Fun

Curve Finance awards dev $250K for finding reentrancy vulnerability

News Feed - 2024-05-01 07:05:33

Arijit Sarkar13 hours agoCurve Finance awards dev $250K for finding reentrancy vulnerabilityCurve Finance awarded cybersecurity researcher Marco Croc with its maximum bug bounty award of $250,000 after thoroughly investigating the security flaw.2452 Total views3 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksA security researcher was rewarded $250,000 for discovering a vulnerability that has historically allowed hackers to pull out millions of dollars from cryptocurrency protocols. 


Pseudonymous cybersecurity researcher Marco Croc from Kupia Security identified a reentrancy vulnerability in decentralized finance (DeFi) protocol Curve Finance.


In an X thread, he explained how the bug could be exploited to manipulate balances and withdraw funds from liquidity pools.


Curve Finance acknowledged potential security flaws and “recognized the severity of the vulnerability,” Marco Croc explained. After a thorough investigation, Curve Finance awarded Marco Croc its maximum bug bounty award of $250,000.Source: Curve Finance


According to Curve Finance, the threat was classified as “not as dangerous,” and they believed they could recover the stolen funds in such a case. 


However, the protocol said a security incident of any scale “could have caused serious panic if it had happened.”


Related:Curve Finance debt will cause "one more stress test" in February — Analyst


Curve Finance recently recovered from a $62 million hack in July. As part of returning to normalcy, the DeFi protocol voted to reimburse $49.2 million worth of assets to the liquidity providers (LPs).Source: Curve Finance


On-chain data confirms that 94% of tokenholders approved the disbursement of tokens worth over $49.2 million to cover the losses of the Curve, JPEG’d (JPEG), Alchemix (ALCX) and Metronome (MET) pools.


According to Curve’s proposal, the community fund will supply the Curve DAO (CRV) tokens. The final amount also includes a deduction for the tokens recovered since the incident.


“The overall ETH to recover was calculated as 5919.2226 ETH, the CRV to recover was calculated as 34,733,171.51 CRV and the total to distribute was calculated as 55’544’782.73 CRV,” reads the proposal.


The attacker exploited a vulnerability on stable pools using some versions of the Vyper programming language. The bug made Vyper’s 0.2.15, 0.2.16 and 0.3.0 versions vulnerable to reentrancy attacks.


Magazine:68% of Runes are in the red — Are they really an upgrade for Bitcoin?# Business# Rewards# Awards# Hackers# Hacks# DeFi# Curve FinanceAdd reaction

News Feed

Michael Tabone9 hours agoBitcoin supercycle 2024: Is this the cycle to end them all?Dan Held’s Bitcoin supercycle hasn’t happened yet, but the factors might be right to see it play out sooner than most think.6048 Tot
Dogecoin Hits A ‘Blood In The Streets’ Moment: Buy Or Sell Now?
Este artículo también está disponible en español. Dogecoin (DOGE) has again found itself in the crosshairs of market watchers, with a “blood in the streets” moment em
Analyst Predicts Dogecoin Price Surge To $4 — Here’s How
Este artículo también está disponible en español. The Dogecoin price has been under intense bearish pressure so far in 2025, falling a further 10% in the last seven days.
XRP price-to-sales ratio double that of Nvidia
Zoltan Vardai12 hours agoXRP price-to-sales ratio double that of NvidiaThe price-to-sales ratio is used to assess the potential of an investment, with lower ratios signaling more attractive opportunities.8787 Total views
India Brings Crypto Transactions Under Prevention of Money Laundering Act
India Brings Crypto Transactions Under Prevention of Money Laundering Act India’s finance ministry has announced that crypto transactions will be covered under the Prevention
Bitcoin price sheds 3% as $6B leaves Mt. Gox cold wallet
William Suberg30 minutes agoBitcoin price sheds 3% as $6B leaves Mt. Gox cold walletMt. Gox appears to be shifting funds from cold storage in preparation for distribution to creditors, with nearly 100,000 BTC in outflows
Russian Bank Run Begins as Ruble Plunges to Record Low Amid Escalating Sanctions
Russian Bank Run Begins as Ruble Plunges to Record Low Amid Escalating Sanctions A bank run has started in Russia as citizens rush to withdraw cash amid escalating sanctions. The R
Tristan Greene3 hours agoAI21 Labs debuts anti-hallucination feature for GPT chatbotsContextual Answers is designed for enterprise but could have far-reaching implications for the generative AI sector.1219 Total views6 T
Biggest Movers: ADA Hits All-Time Low on Friday, MATIC Extends Recent Downtrend
Biggest Movers: ADA Hits All-Time Low on Friday, MATIC Extends Recent Downtrend Cardano fell to an all-time low on Friday, as sentiment in crypto markets remained bearish in today&
SILK Is Now Available for Trading on LBank Exchange
SILK Is Now Available for Trading on LBank Exchange press release PRESS RELEASE. INTERNET CITY, DUBAI, Dec. 9, 2022 – LBank Exchange, a global digital asset trading platform,
Report: South Korean National Assembly to Pass Digital Asset Law in April
Report: South Korean National Assembly to Pass Digital Asset Law in April After several failed attempts in the past, the South Korean National Assembly is now expected to pass its
Julian Assange Bitcoin donation shows how crypto can support transparency
Daniel Ramirez-Escudero10 hours agoJulian Assange Bitcoin donation shows how crypto can support transparencyThe Bitcoin community came to Julian Assange’s aid, helping ensure the WikiLeaks founders’ safe and debt-fre