The team behind a Telegram-based game said Thursday that it is working with an apparent white hat hacker to return funds to users after $4.6 million worth of tokens was stolen due to an exploit.
The hacker hit the newly launched game Super Sushi Samurai, which minted its tokens on Ethereum scaling network Blast. The price of its native token, SSS, plunged to a tiny fraction of a penny on the reports of the hack, which exploited a token transfer bug within the smart contract that powers the game.
A pseudonymous Yuga Labs smart contract developer who goes by the name Coffee said on Twitter (aka X) that the bug allowed exploiters to boost their holdings. “Transferring your entire balance to yourself doubles it,” they wrote.
Security firm CertiK spotted the exploit and said on Twitter that it was a white hat rescue. White hat rescues are when a protocol is exploited by a hacker in order to show those behind the project that they have a vulnerability. The noble exploiter then is typically rewarded and allowed to keep a share of the swiped funds.
“We’re working with the white hat on the safe return of funds,” Super Sushi Samurai said on X/Twitter hours after the hack. “An update and postmortem will follow.” The team behind the game did not immediately respond to Decrypt’s questions.
Cielo.Finance, which tracks blockchain data, told Decrypt that SSS tokens were snapped up after the hack. Traders will often do that in case a white hack returns funds and the price of the tokens then rises.
We're working with the white hat on the safe return of funds. An update and post-mortem will follow.
Super Sushi Samurai is a simple “idle” game that runs within the instant messaging platform, Telegram—much like Notcoin, a recent crypto gaming sensation. Currently limited to players who have an access code, Super Sushi Samurai sees players' cartoonish warriors fight foes to earn token rewards, plus there are NFT land plots that play into "megawar" battles between clans.
I wasn’t expecting to enjoy Notcoin. To be honest, I was pretty dismissive at first. You tap an image of a coin on your mobile device, earn an in-game currency for each tap, and are bound by an energy bar that depletes as you tap (and refills when idle). And in the end, you'll be entitled to an airdrop of an upcoming token based on your tapping abilities.
It sounded pretty dull. So imagine my surprise that three weeks after trying the game for the first time, I’m still opening it up every mornin...
It runs on Ethereum layer-2 network Blast, a scaling network which aims to make it quicker and cheaper for people to do things on the sometimes slow and costly mainnet. Blast just launched its mainnet on February 29, but already faced a significant technical hurdle last week when it briefly stopped producing blocks following the Ethereum network's Dencun upgrade.
A desperate man commits an act of self-inflicted violence on a livestreaming site in the hopes of collecting a windfall of digital money from strangers. Sound familiar?
No, we’re not talking about outrageous exploits related to meme coin trading sensation Pump.fun. Or well, not explicitly. We’re outlining the plot of an episode in the latest season of “Black Mirror.”
The first installment of the hit Netflix sci-fi series’ latest season, which debuted Thursday, centers on a plot that appears rip...
Decentralized exchange Hyperliquid delisted perpetual futures for the Solana-based meme coin JELLYJELLY on Wednesday, describing the move as critical to ensuring its network’s integrity amid a looming liquidation crisis.
Hyperliquid uses its own high-speed blockchain, built upon the Ethereum layer-2 network Arbitrum, and the project said its networks’ validators had convened to take “decisive action,” in a post on X (formerly Twitter).
The decision came after a Hyperliquid user opened a $6 milli...
Solana decentralized exchange Raydium says it’s going live in the next week with its “flexible” token launchpad, which will address what have become user pain points on its soon-to-be competitor Pump.fun.
The new platform, LaunchLab, will allow users to adjust a token’s bonding curve and tokenomics, while still offering a user-friendly cookie cutter option.
Previously, Raydium had simply operated as an automated market maker and decentralized exchange on Solana; while Pump.fun rapidly grew to be...