From February 26, 2024 to March 3, 2024, all security incidents that had occurred can be categorized into Security Hacks and Rug-pulls.
SECURITY HACKS:
1. Serenity Shield Suffers Exploit
On February 28, a BNB chain deployed dApp Serenity Shield@SerenityShield_ suffered an exploit.
The root cause of this incident was that its private key of was compromised.
7 million SERSH tokens on the BNB chain were exploited in this incident.
2. Seneca Suffers Exploit
On February 29, an Ethereum deployed dApp Seneca@SenecaUSD suffered an exploit.
The root cause of this incident was that the authorization was stolen.
The attacker is 0x94641c01a4937f2C8eF930580cF396142a2942DC on Ethereum.
1900 ETHs worth around US $6.5 million were exploited in this incident.
3. Shido Suffers Exploit
On February 29, an Ethereum deployed dApp Shido@ShidoGlobal suffered an exploit.
The attacker addresses are 0x4621e0cD8c91ECF1b0eFCBF07f0838a5ee25C5DD and 0x1982358C84DA9D0b4B96FC9e8564d132f7d0041F on ETH.
956 ETHs worth around US 3.2 million were exploited in this incident.
RUG-PULLS:
1. RiskonBlast Rug-pull
On February 26, a Blast (Ethereum layer 2 solution) deployed application @RiskonBlast was confirmed to be a rug-pull.
At the time of writing all the information on its X account had been removed.
420 ETHs worth US $1.25 million were exploited in this rug-pull.
2. GPT Token Rug-pull
On February 27, a BNB chain deployed token GPT was confirmed to be a rug-pull.
The token is deployed at 0x4349031b3a29ddb70c16982673a6b7a4b6ec3226 on the BNB chain.
Crypto assets worth around US $250,000 were exploited in this incident.
The price of $GPT dropped nearly 100.00% after the rug-pull.
CONCLUSION-
5 notable security incidents have occurred in the past week. Three were attacks on smart contracts or wallets and two were rug-pulls.
A Reminder for Project Teams: Always test thoroughly. Do smart contract audits before deploying smart contracts on-chain. Be alert to any anomalies happening in the various social media accounts you manage.
A Reminder for Crypto Users: Be cautious about suspicious links, emails, websites, and projects launched by teams without established reputations.
It is important for everyone in the crypto community to gain understanding and practice sufficient levels of cybersecurity.
To stay updated on notable security incidents in the world of Web3.0, subscribe to our newsletter:
For a better understanding of all things Web3.0: https://medium.com/@FairyproofT
Looking to strengthen the security of your project or looking for an audit? Contact us at
https://www.fairyproof.com/