BTC $83,100.41 -0.33%
ETH $2,665.83 +0.47%
BNB $758.05 -1.55%
XRP $1.48 -0.49%
SOL $117.64 -1.73%
TRX $0.3341 +0.08%
DOGE $0.0929 -0.95%
ADA $0.2429 -2.33%
BCH $305.14 -3.20%
LINK $14.66 +5.83%
HYPE $86.81 -3.27%
AAVE $148.06 -1.27%
SUI $1.11 -8.92%
XLM $0.2274 +8.03%
ZEC $1,382.80 -11.55%
AAPL $337.67 -0.76%
AMZN $246.03 -1.13%
GOOGL $341.95 +0.04%
MSFT $507.49 -1.83%
META $713.30 -2.61%
NVDA $228.36 +1.88%
TSLA $356.83 -3.66%
SNDK $1,698.42 -2.17%
INTC $114.21 -4.34%
SPCX $145.86 -2.06%
MU $1,050.56 -1.54%
AMD $604.86 -2.16%
BTC $83,100.41 -0.33%
ETH $2,665.83 +0.47%
BNB $758.05 -1.55%
XRP $1.48 -0.49%
SOL $117.64 -1.73%
TRX $0.3341 +0.08%
DOGE $0.0929 -0.95%
ADA $0.2429 -2.33%
BCH $305.14 -3.20%
LINK $14.66 +5.83%
HYPE $86.81 -3.27%
AAVE $148.06 -1.27%
SUI $1.11 -8.92%
XLM $0.2274 +8.03%
ZEC $1,382.80 -11.55%
AAPL $337.67 -0.76%
AMZN $246.03 -1.13%
GOOGL $341.95 +0.04%
MSFT $507.49 -1.83%
META $713.30 -2.61%
NVDA $228.36 +1.88%
TSLA $356.83 -3.66%
SNDK $1,698.42 -2.17%
INTC $114.21 -4.34%
SPCX $145.86 -2.06%
MU $1,050.56 -1.54%
AMD $604.86 -2.16%

will

All
Article
Flash

first_img Cross-chain trading platform Relay API exposes pending transactions, which will compensate approximately $312,000

Co-founder and Chief Operating Officer of the cross-chain trading platform Relay, Jason Maier, stated that the team discovered an issue with the Relay API over the weekend, which exposed pending transaction information before trade execution. MEV seekers exploited the pending routing status to infer on-chain paths and front-run trades before order execution, resulting in worse execution prices for users trading through Relay.This activity occurred from September 12 to September 26, primarily concentrated from September 23 to 26. Seekers profited approximately $136,000 from this, affecting around 5,600 users, with a median impact of $11.88. Relay will pay a $50,000 bounty to Outputlayer for reporting the issue and will automatically compensate affected users without the need for applications; funds will be directly sent to wallets, with a total compensation amount of approximately $312,000.Jason Maier stated that MEV can arise through public mempool exposure, order detail inference, malicious participation in auctions, or data gaps between service providers, and protecting a single link in the transaction path is not sufficient. He mentioned that the team will continue to enhance the execution quality and privacy of the entire transaction path and called on security researchers to report vulnerabilities when discovered.

Bitget CEO live-streamed a response to the platform's first security incident in eight years: the attack originated from a vulnerability in a third-party security product, and the losses will be covered by the user protection fund

In today's community live broadcast, Bitget CEO Gracy responded to recent security incidents and the platform's financial status. She candidly stated that this is the first security incident encountered since Bitget was established 8 years ago. After a complete trace, it was found that hackers exploited vulnerabilities in third-party security products to steal internal network access credentials, forged withdrawal commands to the wallet system, and deceived the wallet into executing abnormal transfers that bypassed risk checks. Gracy emphasized that no private keys were leaked, and cold wallets were unaffected; specific technical details will be disclosed in the formally released security report.Gracy pointed out that the verified losses from this incident are within the coverage of the protection fund, and user funds are not affected. The platform's own funds exceed $1.4 billion, which includes approximately $464 million in the user protection fund. The platform will continue to uphold the security commitments made when the protection fund was established in 2022, planning to replenish the fund to the baseline of $300 million within a week."The protection fund is not just a slogan, but an important mechanism that provides tangible security for users in the event of extreme security incidents," Gracy stated. In the face of sudden security challenges, the platform's comprehensive strength and its ability to take responsibility are important criteria for measuring its risk response capability and long-term credibility. Bitget will continue to uphold its long-term commitment to prioritize user interests.
app_icon
ChainCatcher Building the Web3 world with innovations.