the backlash and fallout. 

But a recent example that was trending on Twitter was one of the rare happy endings that has captured the heart of the crypto community. An anonymous tipster saved several top crypto protocols — such as Avalanche (AVAX), Abracadabra (MIM), SushiSwap (SUSHI), and others — as much as half a billion dollars in value.  

White Hat Discovery Leads To More Than $650M In Cryptocurrency Saved 

Estimated damages and would-be victims include Avalanche at roughly $350M; Abracadabra at around $300M worth of MIM tokens and an additional $3M in user funds; Nereus Finance with nearly $60M in NXUSD tokens; and roughly $100K in funds from SUSHI lending. There is also an unknown impact related to the Boba Network. 

Given the enormous amount of funds kept safe, developers of the affected protocols took to Twitter in search of the anonymous tipster who sent their discovery to ImmuneFi. It began with SushiSwap core dev Matthew Lilley, who tweeted on the topic and got the investigation trending. 

Kashi Markets on Avalanche were whitehacked following the discovery of an attack vector introduced by the Native Asset Call precompile on Avalanche. Sushi team was able to validate the report, which was submitted by a whitehacker on @immunefi, by crafting a simple PoC. 1/6

— I’m Software 🦇🔊 (@MatthewLilley) September 8, 2022

In the hours following, a domino-effect of developers began to come forward and reveal the vulnerability and work on an immediate fix.

1/🧙🏼‍♂️!

We have been notified of a possible vulnerability on our Avalanche cauldrons.

No user funds have been lost, the vulnerability is now patched and all collateral has been secured.

📖 Read more about our post mortem here👇🏻https://t.co/2HSvPkugEs

— 🧙🏼‍♂️ (@MIM_Spell) September 8, 2022

Avalanche, Abracadabra, And Others Come Forward With The Humble Hero

It wasn’t until just today when Ava Labs Head of Engineering Patrick O’Grady took to Twitter to express thanks to Statemind, which later stepped forward as the blockchain security firm to discover the vulnerability widely. 

👀👀@statemindio came forward as the anonymous whitehat who tipped off the teams involved: https://t.co/MmG4hkkad7

Thanks again for all your work to alert the community of the issue! 🫡

— Patrick “The Faucet” O’Grady 🔺 (@_patrickogrady) September 8, 2022

The official Abracadabra Twitter account also expressed their deep thanks for calling attention to the critical vulnerability and saving the crypto community for yet another horror story. 

🧙🏼‍♂️!

We would like to deeply thank the auditing firm @statemindio for reporting the vulnerability mentioned in our latest announcement. 🔮

Thanks to their report we have managed to secure all the funds and work together with @avalancheavax to patch the vulnerability!🔥

— 🧙🏼‍♂️ (@MIM_Spell) September 8, 2022

 

The vulnerabilities were fixed in record time. Both Avalanche and Abracadabra have shared a post mortem on the situation. Other affected blockchains are likely to follow and provide transparency to the community at large. 

Who Is The Team Behind The White Hat Heroics?

Who exactly is the team behind the discovery? We were in touch with a blogger who also works with the company to learn more. 

I know the anonymous hackers that disclosed the exploit to @avalancheavax @MIM_Spell & @SushiSwap

saving $3m in user funds and 300m $MIM tokens

if you’re a crypto journalist looking for comments/exclusive details from the team that found the exploit let me know 🙂 https://t.co/3B8axWjYqS

— notEezzy 🧸 (@notEezzy) September 8, 2022

Blockchain security auditing firm Statemind reviewed the code of ten top blockchain protocols in search of custom precompiles that could be potentially dangerous. Past experiences, the blockchain auditing firm explained, has shown that custom precompiles can be increasingly dangerous in the right environment. 

According to the research, Avalanche and others had a precompile “that allowed for arbitrary calls to be routed through the precompile that relay msg.sender.” For some protocols, that meant that anyone could make calls on behalf of the protocol’s contract. 

Statemind.io is a leading blockchain security auditing company with over 100,000 LoC of Solidity and Vyper experience. This vast experience has led to more than $10B in TVL secured and the firm placed in 14th in the Paradigm CTF 2022. Thanks to Statemind, all “funds are SAFU,” and the cryptocurrency industry has a new white hat hero. 





Source link

Related articles

Huobi Token Plunges 90% In Minutes, Sparks Insolvency Rumors

Huobi Token Plunges 90% In Minutes, Sparks Insolvency Rumors

March 10, 2023
Esports Organization TSM Signs On With Avalanche For New Gaming Subnet

Esports Organization TSM Signs On With Avalanche For New Gaming Subnet

March 8, 2023
Share76Tweet47

Related Posts

Huobi Token Plunges 90% In Minutes, Sparks Insolvency Rumors

Huobi Token Plunges 90% In Minutes, Sparks Insolvency Rumors

by Islet crypto
March 10, 2023
0

Huobi Token (HT) has emerged at the center of insolvency rumors following a shocking performance on Thursday. Following the plunge...

Esports Organization TSM Signs On With Avalanche For New Gaming Subnet

Esports Organization TSM Signs On With Avalanche For New Gaming Subnet

by Islet crypto
March 8, 2023
0

Crypto engagement isn’t over and done with for esports org TSM. While the powerhouse esports player was in the midst...

Binance CEO “Shot By FBI” In Fake News Report

Binance CEO “Shot By FBI” In Fake News Report

by Islet crypto
March 3, 2023
0

The crypto market is rife with oddities. The lack of regulation has allowed meme coins, bizarre experiments, and more to...

Celsius Commences Withdrawals Eight Months After Filing For Bankruptcy

Celsius Commences Withdrawals Eight Months After Filing For Bankruptcy

by Islet crypto
March 3, 2023
0

Crypto lender firm Celsius has announced that customers can now withdraw their assets from its platform eight months after the...

Polygon Labs launches decentralised ID solution for Web3

Polygon Labs launches decentralised ID solution for Web3

by Islet crypto
March 2, 2023
0

Polygon has launched Polygon ID, decentralised identity solution powered by zero-knowledge proofs. The privacy-focused service offers 4 tools to help...

Load More
  • Trending
  • Comments
  • Latest
Terra Luna Classic (LUNC) Crypto Price Prediction October 2022

Terra Luna Classic (LUNC) Crypto Price Prediction October 2022

October 5, 2022
Top 10 Crypto Ransomware Attacks Took $69M in BTC Payments, Chainalysis Laid Off 5% of Workforce, TeraWulf Starts Public Offering of Common Stock

Top 10 Crypto Ransomware Attacks Took $69M in BTC Payments, Chainalysis Laid Off 5% of Workforce, TeraWulf Starts Public Offering of Common Stock

February 2, 2023
Can the Metaverse exist without blockchain?

Can the Metaverse exist without blockchain?

September 20, 2022
JPMorgan CEO Jamie Dimon Calls Bitcoin ‘Hyped-up Fraud’ — Expects Satoshi Nakamoto to Increase BTC Supply Cap – Featured Bitcoin News

JPMorgan CEO Jamie Dimon Calls Bitcoin ‘Hyped-up Fraud’ — Expects Satoshi Nakamoto to Increase BTC Supply Cap – Featured Bitcoin News

January 21, 2023
Crypto News: ETH Crash, SEC, Do Kwon, Terra, CPI & MORE!

Crypto News: ETH Crash, SEC, Do Kwon, Terra, CPI & MORE!

50
The Crypto Market Just FLIPPED

The Crypto Market Just FLIPPED

50
The Worst Crypto Market Crash is Here

The Worst Crypto Market Crash is Here

50
Crypto Market Latest News Updates BTC ETH XRP MBOX LUNC Price Analysis Prediction

Crypto Market Latest News Updates BTC ETH XRP MBOX LUNC Price Analysis Prediction

50
TRON launches $100M artificial intelligence-focused Fund

Crypto price predictions: Litecoin, Bitcoin Cash, Tron

March 12, 2023
Billionaire Warns of Imminent Bank Runs if Government Fails to Guarantee All SVB Deposits – Economics Bitcoin News

Billionaire Warns of Imminent Bank Runs if Government Fails to Guarantee All SVB Deposits – Economics Bitcoin News

March 12, 2023
Ripple’s Modernized Treasury Management Solutions Open Access to Emerging Markets for Startups –

Ripple’s Modernized Treasury Management Solutions Open Access to Emerging Markets for Startups –

March 12, 2023
Rich Dad Poor Dad Author Robert Kiyosaki Warns Another Bank Is Set to Crash – Featured Bitcoin News

Rich Dad Poor Dad Author Robert Kiyosaki Warns Another Bank Is Set to Crash – Featured Bitcoin News

March 12, 2023
Facebook Twitter Instagram

Islet Crypto is a Crypto News and Articles website based in the Caribbean that is dedicated to educating and informing the public on cryptocurrency, Bitcoin and technology.

Categories

  • Altcoins
  • Bitcoin
  • BSC
  • Crypto News
  • Defi
  • Ethereum
  • Metaverse
  • Mining
  • NFT
  • Uncategorized
  • Videos

Site Links

  • Home
  • Contact
  • Privacy Policy
  • Terms of use
  • DMCA

© 2022 All rights reserved.

No Result
View All Result
  • Home
  • Crypto News
  • Bitcoin
  • Ethereum
  • BSC
  • Altcoins
  • Defi
  • NFT
  • Mining
  • Metaverse
  • Videos
  • Login
  • Sign Up

© 2022 All rights reserved.

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.Read More
.
Cookie SettingsAccept
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT