CONTACT FOR ADS

BTCinsider – Bitcoin, Blockchain & DeFi News
  • BOOKMARKS
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
    CryptoShow More
    Ethereum Layer-2 Linea Reveals Token Plans, Taps SharpLink and Others for Distribution
    Ethereum Layer-2 Linea Reveals Token Plans, Taps SharpLink and Others for Distribution
    29.07.2025
    XRP and Dogecoin Erase Explosive Weekly Gains—Should Traders Worry?
    XRP and Dogecoin Erase Explosive Weekly Gains—Should Traders Worry?
    29.07.2025
    Pump.fun Revenue Plummets as Meme Coin Traders Tap Other Launchpads
    Pump.fun Revenue Plummets as Meme Coin Traders Tap Other Launchpads
    28.07.2025
    Billionaire Ray Dalio Urges Investors to Allocate 15% of Portfolios to Gold and Bitcoin
    Billionaire Ray Dalio Urges Investors to Allocate 15% of Portfolios to Gold and Bitcoin
    28.07.2025
    PayPal to Enable Businesses to Accept Bitcoin, Ethereum and Other Cryptocurrencies
    PayPal to Enable Businesses to Accept Bitcoin, Ethereum and Other Cryptocurrencies
    28.07.2025
  • DeFi
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
    MarketShow More
    Pyth Network brings Hong Kong stock prices onchain for global access
    Pyth Network brings Hong Kong stock prices onchain for global access
    29.07.2025
    Corporations have acquired 1% of Ether supply: Standard Chartered
    Corporations have acquired 1% of Ether supply: Standard Chartered
    29.07.2025
    Bitcoin Holdings Increased to Over $2 Billion
    Bitcoin Holdings Increased to Over $2 Billion
    29.07.2025
    Bitmain to open first US-based ASIC chip factory: Bloomberg
    Bitmain to open first US-based ASIC chip factory: Bloomberg
    29.07.2025
    Tron Inc. Files to Sell Up to $1 Billion in Securities Under TRX Strategy
    Tron Inc. Files to Sell Up to $1 Billion in Securities Under TRX Strategy
    29.07.2025
  • News
    • Mining
    • NFT
    • Stocks
    • Web3
    • Tech
    NewsShow More
    SuperRare $730,000 exploit was easily preventable — Experts weigh in
    SuperRare $730,000 exploit was easily preventable — Experts weigh in
    29.07.2025
    Crypto lender Abra pauses withdrawals as dozens of customers fear their funds are gone
    Crypto lender Abra pauses withdrawals as dozens of customers fear their funds are gone
    29.07.2025
    As Roman Storm mounts his defence, a judge bars ‘self-serving’ evidence
    As Roman Storm mounts his defence, a judge bars ‘self-serving’ evidence
    29.07.2025
    CryptoPunks Lead as NFT Trading Volume Rebounds on Solana and Ethereum
    CryptoPunks Lead as NFT Trading Volume Rebounds on Solana and Ethereum
    29.07.2025
    Breaking down Zora’s latest ‘Content Coin’ fad
    Breaking down Zora’s latest ‘Content Coin’ fad
    28.07.2025
  • Contact Us
Reading: SuperRare $730,000 exploit was easily preventable — Experts weigh in
Share
  • bitcoinBitcoin(BTC)$117,910.62
  • ethereumEthereum(ETH)$3,776.72
  • rippleXRP(XRP)$3.10
  • tetherTether USDt(USDT)$1.00
  • binancecoinBNB(BNB)$810.17
  • solanaSolana(SOL)$180.63
  • usd-coinUSDC(USDC)$1.00
  • dogecoinDogecoin(DOGE)$0.223051
  • tronTRON(TRX)$0.336800
  • cardanoCardano(ADA)$0.78
Font ResizerAa
BTCinsider – Bitcoin, Blockchain & DeFi NewsBTCinsider – Bitcoin, Blockchain & DeFi News
  • Home
  • Crypto
  • Market
  • News
  • Tech
  • Contact
Search
  • Home
  • Market
    • Business
    • Investor
  • Tech
  • News
    • Web3
    • NFT
  • DeFi
  • Crypto
Have an existing account? Sign In
Follow US
© All Rights Reserved.
NFT

SuperRare $730,000 exploit was easily preventable — Experts weigh in

Roman Hasley
Last updated: 29.07.2025 6:19 PM
Roman Hasley
Published: 29.07.2025
Share
SuperRare $730,000 exploit was easily preventable — Experts weigh in

Crypto Platform Suffers Exploit Despite Code Audits

NFT trading platform SuperRare falls victim to nearly $730,000 exploit due to basic smart contract vulnerability.

The Exploit

On Monday, NFT trading platform SuperRare (NFT) suffered a significant security breach. Cybersecurity firm Cyvers reported that a staking contract vulnerability allowed approximately $731,000 worth of the platform’s native RARE tokens to be stolen.

Relevant code in the SuperRare token staking contract. Source: Cointelegraph screenshot
Code line highlighting the critical permissions error that allowed any address to modify protected functions.

Anatomy of the Vulnerability

The core issue stemmed from a critical coding error in a function designed to restrict Merkle root modifications – a vital mechanism controlling user staking balances. Paradoxically, the logic was incorrectly implemented, allowing any interacting address to manipulate this function instead of being limited to designated addresses.

Block explorer data confirmed 61 wallets were impacted by the exploit. While SuperRare co-founder Jonathan Perkins confirmed that core protocol funds remained secure, affected users were assured they would be fully compensated.

Expert Opinions

“ChatGPT would’ve caught this, any half competent Solidity dev would’ve caught this.”
– 0xAw, Lead Developer (@AlienbaseDEX)

Security experts pointed to inadequate testing practices as the primary factor enabling the breach:

  • Unit test failure: Senior blockchain engineer for NM stated the vulnerability would have been caught during standard unit testing.
  • Bug detection: Testing with OpenAI’s o3 model revealed it successfully identified the flaw.
  • Preventative measures: ChatGPT analysis and manual review point to standard testing methodologies as the most reliable detection method.

Lessons in Security Practices

The incident highlights consistent security failures:

  1. Standard unit testing would have flagged the flawed permission logic.
  2. Automated security audits, employed by SuperRare as the contract was assessed, failed to catch the basic issue.
  3. The complexity of SC systems can mask simple logic errors, even critical ones.

SuperRare CEO acknowledged, “It’s a painful reminder of how even small changes in complex systems can have unintended consequences.”

Industry Response

In the immediate aftermath:

– Token holders in affected wallets received full compensation.
– The company announced strengthened protocols requiring mandatory recertification for all post-audit modifications, regardless of scale.
– Experts emphasize this as a classic case highlighting the industry-wide need for rigorous testing, especially in staking contracts.

“This stands as a stark reminder: in decentralized systems, even a one-character mistake can have severe consequences.”
– Slava Demchuk, AMLBot CEO

Related News

  • Hacken Reports Cryptocurrency Hacks Surpass $3.1B in 2025
  • Indian Crypto Exchange CoinDCX Suffers $44M Hack
  • Asia Express: North Korea Crypto Hackers Exploiting AI
Snoop Dogg’s Telegram ‘gifts’ sell out in 30 minutes: NFTs back?
‘A New Frontier’: DeLorean Launches On-Chain Car Marketplace With Patrick Stewart
OpenSea expands beyond NFTs with OS2 public rollout
Yuga Labs looks to replace ‘unserious’ ApeCoin DAO with new ApeCo entity
Trump memecoin wallet in ‘absolute chaos’ as family org unaware of launch

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.

By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Telegram Email Copy Link Print
Share
Previous Article Pyth Network brings Hong Kong stock prices onchain for global access Pyth Network brings Hong Kong stock prices onchain for global access
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Subscribe to our newslettern

Get Newest Articles Instantly!

- Advertisement -
Ad image
Popular News
SuperRare $730,000 exploit was easily preventable — Experts weigh in
SuperRare $730,000 exploit was easily preventable — Experts weigh in
'Dogecoin Millionaire' Is Now a Pepe Millionaire—And He’s Stacking These Meme Coins Next
‘Dogecoin Millionaire’ Is Now a Pepe Millionaire—And He’s Stacking These Meme Coins Next
Performance Art Duo Operator 'Make Movement Collectible' With NFTs
Performance Art Duo Operator ‘Make Movement Collectible’ With NFTs

You Might Also Like

Chimpers Expands Into NFT-Linked Blind Box Collectibles
NFT

Chimpers Expands Into NFT-Linked Blind Box Collectibles

10.07.2025
CryptoPunks Lead as NFT Trading Volume Rebounds on Solana and Ethereum
NFT

CryptoPunks Lead as NFT Trading Volume Rebounds on Solana and Ethereum

29.07.2025
Blistering NFT ‘sweep’ underway as CryptoPunks, Penguins surge
NFT

Blistering NFT ‘sweep’ underway as CryptoPunks, Penguins surge

21.07.2025
Polygon NFTs hit $2B sales milestone as network defies downturn
NFT

Polygon NFTs hit $2B sales milestone as network defies downturn

10.06.2025

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

BTCinsider – Bitcoin, Blockchain & DeFi News

With 20 million users, we are the #1 global business blockchain and cryptocurrency news network.

Subscribe to our newsletter

You can be the first to find out the latest news and tips about trading, markets...

Ad image
© All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?

Not a member? Sign Up