<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>curve finance vulnerability Archives - Coin Engineer</title>
	<atom:link href="https://coinengineer.net/blog/tag/curve-finance-vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>https://coinengineer.net/blog/tag/curve-finance-vulnerability/</link>
	<description>Btc, Coins, Pre-Sale, DeFi, NFT</description>
	<lastBuildDate>Wed, 01 May 2024 12:38:45 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://coinengineer.net/blog/wp-content/uploads/2024/04/cropped-Coin-Engineer-Logo-Favicon-2-32x32.png</url>
	<title>curve finance vulnerability Archives - Coin Engineer</title>
	<link>https://coinengineer.net/blog/tag/curve-finance-vulnerability/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Curve Finance Awarded a Security Researcher</title>
		<link>https://coinengineer.net/blog/curve-finance-awarded-a-security-researcher/</link>
					<comments>https://coinengineer.net/blog/curve-finance-awarded-a-security-researcher/#respond</comments>
		
		<dc:creator><![CDATA[Tanju Akbıyık]]></dc:creator>
		<pubDate>Wed, 01 May 2024 14:00:28 +0000</pubDate>
				<category><![CDATA[Crypto News]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Curve Finance]]></category>
		<category><![CDATA[Curve Finance hack]]></category>
		<category><![CDATA[curve finance security]]></category>
		<category><![CDATA[curve finance vulnerability]]></category>
		<guid isPermaLink="false">https://coinengineer.io/?p=19323</guid>

					<description><![CDATA[<p>Curve Finance awarded the maximum bug bounty of $250,000 to cybersecurity researcher Marco Croc after thoroughly investigating the vulnerability. A security researcher has been rewarded $250,000 for discovering a vulnerability that has allowed hackers to siphon millions of dollars from crypto protocols in the past. Pseudonymous cybersecurity researcher Marco Croc of Kupia Security has identified</p>
<p>The post <a href="https://coinengineer.net/blog/curve-finance-awarded-a-security-researcher/">Curve Finance Awarded a Security Researcher</a> appeared first on <a href="https://coinengineer.net/blog">Coin Engineer</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p><strong>Curve Finance</strong> awarded the maximum bug bounty of $250,000 to cybersecurity researcher Marco Croc after thoroughly investigating the vulnerability. A security researcher has been rewarded $250,000 for discovering a vulnerability that has allowed hackers to siphon millions of dollars from crypto protocols in the past.</p>
<p>Pseudonymous cybersecurity researcher Marco Croc of Kupia Security has identified a reentrant vulnerability in decentralized finance (DeFi) protocol Curve Finance. In an X thread, he explained how the bug could be exploited to manipulate balances and withdraw funds from liquidity pools.</p>
<p>Marco Croc explained that <a href="https://coinengineer.net/blog/curve-finance-proposes-amm-fee-increase-for-llamma-liquidity-pool/">Curve Finance</a> acknowledges potential vulnerabilities and “recognizes the severity of the vulnerability.” After a thorough investigation, Curve Finance awarded Marco Croc the maximum error award of $250,000.</p>
<p>According to <a href="https://coinengineer.net/blog/curve-finance-and-zetachain-cross-chain-bitcoin-integration/">Curve Finance</a>, the threat was not classified as &#8220;very dangerous&#8221; and they believed that they would be able to recover the stolen funds in such a situation. However, the protocol noted that a security incident of any scale &#8220;might have created serious panic.&#8221;</p>
<p>Curve Finance survived a $62 million hack in July. As part of returning to normalcy, the DeFi protocol voted to compensate liquidity providers (LPs) worth $49.2 million in assets.</p>
<p>On-chain data confirms that 94% of token holders have approved the distribution of over $49.2 million worth of tokens to cover losses of Curve, JPEG&#8217;d (JPEG), Alchemix (ALCX), and Metronome (MET) pools.</p>
<p>According to Curve&#8217;s proposal, the community fund will provide Curve DAO (CRV) tokens. The final amount includes a deduction for tokens recovered since the incident.</p>
<p>“In total, the recovery of ETH 2,887 was calculated to be 5919.2226 ETH, the CRV to be recovered was calculated to be 34,733,171.51 CRV, and the total to be distributed was calculated to be 55,544,782.73 CRV,” the proposal states.</p>
<p>The attacker exploited a vulnerability in stable repositories using some versions of the Vyper programming language. The bug made Vyper versions 0.2.15, 0.2.16 and 0.3.0 vulnerable to reentrant attacks.</p>
<hr />
<p><em>You can also freely share your thoughts and comments about the topic in the comment section. Additionally, don’t forget to follow us on our <a href="https://t.me/coinengineernews" target="_blank" rel="noreferrer noopener"><strong>Telegram, </strong></a><a href="https://www.youtube.com/@CoinEngineer" target="_blank" rel="noreferrer noopener"><strong>YouTube</strong></a>, and <a href="https://twitter.com/coinengineers"><strong>Twitter</strong></a> channels for the latest news and updates.</em></p>
<p>The post <a href="https://coinengineer.net/blog/curve-finance-awarded-a-security-researcher/">Curve Finance Awarded a Security Researcher</a> appeared first on <a href="https://coinengineer.net/blog">Coin Engineer</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://coinengineer.net/blog/curve-finance-awarded-a-security-researcher/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url='https://coinengineer.net/blog/wp-content/uploads/2023/12/tempory-30.png' type='image/webp' medium='image' width='1920' height='1080'><media:title type='plain'> <![CDATA[USA]]></media:title><media:thumbnail url='https://coinengineer.net/blog/wp-content/uploads/2023/12/tempory-30.png' width='58' height='33' /></media:content>	</item>
	</channel>
</rss>
