• Bitcoin(BTC)$62,751.00
  • Ethereum(ETH)$2,581.75
  • Tether(USDT)$1.00
  • BNB(BNB)$582.70
  • Solana(SOL)$145.25
  • USDC(USDC)$1.00
  • XRP(XRP)$0.59
  • Lido Staked Ether(STETH)$2,579.71
  • Dogecoin(DOGE)$0.107298
  • Toncoin(TON)$5.61

Crypto exchange Poloniex has suspended all ERC-20 (Ethereum-based) token deposits and withdrawals, and HitBTC has initiated an internal inspection that takes deposits and transfers offline, following OKEX’s decision to halt ERC20 deposits earlier today after the discovery of a potential new smart contract bug called batchOverFlow.

Other exchanges that chose to halt ERC-20 token trading because of the newly discovered vulnerability include Changelly, QUOINE and a number of others.

On April 23, Medium user ranimes posted a blog entitled, “New batchOverflow Bug in Multiple ERC20 Smart Contracts,” detailing how a “a previously unknown vulnerability in the contract” that could allows “an attacker to possess a huge amount of tokens by exploiting these vulnerable contracts,” thus allowing for price manipulation.

The blog post notes that, due to the “code-is-law” principle that is used on the Ethereum (ETH) Blockchain, “there is no traditional well-known security response mechanism in place to remedy these vulnerable contracts.”

The author of the blog writes that teams that work with contract with this vulnerability have been contacted, but “other exchanges also need to be coordinated and there still exist other tradable tokens vulnerable to batchOverflow.”

The blog mentions that another problem could arise with non-centralized exchanges that use offline trading services, “as they cannot even stop attackers from laundering their tokens.”

Medium user John Huxtable commented on the blog post that he thinks “it’s worth noting that batchTransfer isn’t a standard ERC20 function so only the contract owners which chose to implement it could be effected.”

The current problem with some ERC20 tokens comes just after MyEtherWallet reported yesterday that around $150 mln ETH was stolen in an unrelated DNS hack.

Source: Cointelegraph.com

Crypto Investing Risk Warning

Crypto assets are highly volatile. Your capital is at risk.
Don’t invest unless you’re prepared to lose all the money you invest.
This is a high-risk investment, and you should not expect to be protected if something goes wrong.

Read the full disclaimer

Newsletter

Sign up to receive the latest crypto breaking news in your inbox, every day.

I agree that my data is used according to the privacy policy

Check your inbox or spam folder to confirm your subscription.

Breaking crypto news about Bitcoin, Ethereum, Blockchain, NFTs, DeFi and Altcoins. Get instant notifications 24/7 as soon as a new article is published.

Exit mobile version