This website collects cookies to deliver better user experience, you agree to the Privacy Policy.
Accept
Sign In
The Texas Reporter
  • Home
  • Trending
  • Texas
  • World
  • Politics
  • Opinion
  • Business
    • Business
    • Economy
    • Real Estate
  • Crypto & NFTs
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Travel
    • Fashion
    • Books
    • Arts
  • Health
  • Sports
  • Entertainment
Reading: CertiK Accused Of Entrance-Working Bug Bounties By Subsidiary – The Defiant
Share
The Texas ReporterThe Texas Reporter
Font ResizerAa
Search
  • Home
  • Trending
  • Texas
  • World
  • Politics
  • Opinion
  • Business
    • Business
    • Economy
    • Real Estate
  • Crypto & NFTs
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Travel
    • Fashion
    • Books
    • Arts
  • Health
  • Sports
  • Entertainment
Have an existing account? Sign In
Follow US
© The Texas Reporter. All Rights Reserved.
NFTs

CertiK Accused Of Entrance-Working Bug Bounties By Subsidiary – The Defiant

Editorial Board
Editorial Board Published June 26, 2024
Share
SHARE

Safety researchers have flagged OpenBounty, a platform affiliated with CertiK, for allegedly front-running bug bounty reviews.

CertiK, the good contract auditor, is on the heart of renewed controversy for allegedly searching for to front-run bug bounty reviews.

On June 25, Pop Punk, the co-founder of Gaslite, a gasoline effectivity auditor, accused OpenBounty, a bug bounty platform incubated by Shentu — the rebranded CertiK Chain — of front-running bug bounty reviews and violating the phrases of service surrounding bug bounty reviews.

OpenBounty ostensibly offers a platform for aggregating bug bounties and facilitating reporting web3 code vulnerabilities. Nevertheless, critics consider the platform principally serves as a automobile for front-running bounty reviews to say any rewards on provide.

“OpenBounty… appears to front-run bug bounty reports,” Pop Punk stated. “This is a direct violation of many large protocol’s bug bounty terms… The more suspicious thing is that their website makes requests to a domain with CertiK in the name when you report a bounty.”

Suspicions concerning OpenBounty have been first raised by h0wlu, a safety researcher.

“I created a test account on their platform to check it out, thinking maybe it’s just an aggregator, but no,” h0wlu stated. “They have submission forms for all these programs and the findings are sent to their API servers.”

Howlu discovered that OpenBounty’s APIs are hosted by the “bounty-prod.noopsbycertik.com” subdomain, additional suggesting CertiK is related to the platform. In addition they famous that Uniswap’s bug bounty coverage states that reviews should be madedirectly,and never by way of a 3rd occasion.

“If you find a bug, report it to the protocol directly. Not some shady website associated with CertiK,” added Pop Punk. “Who [knows] if they’re going to.”

All eyes on CertiK

The OpenBounty allegations are swirling after CertiK got here underneath hearth for exploiting a vulnerability it recognized on the Kraken centralized trade to siphon $3 million from the platform final week.

Kraken accused CertiK’s researchers of holding the funds “hostage” in a bid to barter a bug bounty. “This is not whitehat hacking,” stated Nick Percoco, chief safety officer at Kraken. “This is extortion.”

Safety researchers have additionally spoken out in opposition to CertiK in response to the controversy, accusing the agency of finishing up lazy safety audits.

CertiK claimed it was merely finishing up “research” into the extent of the exploit earlier than reporting it, and returned the funds after dealing with backlash.

Associated: Former Certik Shoppers Query Safety Agency’s Stronghold On Protocol Audits

TAGGED:AccusedBountiesBugCertikDefiantFrontRunningsubsidiary
Share This Article
Twitter Email Copy Link Print
Previous Article What’s the very best recommendation you have heard (to this point) in 2024?
Next Article Ryan Seacrest’s Wheel of Fortune Wage: How A lot He is Paid

Editor's Pick

Sizzling Lady Summer time Begins within the Bathe—Right here’s Learn how to Prep Your Pores and skin

Sizzling Lady Summer time Begins within the Bathe—Right here’s Learn how to Prep Your Pores and skin

We might obtain a portion of gross sales if you buy a product by a hyperlink on this article. Most…

By Editorial Board 8 Min Read
Alpine’s Sizzling Hatch EV Has a Constructed-In, ‘Gran Turismo’ Model Driving Teacher

One other win over its Renault 5 sibling is a multi-link rear…

3 Min Read
Louis Vuitton Is Dropping a New Perfume As a result of It’s Sizzling | FashionBeans

We independently consider all beneficial services and products. Any services or products…

2 Min Read

Latest

“A Family’s Fight to Reclaim Their Legacy”

“A Family’s Fight to Reclaim Their Legacy”

Introduction: For generations, the Wright family has worked and lived…

July 9, 2025

AR Global Inc CEO Kason Roberts Donates to Support Kerrville Storm Victims, Mobilizes Team for Restoration Efforts

Kerrville, Texas — In the aftermath…

July 9, 2025

Bitcoin Tops $109,000 After Senate Passes Trump’s ‘Big Beautiful Bill’ – “The Defiant”

The crypto market posted modest good…

July 9, 2025

Two vital hazard alerts within the June employment report – Indignant Bear

Two vital hazard alerts within the…

July 9, 2025

Simone Biles Thirst Traps in Bikini Amidst Boob Job Hypothesis

Studying Time: 3 minutes Simone Biles…

July 9, 2025

You Might Also Like

Solana Underperforms Ethereum as SOL ETF Commences Buying and selling – “The Defiant”
NFTs

Solana Underperforms Ethereum as SOL ETF Commences Buying and selling – “The Defiant”

The REX Shares ETF went dwell right now and garnered $8 million in quantity inside the first 20 minutes, however…

2 Min Read
Belgium’s KBC Financial institution With 0 Billion Property to Launch Bitcoin and Ether Buying and selling on Bolero Platform Pending Autumn 2025 Approval – “The Defiant”
NFTs

Belgium’s KBC Financial institution With $300 Billion Property to Launch Bitcoin and Ether Buying and selling on Bolero Platform Pending Autumn 2025 Approval – “The Defiant”

Belgium’s KBC Financial institution, the nation’s second-largest banking establishment with roughly 4 million customers and $300 billion in property, plans…

1 Min Read
Tom Lee Predicts Goldman Sachs, JPMorgan Will Purchase Ethereum to Help Stablecoin Operations – “The Defiant”
NFTs

Tom Lee Predicts Goldman Sachs, JPMorgan Will Purchase Ethereum to Help Stablecoin Operations – “The Defiant”

Tom Lee, a widely known market strategist, has forecasted that main banks comparable to Goldman Sachs and JPMorgan are prone…

1 Min Read
Dubai Regulator Approves First Tokenized Cash Market Fund – “The Defiant”
NFTs

Dubai Regulator Approves First Tokenized Cash Market Fund – “The Defiant”

The Dubai Monetary Providers Authority has granted regulatory approval for the QCD Cash Market Fund, the primary tokenised money-market automobile…

1 Min Read
The Texas Reporter

About Us

Welcome to The Texas Reporter, a newspaper based in Houston, Texas that covers a wide range of topics for our readers. At The Texas Reporter, we are dedicated to providing our readers with the latest news and information from around the world, with a focus on issues that are important to the people of Texas.

Company

  • About Us
  • Newsroom Policies & Standards
  • Diversity & Inclusion
  • Careers
  • Media & Community Relations
  • WP Creative Group
  • Accessibility Statement

Contact Us

  • Contact Us
  • Contact Customer Care
  • Advertise
  • Licensing & Syndication
  • Request a Correction
  • Contact the Newsroom
  • Send a News Tip
  • Report a Vulnerability

Term of Use

  • Digital Products Terms of Sale
  • Terms of Service
  • Privacy Policy
  • Cookie Settings
  • Submissions & Discussion Policy
  • RSS Terms of Service
  • Ad Choices

© The Texas Reporter. All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?