The Swaprum incident: Audited DeFi protocol dupes investors out $3m

TL;DR Breakdown

  • Decentralized exchange Swaprum reportedly made off with $3 million in investor funds.
  • Auditing firm CertiK, which audited Swaprum’s protocols, is facing scrutiny for potential oversight.
  • The incident has drastically dropped the value of Swaprum’s token, SAPR, impacting retail investors.

Yesterday, a shockwave passed through the decentralized finance (DeFi) industry as Swaprum, a decentralized exchange based on the Arbitrum blockchain, allegedly made off with about $3 million of investor funds. Swaprum, known for promising potential annual percentage yields up to 100% and offering high farming rewards and low swapping fees, recently attracted over 22,000 wallets holding the protocol’s token, SAPR.

DeFi investor, Damicale Shilling, was the first to sound the alarm after observing an alarming pattern of on-chain activity tied to the protocol’s promotional efforts. DeFi Security, a security firm, soon validated the concerns, confirming that Swaprum’s developers’ theft was underway, initially estimating the losses at around $1 million.

As the day ended, blockchain security firm PeckShield revised the estimated loss, placing it at $3 million. The devious culprits exploited the privacy protocol Tornado Cash, a service designed to obscure the traceability of funds, to launder the stolen loot.

A flawed audit and the fallout

The fallout from the rug-pull incident has been swift and devastating. The value of SAPR has plummeted almost entirely, leading to widespread concern amongst the retail investors who were the primary holders of the protocol’s token.

In the aftermath of the incident, attention has quickly turned to CertiK, the smart contract auditing firm that signed off on Swaprum’s protocols. CertiK’s role in auditing Swaprum has highlighted the importance of robust smart contract audit standards, a point emphasized by Dyma Budorin, CEO of blockchain security firm Hacken.

Budorin remarked, “The lack of smart contract audit report standards leads to such lame rugs.” However, the story might not be as straightforward as it initially seems. It appears the Swaprum developers exploited an upgradability feature left in their smart contract to drain user funds – an issue that was not picked up in the audit report.

The credibility of smart contract auditors is again in the spotlight, as this incident follows last month’s rug-pull event involving the protocol Merlin, which lost $1.8 million despite having recently passed a CertiK audit. Such incidents underline the necessity of establishing an infrastructure layer that consolidates comprehensive security information on all projects, thereby helping to guard against such fraudulent activities.

CertiK’s website has flagged Swaprum as an exit scam. Also, Swaprum’s social media accounts have disappeared, leaving a chilling silence where a bustling exchange once stood. The DeFi community now waits for answers and actions to prevent similar occurrences in the future. After all, the reputation and trust that underpin the DeFi landscape are at stake

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:The Swaprum incident: Audited DeFi protocol dupes investors out $3m

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年5月21日 11:03
Next 2023年5月21日 12:00

Related articles

  • Elon Musk announces new limit update on Twitter amid ongoing lawsuit

    TL;DR Breakdown Twitter has announced a new limit update on the platform as Elon Musk continues to fight market manipulation charges. Analysts speculate that users might move to rival platforms. Description Twitter, the popular social media platform, has recently introduced limitations on user activity, sparking concerns and drawing attention to the platform’s technical challenges and potential motives behind the changes. CEO Elon Musk announced the new restrictions, including a cap on the number of posts that verified and unverified accounts can read daily. As users face … Read more Twitter, the popular social media platform, has recently introduced limitations on user activity, sparking concerns and drawing attention to the platform’s technical challenges and potential motives behind the changes. CEO Elon Musk announced the new restrictions, including a cap on the number of posts that verified and unverified accounts can read daily. As users face broken home feeds and comment threads, questions arise regarding the platform’s architecture and its impact on user experience. Furthermore, speculation surrounds the motivations behind these changes, including their potential impact on AI providers and Twitter’s strained…

    Article 2023年7月4日
  • Major US tech firms make AI promises to the White House

    TL;DR Breakdown Major US tech firms including Google, OpenAI, Amazon, and Microsoft have committed to promoting safety and transparency in AI development. The commitments were made at the White House and include internal and external safety testing of AI systems before public release. The firms will also share more information about risk mitigation, invest more in cybersecurity, and facilitate third-party vulnerability reporting. Description In a critical juncture for the future of artificial intelligence (AI), leading US tech giants, including Google and OpenAI, are set to publicize their commitment to enhance safety and transparency in the burgeoning field of AI. This assurance comes directly from the epicenter of American power, the White House, as a part of a broader … Read more In a critical juncture for the future of artificial intelligence (AI), leading US tech giants, including Google and OpenAI, are set to publicize their commitment to enhance safety and transparency in the burgeoning field of AI. This assurance comes directly from the epicenter of American power, the White House, as a part of a broader initiative to secure the…

    Article 2023年7月22日
  • South Korean government approves landmark bill to regulate cryptocurrency assets

    TL;DR Breakdown South Korea’s National Assembly has passed a bill requiring officials to disclose their cryptocurrency holdings. The legislation was prompted by a scandal involving a former lawmaker who held significant cryptocurrency assets. The “Kim Nam-guk Prevention Law” was initiated to ensure senior officials report any crypto holdings exceeding $760. South Korean lawmakers have taken a significant step forward in regulating cryptocurrency assets by passing a bill that requires officials to disclose their holdings. The unanimous approval of the bill by the National Assembly signifies the government’s commitment to tackling cryptocurrency-related issues. The amendments to the National Assembly Act and the Public Service Ethics Act addressed concerns over a recent scandal involving lawmakers engaging in large cryptocurrency transactions. With overwhelming support from the present lawmakers, the amendment to the National Assembly Act now mandates the inclusion of cryptocurrencies in the list of registered properties legislators hold. Additionally, the amendment to the Public Officials Ethics Act obligates high-ranking officials and members of the National Assembly to report their cryptocurrency assets. The intention behind these legal changes is to prevent illicit activities…

    Article 2023年5月27日
  • A look at the BRICS expansion -Is it a threat to US dominance or sheer optimism?

    TL;DR Breakdown Recent reports indicate a focused BRICS shift from economic to geopolitical agenda. Market analysts point to internal disagreements between India and China, India’s relationship with the West, and vision ambiguity as a problem for the Bloc. Iran, Saudi Arabia, Egypt, Argentina, the United Arab Emirates, and Ethiopia will join the current five members in January 2024. There remains the question of how BRICS will achieve de-dollarization considering the nations’ heavy reliance on the USD. Description The BRICS (Brazil, Russia, India, China, and South Africa) economic bloc is set to expand with the admission of six new countries: Argentina, Ethiopia, Iran, Saudi Arabia, Egypt, and the United Arab Emirates. This expansion aims to enhance the economic heft and global influence of the BRICS bloc, countering the influence of the US and … Read more The BRICS (Brazil, Russia, India, China, and South Africa) economic bloc is set to expand with the admission of six new countries: Argentina, Ethiopia, Iran, Saudi Arabia, Egypt, and the United Arab Emirates. This expansion aims to enhance the economic heft and global influence of…

    Article 2023年8月26日
  • Curve Finance confirms the affected pools in the platform’s exploit

    TL;DR Breakdown Curve Finance has confirmed the list of affected pools following the recent hack that it suffered. Assessing the impact and strengthening security for the future. Description Curve Finance, a popular decentralized exchange (DEX), recently faced a significant security breach that affected multiple Ethereum pools and an Arbitrum-based liquidity pool. The incident occurred over the weekend, leading to the theft of millions of dollars. As the situation unfolded, blockchain security firm PeckShield updated the stolen amount to an alarming $52 million. Curve … Read more Curve Finance, a popular decentralized exchange (DEX), recently faced a significant security breach that affected multiple Ethereum pools and an Arbitrum-based liquidity pool. The incident occurred over the weekend, leading to the theft of millions of dollars. As the situation unfolded, blockchain security firm PeckShield updated the stolen amount to an alarming $52 million. Curve Finance’s DEX allows users to swap like-assets, such as Ethereum for Staked Ethereum or Tether’s USDT for Circle’s USDC. Curve Finance reveals updated information about the hack The platform serves as a valuable arbitrage tool for traders seeking to…

    Article 2023年8月1日
TOP