100 NBA NFT Basketball Cards Stolen In Hack On Launch Day🏀

QuillAudits - Web3 Security 🛡️
QuillHash
Published in
3 min readApr 25, 2022

Events Under the Spotlight 🔎

100 NBA NFT Basketball Cards Stolen In Hack On Launch Day

  • Hackers stole 100 NBA NFTs on the Ethereum blockchain due to an NBA NFT smart contract vulnerability.
  • The smart contract did not have a nonce ensuring it can be used only once and does not bind the message signer.

Moonbird Games rug pulled investors

  • Moonbird Games on BNB Smart Chain, rug pulled investors for 939 BNB.
  • The $Moonbirds token price plunged 99.6%.

‘See’ project rug pulled community

  • The BNB Smart Chain rug project pulled the community for 1,137 BNB.
  • The token price fell 100%.

Zeed Protocol exploited for — $1M

  • Zeed Protocol, a DeFi project on BNB Smart Chain, fell victim to an exploit where the hacker made a $1M profit.
  • The $YEED token price fell 100% following the hack.

MaxAPY Finance Rug Pulled

  • MaxAPY Finance on BNB Smart Chain rug pulled investors for 1,042 BNB or ~$440K and deleted all social media handles.
  • The $MaxAPY token price dropped 67% after the hack.

Redemption fell for a Flash Loan attack

  • Redemption, a yield optimiser on Fantom blockchain, experienced a flash loan attack.
  • The team requested liquidity providers to revoke liquidity from the liquidity pools to prevent further loss of user funds.

FaceDAO Rug Pull

  • FaceDAO, an ERC-20 team rug pulled by selling their liquidity in a large amount in $FACE tokens.

Attackers Flash Loaned Beanstalk Farms

  • Beanstalk Farms, a decentralized credit-based stablecoin, suffered flash loan attacks that wiped off $182M from the platform.
  • The finance platform offered a 10% bounty to the hacker for 90% of stolen funds.
  • The hacker donated 250,000 USDC to the Ukraine relief donation fund.

Discord server of Ugly People NFT hacked

  • Ugly People NFT, a collection of 10,000 unique NFTs, Discord server was hacked to promote fake minting links to the community.

To the Numerophiles out there 🔢

  • Lamborghini’s last Aventador Coupé with an NFT sold for $1.6M

Source

More From the Editor’s Desk ✍️

There are many misconceptions and multiple approaches to smart contract security🛡️.

🔁The software lifecycle approach that we will discuss is classifying security vulnerabilities in smart contracts into multiple phases.

In the first section, we have laid out the security issues in the smart contracts.

And in the next section, we discuss its solutions divided into four phases; Security Design, Security Implementation, Testing before Deployment, and the last one, Monitoring and Analysis.

Don’t forget to explore the full article — link in the comments👇.

Read More

Word on the Block📦

Testnet

Versus Series🛡️

Optimistic Rollups VS Zero-Knowledge Rollups

Stay updated with the latest happenings in the blockchain world; join our Discord community here🤝

--

--

QuillAudits - Web3 Security 🛡️
QuillHash

Building the QuillAI Network: AI Agents Safeguarding Web3. Leading Smart Contract Audit Firm with $30B+ secured. Join our security squad builders 🛡️