• bitcoinBitcoin (BTC) $ 69,518.00
  • ethereumEthereum (ETH) $ 2,426.34
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 564.07
  • solanaSolana (SOL) $ 166.91
  • usd-coinUSDC (USDC) $ 0.999849
  • xrpXRP (XRP) $ 0.514762
  • dogecoinDogecoin (DOGE) $ 0.170212
  • staked-etherLido Staked Ether (STETH) $ 2,423.91
  • tronTRON (TRX) $ 0.160252
  • cardanoCardano (ADA) $ 0.334215
  • the-open-networkToncoin (TON) $ 4.68
  • shiba-inuShiba Inu (SHIB) $ 0.000018
  • wrapped-stethWrapped stETH (WSTETH) $ 2,876.94
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 69,263.00
  • avalanche-2Avalanche (AVAX) $ 24.06
  • wethWETH (WETH) $ 2,426.31
  • chainlinkChainlink (LINK) $ 10.83
  • bitcoin-cashBitcoin Cash (BCH) $ 343.54
  • suiSui (SUI) $ 2.01
  • leo-tokenLEO Token (LEO) $ 6.04
  • usdsUSDS (USDS) $ 0.994300
  • polkadotPolkadot (DOT) $ 3.87
  • litecoinLitecoin (LTC) $ 65.60
  • nearNEAR Protocol (NEAR) $ 3.82
  • aptosAptos (APT) $ 8.47
  • wrapped-eethWrapped eETH (WEETH) $ 2,551.98
  • uniswapUniswap (UNI) $ 7.24
  • pepePepe (PEPE) $ 0.000009
  • internet-computerInternet Computer (ICP) $ 7.37
  • bittensorBittensor (TAO) $ 458.50
  • daiDai (DAI) $ 1.00
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 1.26
  • moneroMonero (XMR) $ 158.56
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • stellarStellar (XLM) $ 0.093781
  • kaspaKaspa (KAS) $ 0.111246
  • whitebitWhiteBIT Coin (WBT) $ 19.06
  • ethereum-classicEthereum Classic (ETC) $ 18.25
  • first-digital-usdFirst Digital USD (FDUSD) $ 1.00
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.304368
  • blockstackStacks (STX) $ 1.52
  • okbOKB (OKB) $ 38.00
  • dogwifcoindogwifhat (WIF) $ 2.11
  • aaveAave (AAVE) $ 136.39
  • filecoinFilecoin (FIL) $ 3.40
  • crypto-com-chainCronos (CRO) $ 0.072263
  • arbitrumArbitrum (ARB) $ 0.491634
  • mantleMantle (MNT) $ 0.561991
  • immutable-xImmutable (IMX) $ 1.08
  • optimismOptimism (OP) $ 1.42
  • render-tokenRender (RENDER) $ 4.44
  • hedera-hashgraphHedera (HBAR) $ 0.046301
  • celestiaCelestia (TIA) $ 4.23
  • injective-protocolInjective (INJ) $ 17.39
  • cosmosCosmos Hub (ATOM) $ 4.22
  • fantomFantom (FTM) $ 0.583826
  • vechainVeChain (VET) $ 0.020181
  • bitget-tokenBitget Token (BGB) $ 1.16
  • thorchainTHORChain (RUNE) $ 4.69
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,421.79
  • sei-networkSei (SEI) $ 0.351757
  • bonkBonk (BONK) $ 0.000019
  • the-graphThe Graph (GRT) $ 0.139263
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,714.60
  • popcatPopcat (POPCAT) $ 1.27
  • jupiter-exchange-solanaJupiter (JUP) $ 0.913806
  • pyth-networkPyth Network (PYTH) $ 0.337053
  • flokiFLOKI (FLOKI) $ 0.000126
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,538.42
  • mantra-daoMANTRA (OM) $ 1.31
  • gatechain-tokenGate (GT) $ 8.58
  • theta-tokenTheta Network (THETA) $ 1.10
  • kucoin-sharesKuCoin (KCS) $ 9.07
  • solv-btcSolv Protocol SolvBTC (SOLVBTC) $ 69,437.00
  • worldcoin-wldWorldcoin (WLD) $ 1.78
  • heliumHelium (HNT) $ 5.91
  • ethenaEthena (ENA) $ 0.353731
  • makerMaker (MKR) $ 1,120.29
  • algorandAlgorand (ALGO) $ 0.114319
  • bitcoin-svBitcoin SV (BSV) $ 47.38
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 69,484.00
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,489.18
  • msolMarinade Staked SOL (MSOL) $ 204.92
  • ondo-financeOndo (ONDO) $ 0.627378
  • arweaveArweave (AR) $ 13.75
  • fasttokenFasttoken (FTN) $ 2.68
  • lido-daoLido DAO (LDO) $ 0.973390
  • raydiumRaydium (RAY) $ 3.23
  • jasmycoinJasmyCoin (JASMY) $ 0.017621
  • beam-2Beam (BEAM) $ 0.015870
  • matic-networkPolygon (MATIC) $ 0.304049
  • based-brettBrett (BRETT) $ 0.080409
  • bittorrentBitTorrent (BTT) $ 0.00000082
  • bridged-usdc-polygon-pos-bridgeBridged USDC (Polygon PoS Bridge) (USDC.E) $ 0.998894
  • flowFlow (FLOW) $ 0.500986
  • aerodrome-financeAerodrome Finance (AERO) $ 1.14
  • usddUSDD (USDD) $ 1.00
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.008569
  • coredaoorgCore (CORE) $ 0.815761

How Does OpenSea Reward White Hats? – NFT

0 69

How Does OpenSea Reward White Hats? - NFT

With the surge in blockchain tech over the last few years, we have seen a surge in malicious users trying to drain funds from the system.

OpenSea is one of the leading NFT marketplaces on the web, seeing USD $2B in volume in the last 30 days. Home to some of the most popular collections in the NFT space, users flock to the site to get their hands on BAYC, Cool Cats and more.

Rug, the owner and operator of Rug.Tech and their team uncovered a potential market toppling OpenSea bug. The response from OpenSea was less than ideal.

Finding bugs is often lucrative, especially in blockchain. Companies are willing to pay millions for discovery of mission critical bugs. Opensea however pays next to nothing for discovering potentially platform ending errors in their codebase. (Thread)https://t.co/WJV3DIQIae

— fuckingrug.eth ⬛️ (@FUCKINGRUG) November 7, 2021

In an interview with Altcoin Buzz, Rug says “Typical blockchain bounties of this magnitude topple into the millions quickly”

With no agreements signed with OpenSea, Rug shared information about the bug and OpenSea’s offer to them.

A bad actor could have easily used this knowledge to mint fake blue chip NFTs, seemingly created by verified wallets. This would have caused a frenzy buy to get in on the new project “dropped” by the creator.

— fuckingrug.eth ⬛️ (@FUCKINGRUG) November 7, 2021

Rug tells us, “For example, I could launch a fake Bored Apes project from their official OS account”. A potentially market crippling bug that could trick users into spending millions on fake collections.

And how much did OpenSea offer Rug and his team that found a bug that could have potentially saved OS hundred of millions of dollars?

3ETH or ~USD 15K.

This was the first time Rug dealt with OpenSea in this capacity. And it will be the last.

“To be honest, if the bug wasn’t this horrible we would have said fuck em. But this could have toppled the market entirely”, Rug said. “They offered ‘more than 3 ETH’ when I pressed but took the offer back after we helped patch the bug”.

The bug Rug and the team behind Rug.Tech saved OpenSea millions. It also maintains the entire objective of NFTs. This stops buyers from buying fake blue-chip NFTs, which would hurt the credibility of ALL NFTs. NFTs are verifiable, original tokens that you cannot duplicate on-chain. If that goes out the window, so does the entire NFT market.

A Dangerous Precedent to Set

Not rewarding good actors who are trying to help the community will only attract bad actors trying to do the opposite. Only offering USD 15k equivalent for a bug that would potentially cost the market hundreds of millions of dollars is a dangerous precedent to set.

Why would someone work on or notify OpenSea of a market-saving bug anymore?

Where is the motivation if other companies are offering millions of dollars?

How Does OpenSea Reward White Hats? - NFT

Blockchain exploit bounties via immunefi.com

With plenty of other options available, White Hats will flock to platforms that are willing to reward them. Not only that, but white hats may take the next steps into their own hands in the future.

Rug said this be the last time Rug.Tech works in any capacity with OpenSea directly. “In the future, we will take other routes to bring attention to bugs we find”.

OpenSea went down shortly after this original thread was posted, but is since back live.

Source

Leave A Reply

Your email address will not be published.