• Latest
  • Trending
ZetaChain Dismissed Bug Report That Could Have Prevented $334K Exploit

ZetaChain Dismissed Bug Report That Could Have Prevented $334K Exploit

April 29, 2026
Bitcoin’s $7.2B STRC Fuel Sparks 20% Rally

Bitcoin’s $7.2B STRC Fuel Sparks 20% Rally

April 29, 2026

SEC Commissioner Hester M. Peirce to Address High School Students at Maryland’s First Blockchain Career Conference

April 29, 2026
Here’s How The Ethereum Vs. Solana Rivalry Is Going

Here’s How The Ethereum Vs. Solana Rivalry Is Going

April 29, 2026
XRP eyes retest of $1.50 as BTC, ETH show upside potential

XRP price forecast as tokenized RWA on XRP Ledger explodes to $3B

April 29, 2026
XRP Wins Weekly ETF Race vs. Bitcoin as $1 Billion Stays Intact, Dogecoin (DOGE) Finally Breaks $0.1 Threshold With 10% Price Jump, Vitalik Buterin Dumps Gifted Asteroid Shiba Coins – Morning Crypto Report

XRP Wins Weekly ETF Race vs. Bitcoin as $1 Billion Stays Intact, Dogecoin (DOGE) Finally Breaks $0.1 Threshold With 10% Price Jump, Vitalik Buterin Dumps Gifted Asteroid Shiba Coins – Morning Crypto Report

April 29, 2026
The Fed decides today. Here’s what happens next.

The Fed decides today. Here’s what happens next.

April 29, 2026
Meta (META) Stock: Declines Modestly Despite 98% Surge in AR Shipments

Meta (META) Stock: Declines Modestly Despite 98% Surge in AR Shipments

April 29, 2026
Mezo unveils bitcoin yield vaults with Anchorage as institutions seek secure BTC returns

Mezo unveils bitcoin yield vaults with Anchorage as institutions seek secure BTC returns

April 29, 2026
Litecoin’s MWEB Chain Split Resolved as F2pool Mines All 13 Blocks

Litecoin’s MWEB Chain Split Resolved as F2pool Mines All 13 Blocks

April 29, 2026
  • Privacy Policy
Wednesday, April 29, 2026
MtRushmoreCrypto - Where Crypto Rocks
  • Home
  • Top News
  • Crypto
  • Crypto Technical Analysis
  • About Us
No Result
View All Result
  • Home
  • Top News
  • Crypto
  • Crypto Technical Analysis
  • About Us
No Result
View All Result
Logo
No Result
View All Result
Home Crypto

ZetaChain Dismissed Bug Report That Could Have Prevented $334K Exploit

J_News by J_News
April 29, 2026
in Crypto, Top News
0
ZetaChain Dismissed Bug Report That Could Have Prevented $334K Exploit
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


The vulnerability that led to ZetaChain’s recent exploit had been flagged through its bug bounty program before the attack, but was dismissed as intended behavior.

Related articles

Bitcoin’s $7.2B STRC Fuel Sparks 20% Rally

Bitcoin’s $7.2B STRC Fuel Sparks 20% Rally

April 29, 2026

SEC Commissioner Hester M. Peirce to Address High School Students at Maryland’s First Blockchain Career Conference

April 29, 2026

In a post-mortem published Wednesday, the team said the incident has prompted a review of how it handles bug bounty submissions, particularly reports involving chained attack vectors that may appear harmless in isolation but are dangerous in combination.

“This bug was reported and they simply ignored it,” one user wrote on X. “That’s how bug bounty programs work with these protocols currently; they incentivize losses for the protocol, the TVL, and the user’s balance instead of paying the researcher for discovering and fixing the bug,” they added.

ZetaChain lost approximately $334,000 to a premeditated exploit on Sunday that targeted its cross-chain gateway contract. The exploit drained funds across nine transactions on four chains, including Ethereum, Arbitrum, Base and BSC, all from ZetaChain-controlled wallets. No user funds were affected.

Related: Crypto hackers stole $17B over past 10 years: DefiLlama

Attacker exploits small design flaws

ZetaChain said in its post-mortem that the attacker exploited three design flaws that, individually, might have seemed minor, but together opened the door to a full drain. First, the gateway allowed anyone to send arbitrary cross-chain instructions with no restrictions. Second, on the receiving end, it would execute almost any command on any contract, with a blocklist so narrow it missed basic token transfer functions.

Third, wallets that had previously used the gateway had left unlimited spending permissions in place that were never cleaned up. By combining all three, the attacker simply told the gateway to transfer tokens from victim wallets to their own, and the gateway complied.

Source: ZetaChain

“This was not an opportunistic attack,” ZetaChain said in its post-mortem. The attacker funded their wallet through Tornado Cash three days before the exploit, deployed a purpose-built drainer contract on ZetaChain and ran an address poisoning campaign before seeding it into their transaction history via dust transfers.

ZetaChain added that a patch permanently disabling the arbitrary call functionality is being rolled out to mainnet nodes. The platform also removed unlimited token approvals from its deposit flow, replacing them with exact-amount approvals going forward.

Related: Ethical hacker intercepts $2.6M in Morpho Labs exploit

AI DeFi exploit success rate increases

A new study by a16z tested whether an off-the-shelf AI agent could go beyond identifying DeFi vulnerabilities and actually produce working exploits. Using OpenAI’s Codex against a dataset of 20 real Ethereum price manipulation incidents, researchers ran the agent in a sandboxed environment with no access to future transaction data and no guidance on how the attacks worked. The agent succeeded in just 10% of cases.

However, when researchers fed the agent structured knowledge about common attack patterns and exploit workflows, the success rate jumped to 70%.

Magazine: How to fix suspected insider trading on Polymarket and Kalshi

Cointelegraph is committed to independent, transparent journalism. This news article is produced in accordance with Cointelegraph’s Editorial Policy and aims to provide accurate and timely information. Readers are encouraged to verify information independently.



Source link

ShareTweetShareShare

Related Posts

Bitcoin’s $7.2B STRC Fuel Sparks 20% Rally

Bitcoin’s $7.2B STRC Fuel Sparks 20% Rally

by J_News
April 29, 2026
0

Key Takeaways:Bitwise CIO, Matt Hougan, argues Strategy has been a main driver of a 20% Bitcoin rebound, going by its...

SEC Commissioner Hester M. Peirce to Address High School Students at Maryland’s First Blockchain Career Conference

by J_News
April 29, 2026
0

Maryland’s first major blockchain career conference opens July 13 at Capitol Technology University in Laurel, delivering five days of blockchain...

Here’s How The Ethereum Vs. Solana Rivalry Is Going

Here’s How The Ethereum Vs. Solana Rivalry Is Going

by J_News
April 29, 2026
0

Ethereum and Solana are once again under close watch as fresh data reveals how both networks are performing, with recent...

XRP eyes retest of $1.50 as BTC, ETH show upside potential

XRP price forecast as tokenized RWA on XRP Ledger explodes to $3B

by J_News
April 29, 2026
0

XRP is currently trading at $1.38, down over 3% in the past week. The XRP Ledger has attracted over $3...

XRP Wins Weekly ETF Race vs. Bitcoin as $1 Billion Stays Intact, Dogecoin (DOGE) Finally Breaks $0.1 Threshold With 10% Price Jump, Vitalik Buterin Dumps Gifted Asteroid Shiba Coins – Morning Crypto Report

XRP Wins Weekly ETF Race vs. Bitcoin as $1 Billion Stays Intact, Dogecoin (DOGE) Finally Breaks $0.1 Threshold With 10% Price Jump, Vitalik Buterin Dumps Gifted Asteroid Shiba Coins – Morning Crypto Report

by J_News
April 29, 2026
0

TL;DRXRP resilience: While Bitcoin is losing hundreds of millions, XRP ETFs are holding $1.05 billion in assets, supported by Ripple's...

Load More

Enter your email address:

Delivered by FeedBurner

Quick Navigate

  • Home
  • Crypto
  • Crypto Technical Analysis
  • Top News
  • Thank You
  • Store
  • About Us

Top News

Hyperliquid price forecast: HYPE holds above $40 as leverage builds

MoonPay Expands Stablecoin Virtual Accounts to New York

Payward to acquire Bitnomial, creating a fully CFTC-licensed derivatives platform

© 2021 mtrushmorecrypto - Crypto Related News Blog

We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
Do not sell my personal information.
Cookie SettingsAccept
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT
No Result
View All Result
  • Home
  • Top News
  • Crypto
  • Crypto Technical Analysis
  • About Us

© 2021 mtrushmorecrypto - Crypto Related News Blog