After an unexpected vulnerability was discovered in an audited smart contract, Virtuals Protocol released a timely fix and restarted its bug bounty program. On December 3, 2024, a security researcher under the pseudonym Jinu contacted Virtuals Protocol after discovering a vulnerability in one of its audited contracts. However, after reporting the issue, Jinu learned that the company had not activated the bug bounty program, meaning the discovery was not eligible for the bounty. Virtuals Protocol...
Avalon Labs said it has discovered a coordinated attack against multiple projects in the Bitcoin ecosystem, in which legitimate platforms were mistakenly reported as phishing sites. It has reported this misconduct to Cloudflare and is actively contacting them to process and resolve these malicious claims.
Recently, McAfee discovered a new type of Android malicious software called SpyAgent, which can steal users' private keys using optical character recognition (OCR) technology through screenshots and text in images of mobile phones. The malicious software spreads through malicious links in text messages, and users click on the link to be directed to a page disguised as a legitimate website and prompted to download a seemingly credible app. Once installed, the malicious software can obtain the use...
ZachXBT says he found evidence of a sophisticated network of North Korean developers who earn up to $500,000 a month by working for "well-established" crypto projects. ZachXBT told his 618,000 followers in an August 15 X post that he believes a "single entity in Asia", possibly operating in North Korea, earns $300,000 to $500,000 a month and employs at least 21 people for more than 25 crypto projects. ZachXBT said: "Recently, a team approached me...
LI.FI posted that four more security bugs were found and that all user funds interacting with the LI.FI protocol are now at risk, urging all users to revoke permissions immediately.