Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
No Result
View All Result

DeFi auditor nets $40,000 for identifying Uniswap vulnerability

CryptoExpert by CryptoExpert
January 4, 2023
in NFT News
0
DeFi auditor nets $40,000 for identifying Uniswap vulnerability
  • Facebook
  • Twitter
  • Pinterest



You might also like

Doodles Launches Historic NFT Collection in Partnership With the Piet Mondrian Estate

Can Traders Still Trust AI Trading Software After Recent Crypto Bot Scams?

Saylor’s Strategy sold Bitcoin just before the dump. Why now, after years of HODLing?

Uniswap’s recently launched bug bounty program has led to the discovery of a now-fixed vulnerability of the protocol’s Universal Router smart contract.

The automated market maker released two new smart contracts to its platform in November 2022. Permit2 allows token approvals to be shared and managed across different applications, while Universal Router unifies ERC-20 and nonfungible tokens (NFTs) swapping into a single swap router.

Uniswap also advertised a lucrative bug bounty program to identify potential vulnerabilities in its smart contracts toward the end of 2022 as it looked to assure the safety and efficacy of its protocol.

Smart contract security and auditing firm Dedaub announced that it had received a bug bounty after flagging a vulnerability in the Universal Router smart contract that would have allowed reentrancy to drain user funds mid-transaction.

okex

The Dedaub team has disclosed a Critical vulnerability to the Uniswap team!

Funds are safe – Uniswap addressed the issue and redeployed the Universal Router smart contracts on all its chains

The vulnerability allows re-entertrancy to drain the user’s funds, mid-tx.

pic.twitter.com/wFSFsohPvy

— Dedaub (@dedaub) January 2, 2023

According to Dedaub’s breakdown, the Universal Router allows users to perform diverse actions including swapping multiple tokens and NFTs in one transaction.

The router embeds a scripting language for a wide variety of token actions, which could include transfers to third party recipients. If correctly implemented, transfers would go to the recipient within specified parameters.

Related: Immunefi says it has facilitated $66M in bug bounties since inception 

However, Dedaub identified a vulnerability in which a third-party code was invoked during the transfer, allowing the code to re-enter the Universal Router and claim any tokens that were temporarily in the contract.

Dedaub then suggested a straightforward remedy, advising the Uniswap team to add a reentrancy lock to the core execution of the new router. Uniswap awarded the auditing firm a total of $40,000 for flagging the vulnerability. The amount included a 33% bonus for reporting the issue during Uniswap’s bonus period in November 2022.

Uniswap classified the issue as medium severity, while further assessment deemed the vulnerability to have a high impact and low likelihood. According to Dedaub, the possibility of a user sending NFTs to an untrusted recipient directly was considered a user error.

More complex and less likely scenarios were considered valid for reentrancy, which resulted in Uniswap deeming the vector to have a low likelihood. Cointelegraph has reached out to Uniswap to ascertain further details of its ongoing bounty program, amounts paid out and the number of bugs identified to date.

Bug bounties have become commonplace in the cryptocurrency and blockchain space as platforms and companies look to ensure the security of their software, systems and infrastructure. 

Cryptocurrency exchange Coinbase recently clarified the terms of its bug bounty, while blockchain security firm Immunefi has facilitated over $65 million worth of bug bounties between ethical hackers and Web3 firms in 2022.





Source link

  • Facebook
  • Twitter
  • Pinterest
CryptoExpert

CryptoExpert

Recommended For You

Doodles Launches Historic NFT Collection in Partnership With the Piet Mondrian Estate

by CryptoExpert
June 5, 2026
0
Doodles Launches Historic NFT Collection in Partnership With the Piet Mondrian Estate

Doodles Launches Historic NFT Collection in Partnership With the Piet Mondrian Estate Source link

Read more

Can Traders Still Trust AI Trading Software After Recent Crypto Bot Scams?

by CryptoExpert
June 4, 2026
0
logo

AI trading software is no longer a niche tool used only by programmers, hedge funds, or quantitative trading teams. In 2026, retail traders are using AI-assisted platforms to...

Read more

Saylor’s Strategy sold Bitcoin just before the dump. Why now, after years of HODLing?

by CryptoExpert
June 3, 2026
0
logo

Michael Saylor’s Strategy sold 32 BTC during the May 26-31 period, generating approximately $2.5 million to fund distributions for preferred stock. This information emerged right before Bitcoin slid...

Read more

What Is OpenGradient (OPG) and How Does It Work?

by CryptoExpert
June 2, 2026
0
logo

The project backed by a16z Crypto and Coinbase Ventures is building the infrastructure layer where artificial intelligence and blockchain finally meet.Artificial intelligence is becoming a core component of...

Read more

Sui Network Hit by Third Transaction Halt in 48 Hours

by CryptoExpert
June 1, 2026
0
logo

Sui Network recorded its third transaction processing disruption in approximately 48 hours on the mainnet on May 29, when an issue during the epoch transition caused the network...

Read more
Next Post
MOST IMPORTANT HISTORICAL SIGNAL SHOWS WHEN HUGE BITCOIN PUMP WILL HAPPEN

MOST IMPORTANT HISTORICAL SIGNAL SHOWS WHEN HUGE BITCOIN PUMP WILL HAPPEN

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Browse by Category

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

Sitemap

  • Market Cap
  • Donations
  • Trading
  • Mining
  • Contact

Legal Information

  • Privacy Policy
  • Anti-Spam Policy
  • Copyright Notice
  • DMCA Compliance
  • Social Media Disclaimer
  • Terms Of Service

Categories

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

© Copyright 2024 InvestInCryptoNews.com

No Result
View All Result
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO

© Copyright 2024 InvestInCryptoNews.com

This website is using cookies to improve the user-friendliness. You agree by using the website further.

Privacy policy
bitcoin
Bitcoin (BTC) $ 62,276.00
ethereum
Ethereum (ETH) $ 1,666.00
tether
Tether (USDT) $ 0.999129
bnb
BNB (BNB) $ 591.42
usd-coin
USDC (USDC) $ 0.999775
xrp
XRP (XRP) $ 1.12
solana
Solana (SOL) $ 66.14
tron
TRON (TRX) $ 0.325689
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.02
staked-ether
Lido Staked Ether (STETH) $ 2,265.05

Pin It on Pinterest

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?