fbpx
  • About Us
  • Contact
  • Sponsored Content
  • Price Tracker
  • Write for Us
  • Terms and Conditions
Coin Culture
  • Markets
  • Policy
  • Tech
  • People
  • Business
  • 101 Guide
    • Bitcoin Guide
    • Blockchain Guide
    • Ethereum Guide
    • DeFi Guide
    • Trading Guide
    • ICO guide
    • Bitcoin Cash Guide
    • Ripple Guide
    • NFT
    • Dogecoin guide
  • Hot topics
    • NFT
    • Metaverse
    • Games
    • Metaverse
    • Forecast
  • Exchanges
    • All
    • Crypto Exchange Reviews
    • Exchange Comparisons
    CoinSpot vs Kraken: Which Is Better? A Detailed Comparison

    CoinSpot vs Kraken: Which Is Better? A Detailed Comparison

    Centralised Exchange vs. Decentralised Exchange: A Detailed Comparison

    Centralised Exchange Vs. Decentralised Exchange: A Detailed Comparison

    Low Fee Exchanges: The High Cost of Low Price

    Low Fee Exchanges: The High Cost of Low Price

    Best Crypto Apps in Australia: A Curated List 2022

    Best Crypto Apps in Australia: A Curated List 2022

    CoinSpot vs Independent Reserve: Which Is Better? A Detailed Comparison

    CoinSpot Vs Independent Reserve: Which Is Better? A Detailed Comparison

    Which crypto exchange should Australians choose: CoinSpot vs Bitfinex

    Which crypto exchange should Australians choose: CoinSpot vs Bitfinex

    Coinspot vs Plus500: Which Is Better? A Detailed Comparison

    Coinspot vs Plus500: Which Is Better? A Detailed Comparison

    CoinSpot vs Bittrex Crypto Exchange Comparison

    CoinSpot vs Bittrex Crypto Exchange Comparison

    Review crypto exchanges for Australians: CoinSpot vs BTC Markets

    Review crypto exchanges for Australians: CoinSpot vs BTC Markets

    • Reviews
    • Comparisons
No Result
View All Result
SUBSCRIBE
Coin Culture
  • Markets
  • Policy
  • Tech
  • People
  • Business
  • 101 Guide
    • Bitcoin Guide
    • Blockchain Guide
    • Ethereum Guide
    • DeFi Guide
    • Trading Guide
    • ICO guide
    • Bitcoin Cash Guide
    • Ripple Guide
    • NFT
    • Dogecoin guide
  • Hot topics
    • NFT
    • Metaverse
    • Games
    • Metaverse
    • Forecast
  • Exchanges
    • All
    • Crypto Exchange Reviews
    • Exchange Comparisons
    CoinSpot vs Kraken: Which Is Better? A Detailed Comparison

    CoinSpot vs Kraken: Which Is Better? A Detailed Comparison

    Centralised Exchange vs. Decentralised Exchange: A Detailed Comparison

    Centralised Exchange Vs. Decentralised Exchange: A Detailed Comparison

    Low Fee Exchanges: The High Cost of Low Price

    Low Fee Exchanges: The High Cost of Low Price

    Best Crypto Apps in Australia: A Curated List 2022

    Best Crypto Apps in Australia: A Curated List 2022

    CoinSpot vs Independent Reserve: Which Is Better? A Detailed Comparison

    CoinSpot Vs Independent Reserve: Which Is Better? A Detailed Comparison

    Which crypto exchange should Australians choose: CoinSpot vs Bitfinex

    Which crypto exchange should Australians choose: CoinSpot vs Bitfinex

    Coinspot vs Plus500: Which Is Better? A Detailed Comparison

    Coinspot vs Plus500: Which Is Better? A Detailed Comparison

    CoinSpot vs Bittrex Crypto Exchange Comparison

    CoinSpot vs Bittrex Crypto Exchange Comparison

    Review crypto exchanges for Australians: CoinSpot vs BTC Markets

    Review crypto exchanges for Australians: CoinSpot vs BTC Markets

    • Reviews
    • Comparisons
No Result
View All Result
Coin Culture
No Result
View All Result
Home Business

Nomad Token Bridge Got $190M In ‘Frenzied Free-For-All’

Tuni Lala by Tuni Lala
August 4, 2022
in Business
Nomad Token Bridge Got $190M in ‘Frenzied Free-For-All’
Share on FacebookShare on Twitter

You might also like

Mark Cuban: Purchasing Metaverse Real Estate Is ‘The Dumbest Sh*t Ever’

Iran Places First Import Order Paid In Crypto, Worth $10M

Crypto Developers Faked DeFi Ecosystem, Inflating Solana’s TVL

While lone wolves perpetrate most crypto attacks, the $190 million breach of the Nomad cross-bridge on Monday looks to have resulted from a feeding frenzy of hundreds of malicious individuals.

Yesterday, $190 million in different crypto assets were stolen from Nomad’s cross-chain bridge after a software upgrade uncovered a severe vulnerability that enabled anybody to withdraw cash from the bridge.

Nomad exploit onchain activity, visualized. pic.twitter.com/WqjcbQfWKW

— Hsaka (@HsakaTrades) August 1, 2022

The blockchain security startup PeckShield revealed that an unidentified hacker found the flaw on Monday and promptly stole roughly $95 million. As word of the first vulnerability went across the crypto community, others hastened to help the original hacker in stealing funds.

Over 300 addresses had received cash from Nomad within an hour. The company estimates that 41 of them stole $152 million, or 80% of the stolen cash from the cross-chain bridge of Nomad.

However, they were not all awful actors. PeckShield’s study uncovered at least six addresses belonging to white hackers, or ethical hackers, who stole around $8.2 million from the bridge. It is believed that they will repay the funds.

Nomad is a cross-chain bridge that facilitates the transfer of ERC-20 tokens across Ethereum, Moonbeam, Evmos, and Avalanche. It is one of the available bridge services in crypto space.

Why did everything go wrong?

According to PeckShield, Nomad developers disclosed the bug during a smart contract upgrade. It was caused by the developers’ erroneous modification of the bridge’s smart contract and deployment of the code without sufficient auditing.

We are aware of the incident involving the Nomad token bridge. We are currently investigating and will provide updates when we have them.

— Nomad (⤭⛓🏛) (@nomadxyz_) August 1, 2022

The Nomad bridge attack is feasible because of an erroneous setup that resulted in the zero address (0x00) being identified as a trusted root, causing every message to be validated by default.

By marking 0x00 (the zero address), the trusted root inadvertently disabled a smart contract check that guaranteed legitimate addresses could receive withdrawals.

After the vulnerability was put into Nomad’s code, withdrawal requests from any address were by default deemed genuine. This indicated that anybody might take funds from the bridge.

The vulnerability does not need a deep technical understanding of smart contracts. It only required Updating the hacker’s transaction using Etherscan, changing the recipient’s address with one’s own, and submitting a withdrawal request on the Nomad bridge.

Tags: Bitcoin News
Tuni Lala

Tuni Lala

Recommended For You

Mark Cuban: Purchasing Metaverse Real Estate Is ‘The Dumbest Sh*t Ever’

by Tuni Lala
August 12, 2022
0
Mark Cuban: Purchasing Metaverse Real Estate Is ‘The Dumbest Sh*t Ever’

Governments and large companies have invested ridiculous sums of money in the sector. The metaverse, like cryptocurrency, is anticipated to grow. The market’s success has encouraged many to...

Read more

Iran Places First Import Order Paid In Crypto, Worth $10M

by Tuni Lala
August 11, 2022
0
Iran Places First Import Order Paid In Crypto, Worth $10M

This Monday, Iran recorded its first formal order for the importation of commodities worth $10 million, all of which were paid for in cryptocurrency. According to a story...

Read more

Crypto Developers Faked DeFi Ecosystem, Inflating Solana’s TVL

by Tuni Lala
August 9, 2022
0
Crypto Developers Faked DeFi Ecosystem, Inflating Solana’s TVL

Sunny was the newest DeFi app to hit Solana last summer, during the blockchain’s bull run, when its native token increased fivefold. Sunny was only two weeks old in early...

Read more

ASX Welcomes Australia’s First Metaverse ETF from Betashares

by Tuni Lala
August 9, 2022
0
ASX Welcomes Australia’s First Metaverse ETF from Betashares

Wednesday, Betashares, an Australian supplier of exchange-traded funds (ETFs), announced the introduction of the first metaverse-themed product on the Australian Securities Exchange (ASX). The BetaShares Metaverse ETF listing...

Read more

NEAR Protocol Reveals Wallet-Related Email And SMS Data Breach

by Tuni Lala
August 9, 2022
0
NEAR Protocol Reveals Wallet-Related Email And SMS Data Breach

In June, NEAR Protocol, a Layer 1 blockchain, informed its customers that SMS and email data used as recovery options in its basic wallet service were compromised. According...

Read more
Next Post
Japan's Central Bank Postpones CBDC Plan Amid Little Public Interest

Japan's Central Bank Postpones CBDC Plan Amid Little Public Interest

Most popular

  • Will LUNA Recover? Is $1 Still Possible?

    Will LUNA Recover? Is $1 Still Possible?

    224 shares
    Share 90 Tweet 56
  • Top Crypto Twitter Influencers in 2022

    745 shares
    Share 298 Tweet 186
  • The Secret Disclosed: JPMorgan owns critical Ethereum infrastructure

    280 shares
    Share 112 Tweet 70
  • Charles Hoskinson Predicts No Further Delays In Cardano’s Vasil Hard Fork

    78 shares
    Share 31 Tweet 20
  • Top 10 Most Followed Cryptocurrency Hashtags on Twitter

    201 shares
    Share 80 Tweet 50

Recommended

“My First Bitcoin” in El Salvador: How To Educate A Nation About Crypto

“My First Bitcoin” in El Salvador: How To Educate A Nation About Crypto

August 12, 2022
Mark Cuban: Purchasing Metaverse Real Estate Is ‘The Dumbest Sh*t Ever’

Mark Cuban: Purchasing Metaverse Real Estate Is ‘The Dumbest Sh*t Ever’

August 12, 2022
Bitcoin and Ethereum Fluctuate In Response to US Inflation’s Cool To 8.5%

Bitcoin and Ethereum Fluctuate In Response to US Inflation’s Cool To 8.5%

August 12, 2022
Iran Places First Import Order Paid In Crypto, Worth $10M

Iran Places First Import Order Paid In Crypto, Worth $10M

August 11, 2022
Facebook Twitter Instagram
coin culture logo

Hot Topics

  • DeFi
  • NFT
  • Gaming

BROWSE BY TAG

Adoption Altcoin News Australia Banks Bitcoin Bitcoin News Blockchain News btc Business Cardano Cardano News CBDC China CoinSpot Cryptocurrencies Crypto Exchange DeFi Dogecoin News El Salvador ETF Ethereum News Exchange Exchanges Feature Games Markets Metaverse Mining NFT NFT Game Opinion People Policy and Regulation Russia SEC Security Shiba Inu News Solana Stablecoins Tax Tech Terra Trading Trading Guide U.S.

© 2022 CoinCulture. All rights reserved.

No Result
View All Result
  • Markets
  • Policy
  • Tech
  • People
  • Business
  • 101 Guide
    • Bitcoin Guide
    • Blockchain Guide
    • Ethereum Guide
    • DeFi Guide
    • Trading Guide
    • ICO guide
    • Bitcoin Cash Guide
    • Ripple Guide
    • NFT
    • Dogecoin guide
  • Hot topics
    • NFT
    • Metaverse
    • Games
    • Metaverse
    • Forecast
  • Exchanges
    • Reviews
    • Comparisons

© 2022 CoinCulture. All rights reserved.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist