Fun

ParaSwap evades hack targeting Augustus v6 contract vulnerability

News Feed - 2024-03-20 05:03:34

Arijit Sarkar34 minutes agoParaSwap evades hack targeting Augustus v6 contract vulnerabilityParaSwap paused the V6 API soon after discovering the vulnerability and secured the potential victims’ funds through a white hack. Plans to reimburse potential victims are underway.175 Total views10 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksDecentralized finance (DeFi) aggregator ParaSwap discovered a vulnerability in its newly launched Augustus V6 contract and prevented a colossal loss of funds through timely white hat intervention.


On March 18, the ParaSwap Augustus v6 went live, promising greater efficiency in swapping gas fees than all its preceding contracts. The contract contained a critical vulnerability that would allow hackers to drain funds when approved.


Soon after discovering the vulnerability, on March 20, ParaSwap paused the v6 application prog interface (API) and secured the potential victims’ funds through a white hack.Source: ParaSwap


ParaSwap advised all users to revoke permissions to the Augustus v6 contract to avoid further loss of funds until the vulnerability is neutralized.


Despite ParaSwap’s proactive effort to roll back the vulnerable v6 contract and inform users to take necessary steps as well, the hacker managed to cash out funds worth roughly $24,000 from four different addresses.


In total, ParaSwap revealed that 386 addresses were affected by the vulnerability. The protocol also asked users to report any loss of funds that may have gone unidentified during the preliminary investigation.ParaSwap identified 386 wallet addresses being affected by the Augustus Vv contract vulnerability. Source: paraswap.notion.site


In addition, ParaSwap also deactivated the support for the vulnerable v6 contract on its recently updated user interface (UI) and reverted to using v5. “We have successfully recovered funds for all addresses, and more details about the refund process will be shared soon,” the company added.


ParaSwap did not immediately respond to Cointelegraph’s request for comment.


Affected users remain at risk as long as they haven’t revoked their approvals, so ParaSwap recommends individuals use exploit checker services like Revoke to confirm their safety. Check out Cointelegraph’s guide on how to identify and mitigate smart contract vulnerabilities.


Related:Old Trust Wallet iOS vulnerability from 2018 may still affect some accounts


Generative artificial intelligence (AI) tools like the ChatGPT-4 are good at generating and parsing codes. However, the tools fail to perform as a fully reliable security auditor.


According to a recently published research paper from a pair of researchers from Salus Security, a blockchain security company with offices in North America, Europe and Asia:“GPT-4 can be a useful tool in assisting with smart contract auditing, especially in code parsing and providing vulnerability hints. However, given its limitations in vulnerability detection, it cannot fully replace professional auditing tools and experienced auditors at this time.”


According to their findings, ChatGPT is good at detecting true positives — actual vulnerabilities that, outside of a testing environment, would be worth investigating. It reached greater than 80% precision in testing.


Magazine:South Africa’s digital-nomad crypto hub: Cape Town, Crypto City Guide# Blockchain# Smart Contracts# Hackers# CODE# Hacks# DeFiAdd reactionAdd reactionRead moreTrezor X account shills fake presale tokens in suspected hackSygnum bank to tokenize $50M of Matter Labs’ reserves for transparencySquare Enix invests in Web3 and NFT gaming platform HyperPlay

News Feed

Judith BannermanQuist6 hours agoCFTC issues $54M default judgment against trader in crypto fraud schemeAs a result of the judgment, the defendant is also now prohibited from engaging in any trading activities within mark
Digital Ruble: Russia Unveils Plans to Test Central Bank Digital Currency
Digital Ruble: Russia Unveils Plans to Test Central Bank Digital Currency As China is actively testing its digital yuan, Russia is now planning to build and test
Brace For Impact: Court Orders Massive LUNC Burn As Part Of $4.5 Billion Settlement For Terraform Labs
Este artículo también está disponible en español. The Terra Classic communityis preparing for a supply shock that the LUNC coin could soon face. This is based on a court
SEC Chairman Explains Why He Views All Crypto Tokens Other Than Bitcoin as Securities
SEC Chairman Explains Why He Views All Crypto Tokens Other Than Bitcoin as Securities U.S. Securities and Exchange Commission (SEC) Chairman Gary Gensler has detailed why he consid
South African Crypto Token Holders Concerned About Status of Funds, Unable to Withdraw as Promised
South African Crypto Token Holders Concerned About Status of Funds, Unable to Withdraw as Promised A group of South African cryptocurrency investors have voiced concerns about the
Marco Castrovilli6 hours agoBlackRock Bitcoin ETF could unlock $30 trillion worth of wealth, Bloomberg analyst saysFollowing the Blackrock application, a Bitcoin spot ETF was never so close to being approved and it could
US Man Pleads Guilty in $722 Million Bitclub Network Ponzi Scheme Case
US Man Pleads Guilty in $722 Million Bitclub Network Ponzi Scheme CaseA Bitclub Network Ponzi scheme promoter has admitted to charges of selling unregistered securities and to subsc
Onecoin ‘Crypto Queen’ Ruja Ignatova Listed Among Europe’s Most Wanted
Onecoin ‘Crypto Queen’ Ruja Ignatova Listed Among Europe’s Most Wanted Ruja Ignatova, mastermind of the notorious pyramid Onecoin, is now one of Europe’s most wanted f
Euler announces 29 audit reports after $4M spent to shore up security
Christopher Roark10 hours agoEuler announces 29 audit reports after $4M spent to shore up securitySome vulnerabilities in Euler v2 were found and resolved, and a subsequent $1.25 million bug bounty contest found no vulne
Nigerian trader’s integrity restores trust in crypto
Amaka Nwaokocha13 hours agoNigerian trader’s integrity restores trust in cryptoThe act of goodwill has gone viral on social media, restoring Nigerians’ trust in the crypto community.9111 Total views3 Total sharesList
Brian Quarmby3 hours agoBTC hodlers outperformed crypto funds by 69% in H1: 21e6 CapitalAccording to 21e6 Capital AG, crypto funds generally outperformed the price gains of BTC in previous bull runs, but they ultimately
US lawmakers urge SEC to approve Bitcoin options trading
Ana Paula Pereira5 hours agoUS lawmakers urge SEC to approve Bitcoin options tradingRepresentatives Mike Flood and Wiley Nickel urged SEC Chair Gary Gensler to stop discriminating against Bitcoin funds in a letter.2141 T