The Analysis of the Atomicals Market User Asset Loss
On 2023–11–21, the highly Atomicals Market trading platform experienced users’ asset loss incident that has thrown Atomicals Protocol and Atomicals Market, into a storm recently. A series of questions about the ARC-20 token have sparked widespread discussion and skepticism.
When Hacking Goes Haywire, Raft's 1570 ETH Loss Takes a Cosmic Detour to the Black Hole
2023-11-11 02:59:23 a.m., our MetaScout detected that the stablecoin protocol on #Ethereum, Raft, was under a flash loan attack. It resulted in ~6.7m stablecoin $R being minted and the protocol lost $3.6M. The root cause is the precision calculation issue when minting share tokens, which is used by the hacker to get extra share tokens. MetaTrust Labs conducted in-depth research and analysis on the exploit, revealing how the hacker exploits vulnerability.
How Onyx's Governance and Vulnerability Became Hackers' Golden Shovels
On Nov 1, 2023, our MetaScout [detected](https://x.com/MetaTrustAlert/status/1719660132240691257?s=20) that the lending protocol, @OnyxProtocol on Ethereum, was under a flash loan attack with a loss of $2.1M. The root causes are the proposal of adding a new market that was first executed by the hacker, and the precision loss issue of the compound-fork protocol. Here is a detailed exploit analysis by MetaTrust Labs to uncover how this all happened.
Analyzing the Centralization Risks of TipCoin ($TIP)
The owner of $TIP is an EOA address holding 65% of tokens, here are some centralization risks you should care.
Earning.Farm Lost $536,000 Due to Logic Flaw in Smart Contract "Withdraw" Function
Earning.Farm fell victim to smart contract logic vulnerability, suffering loss of approximately 288 ETH.
Curve Cracked: How $52M Vanished in a Vyper Vulnerability
The reentrancy attack on Curve Finance serves as a regrettable security incident and a thought-provoking lesson.
Only 1 Owner of Multi-Signed Contract? Worldcoin May Involve Centralized Risks
The current owner of $WLD is a 1/1 multisig contract with only one owner
Security Analysis Report: Centralization Risk in iziFinance Smart Contract
In this analysis, we will examine one of the core contracts of iZiFinance and identify a simple way to reduce gas consumption by eliminating a redundant expression.
How a Fake Token Attack Drained $144,000 from Biswap Users on BSC
Attacker exploited a vulnerability in the Biswap V3Migrator contract on BSC and stole about $144,000 worth of tokens