Aurora pays $6M bug bounty to ethical security hacker through Immunefi

On Tuesday, Ethereum (ETH) bridging and scaling solution Aurora announced it had paid out a $6 million bounty to ethical security hacker pwning.eth, who discovered a critical vulnerability in the Aurora Engine. The exploit allegedly placed over $200 million worth of capital at risk. The sum was paid in collaboration with Immunefi, a leading platform for Web 3.0 bug bounties, with $145+ million bounties available and $45+ million bounties paid out.

On April 26, Immunefi received a report from pwning.eth about a critical flaw in the Aurora Engine that would have enabled the infinite minting of ETH in the Aurora Ethereum Virtual Machine as to drain and siphon the corresponding nested ETH (nETH) pool on NEAR. At the time of discovery, the pool contained more than 70,000 ETH worth at least $200 million.

Mitchell Amador, founder and CEO at Immunefi, said: “Hats off to Aurora and pwning.eth for the flawless overall processing of the report. The bug was quickly patched, with no user funds lost.” Aurora had launched a bug bounty program with Immunefi just one week before discovering the security vulnerability. Meanwhile, Frank Braun, head of security at Aurora Labs, commented: “We look at the bug bounty program as the last step in a layered defense approach and will use this bug as a learning opportunity to improve earlier steps, like internal reviews and external audits.

Though arguably innovative, cross-chain communication protocols have been a prime target of hackers as of late. In February, one of the largest decentralized finance hacks occurred when the Wormhole token bridge was drained of over $321 million in digital assets after hackers exploited an infinite minting glitch between its wrapped ETH and ETH pool. 

All Dutch and English crypto news!

Australian Tax Office seeks data from 1.2 million crypto exchange users: Report

The personal and crypto-transaction related details could help identify users who failed to report their tax obligations, according to the Australian Tax Office. News Own this piece...

Ethereum herstelt boven $3.200 en verwelkomt 196.000 nieuwe adressen

Terwijl Ethereum dit weekend boven de $3.200 herstelde, ervoer het netwerk een toename van activiteit, met de hoogste groei op één dag in bijna 19...

Bitget Launches Elite Trader Campaign With Five Prestige Crypto Influencers

Victoria, Seychelles, May 7th, 2024, Chainwire Bitget, the world’s leading cryptocurrency exchange and Web3 company, proudly announces the launch of its latest marketing campaign, Elite Trader....

Nigeria plans to delist naira from all P2P crypto platforms

Nigeria aims to ban naira use on peer-to-peer (P2P) trading platforms. News comes after a meeting between the government represented by the Securities and Exchange Commission...

Beste exchanges

Koop je crypto bij Bitvavo