This website collects cookies to deliver better user experience, you agree to the Privacy Policy.
Accept
Sign In
The Texas Reporter
  • Home
  • Trending
  • Texas
  • World
  • Politics
  • Opinion
  • Business
    • Business
    • Economy
    • Real Estate
  • Crypto & NFTs
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Travel
    • Fashion
    • Books
    • Arts
  • Health
  • Sports
  • Entertainment
Reading: CertiK Accused Of Entrance-Working Bug Bounties By Subsidiary – The Defiant
Share
The Texas ReporterThe Texas Reporter
Font ResizerAa
Search
  • Home
  • Trending
  • Texas
  • World
  • Politics
  • Opinion
  • Business
    • Business
    • Economy
    • Real Estate
  • Crypto & NFTs
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Travel
    • Fashion
    • Books
    • Arts
  • Health
  • Sports
  • Entertainment
Have an existing account? Sign In
Follow US
© The Texas Reporter. All Rights Reserved.
The Texas Reporter > Blog > NFTs > CertiK Accused Of Entrance-Working Bug Bounties By Subsidiary – The Defiant
NFTs

CertiK Accused Of Entrance-Working Bug Bounties By Subsidiary – The Defiant

Editorial Board
Editorial Board Published June 26, 2024
Share
SHARE

Safety researchers have flagged OpenBounty, a platform affiliated with CertiK, for allegedly front-running bug bounty reviews.

CertiK, the good contract auditor, is on the heart of renewed controversy for allegedly searching for to front-run bug bounty reviews.

On June 25, Pop Punk, the co-founder of Gaslite, a gasoline effectivity auditor, accused OpenBounty, a bug bounty platform incubated by Shentu — the rebranded CertiK Chain — of front-running bug bounty reviews and violating the phrases of service surrounding bug bounty reviews.

OpenBounty ostensibly offers a platform for aggregating bug bounties and facilitating reporting web3 code vulnerabilities. Nevertheless, critics consider the platform principally serves as a automobile for front-running bounty reviews to say any rewards on provide.

“OpenBounty… appears to front-run bug bounty reports,” Pop Punk stated. “This is a direct violation of many large protocol’s bug bounty terms… The more suspicious thing is that their website makes requests to a domain with CertiK in the name when you report a bounty.”

Suspicions concerning OpenBounty have been first raised by h0wlu, a safety researcher.

“I created a test account on their platform to check it out, thinking maybe it’s just an aggregator, but no,” h0wlu stated. “They have submission forms for all these programs and the findings are sent to their API servers.”

Howlu discovered that OpenBounty’s APIs are hosted by the “bounty-prod.noopsbycertik.com” subdomain, additional suggesting CertiK is related to the platform. In addition they famous that Uniswap’s bug bounty coverage states that reviews should be madedirectly,and never by way of a 3rd occasion.

“If you find a bug, report it to the protocol directly. Not some shady website associated with CertiK,” added Pop Punk. “Who [knows] if they’re going to.”

All eyes on CertiK

The OpenBounty allegations are swirling after CertiK got here underneath hearth for exploiting a vulnerability it recognized on the Kraken centralized trade to siphon $3 million from the platform final week.

Kraken accused CertiK’s researchers of holding the funds “hostage” in a bid to barter a bug bounty. “This is not whitehat hacking,” stated Nick Percoco, chief safety officer at Kraken. “This is extortion.”

Safety researchers have additionally spoken out in opposition to CertiK in response to the controversy, accusing the agency of finishing up lazy safety audits.

CertiK claimed it was merely finishing up “research” into the extent of the exploit earlier than reporting it, and returned the funds after dealing with backlash.

Associated: Former Certik Shoppers Query Safety Agency’s Stronghold On Protocol Audits

TAGGED:AccusedBountiesBugCertikDefiantFrontRunningsubsidiary
Share This Article
Twitter Email Copy Link Print
Previous Article What’s the very best recommendation you have heard (to this point) in 2024?
Next Article Ryan Seacrest’s Wheel of Fortune Wage: How A lot He is Paid

Editor's Pick

Donald Trump Says Taylor Swift Is ‘No Longer Scorching,’ Claims Credit score For Singer’s Decline

Donald Trump Says Taylor Swift Is ‘No Longer Scorching,’ Claims Credit score For Singer’s Decline

Studying Time: 3 minutes In the course of the first 4 months of his second time period in workplace, Donald…

By Editorial Board 4 Min Read
Alpine’s Sizzling Hatch EV Has a Constructed-In, ‘Gran Turismo’ Model Driving Teacher

One other win over its Renault 5 sibling is a multi-link rear…

3 Min Read
Louis Vuitton Is Dropping a New Perfume As a result of It’s Sizzling | FashionBeans

We independently consider all beneficial services and products. Any services or products…

2 Min Read

Latest

Latino voters activate Trump over heinous deportation agenda

Latino voters activate Trump over heinous deportation agenda

A surge of help from Latino voters helped Donald Trump…

May 16, 2025

U.S. debt not earns a prime grade at any of the most important credit standing businesses after Moody’s downgrade

The explosion of debt in recent…

May 16, 2025

Space Girl who Owned Household Restaurant for Two Many years, Mary Jane Fox, Passes Away at Age of 99

Mary Jane Fox, 99, a lifelong…

May 16, 2025

Jenelle Evans Divorced: Teen Mother Alum Information at Final

Studying Time: 3 minutes Jenelle Evans…

May 16, 2025

CEO compensation disclosure will get recent scrutiny from Trump’s SEC

The U.S. Securities and Change Fee…

May 16, 2025

You Might Also Like

President Trump Urges U.S. to Have interaction with Bitcoin as Wall Avenue and Trillion-Greenback Companies Present Curiosity – “The Defiant”
NFTs

President Trump Urges U.S. to Have interaction with Bitcoin as Wall Avenue and Trillion-Greenback Companies Present Curiosity – “The Defiant”

President Donald Trump has emphasised the significance of Bitcoin and cryptocurrencies, warning that if the UPresident Donald Trump has emphasised…

1 Min Read
Ricky Gervais’ Glonk Turning into a Memecoin Exhibits Pump.enjoyable’s Dominance Slipping – “The Defiant”
NFTs

Ricky Gervais’ Glonk Turning into a Memecoin Exhibits Pump.enjoyable’s Dominance Slipping – “The Defiant”

Lower than three weeks in the past, pump.enjoyable had 99% of the Solana memecoin launchpad market. This week, right down…

5 Min Read
Abraxas Capital Holds 278,000 ETH Price 5M, Withdraws From Binance, Cuts Bitcoin Publicity by 0M – “The Defiant”
NFTs

Abraxas Capital Holds 278,000 ETH Price $655M, Withdraws From Binance, Cuts Bitcoin Publicity by $150M – “The Defiant”

Abraxas Capital has considerably elevated its Ethereum holdings, now proudly owning over 278,000 ETH valued at roughly $655 millionAbraxas Capital…

1 Min Read
Méliuz Acquires 274.52 BTC for .4 Million, Turns into First Bitcoin Treasury Firm in Brazil and Latin America – “The Defiant”
NFTs

Méliuz Acquires 274.52 BTC for $28.4 Million, Turns into First Bitcoin Treasury Firm in Brazil and Latin America – “The Defiant”

Méliuz, a Brazilian public firm, has bought $28.4 million price of Bitcoin, equal to R$ 160 million, turning into the…

1 Min Read
The Texas Reporter

About Us

Welcome to The Texas Reporter, a newspaper based in Houston, Texas that covers a wide range of topics for our readers. At The Texas Reporter, we are dedicated to providing our readers with the latest news and information from around the world, with a focus on issues that are important to the people of Texas.

Company

  • About Us
  • Newsroom Policies & Standards
  • Diversity & Inclusion
  • Careers
  • Media & Community Relations
  • WP Creative Group
  • Accessibility Statement

Contact Us

  • Contact Us
  • Contact Customer Care
  • Advertise
  • Licensing & Syndication
  • Request a Correction
  • Contact the Newsroom
  • Send a News Tip
  • Report a Vulnerability

Term of Use

  • Digital Products Terms of Sale
  • Terms of Service
  • Privacy Policy
  • Cookie Settings
  • Submissions & Discussion Policy
  • RSS Terms of Service
  • Ad Choices

© The Texas Reporter. All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?