Promptly after the funds went missing, Swaprum’s Twitter, Telegram and Github accounts were all deleted, however its website is still up.
264 Total views
6 Total shares
Arbitrum-based decentralized exchange (DEX) Swaprum has allegedly conducted a rug-pull on its users, with $3 million worth of customer deposits being swiped from the platform.
A rug-pull or exit scam occurs when a seemingly legitimate project ropes in a certain amount of investment or user deposits before promptly shutting everything down, pulling the capital and vanishing off into the distance — if they don’t adequately cover their tracks, of course.
According to May 19 tweet from the alerts-focused account of blockchain security firm Peck Shield, the bad actors swiped 1,628 Ether (ETH) — worth roughly $2.95 million at current prices — from Swaprum’s liquidity pools, bridged it to Ethereum, and then “laundered” almost all of those funds through crypto mixer Tornado Cash.
#PeckShieldAler #rugpull @Swaprum on #Arbitrum rugged ~$3M, $SAPR has dropped -100%. @Swaprum already deleted its social accounts/groups. The scammers have bridged ~1,628 $ETH to #Ethereum and laundered 1,620 $ETH to Tornado Cashhttps://t.co/tUNgbwGQCd pic.twitter.com/UH8V9RyFHy
— PeckShieldAlert (@PeckShieldAlert) May 19, 2023
Following the incident, Swaprum’s Twitter, Telegram and Github accounts have all been deleted, however Swaprum’s website is still operational at the time of writing.
Deleted socials. Source: Twitter
Adding extra context to the incident, fellow blockchain security firm Beosin claimed that the “deployer of Swaprum used the add() backdoor function to steal LP [liquidity provider] tokens staked by users, then removed liquidity from the pool for profit.”
This was apparently made possible due to the Swaprum developer team allegedly “upgrading the normal liquidity collateral reward contract to a contract containing backdoor functions.”
3/ The backdoor function add() will transfer LP tokens from the contract to the _devadd address. By querying the _devadd address, it will return the ‘Swaprum:Deployer’ address. pic.twitter.com/Z1rZmFSf5R
— Beosin Alert (@BeosinAlert) May 19, 2023
A keyword search for “Swaprum” on Twitter yields several tweets from people calling out smart contract auditors CertiK over the whole ordeal, as the firm had conducted an audit of the platform as recently as May 5.
Related: Can you recover stolen Bitcoin from crypto scams?
Their complaints essentially assert that CertiK signed off on the platform by auditing the platform, with the “audited by CertiK” logo still currently up on the Swaprum website.
Well done @CertiK another rug that’s comming from your audits.#swaprum @Swaprum #certik #scam #rug pic.twitter.com/cPlyx3GMU6
— Crypto Emprende YT (@cryptoemprende_) May 18, 2023
However, it is worth noting that as per CertiK’s disclaimers, it “conducts security assessments on the provided source code exclusively,” and can’t guarantee that its recommendations are integrated. In the audit, CertiK flagged a “major” issue with how centralized Swaprum was.
While it also appears that the backdoor-related upgrades to the project’s smart contracts were conducted after the audit was completed.
As it stands, CertiK’s website has now flagged Swaprum as an “exit scam.”
Swaprum audit. Source: CertiK
Magazine: $3.4B of Bitcoin in a popcorn tin — The Silk Road hacker’s story
Solend is a decentralized lending and borrowing protocol built on Solana. It is lauded for expanding the methods available for Solana users to boost financial gains. Filling a large gap in the Solana ecosystem, Solend drew a staggering $100 million in deposits in just over a month post-launch.Related: DeFi lending and borrowing, explainedSolend rode the…
Global technology giant IBM will use its blockchain platform to monitor and trace supplies of cobalt from the Democratic Republic of Congo, the company confirmed in a press release on Jan. 15.IBM, which has already used the in-house IBM Blockchain platform built on the Hyperledger Fabric in multiple use case environments, will now target the…
When it comes to providing stable value, stablecoins and central bank digital currencies (CBDCs) appear to serve two sides of the same proverbial coin. Crypto stable assets, however, can provide entirely different use cases — and CBDCs simply cannot compete. The key is programmability — smart contracts that automate and add new features to money. Programmability…
When Redditor Joe Greene started the Top 10 Cryptos experiment in 2018, he bought $1,000 of Dash, NEM and Iota, among others, only to watch it crash to $150. But five years on, his experiment has paid off big time.The rules: Buy $100 of each of the top 10 cryptocurrencies on Jan. 1, 2018, 2019,…
This is the first time an EU Member State will use blockchain technology for bank and insurance guarantees, according to Algorand. 1158 Total views 3 Total shares Own this piece of crypto history Collect this article as NFTLayer-1 blockchain platform Algorand has been chosen as the public blockchain to support an “innovative digital guarantees platform”…
What can you say about Dogecoin that hasn’t been said before? How about this: Elon Musk’s tweets aren’t the only thing that let the DOGE out.This week, right in the middle of the retail trading frenzy that has turned everyone’s favorite cartoon puppy into a rabid bull-doge, Cointelegraph Markets Pro subscribers had the opportunity to…
New research asserts that EOS and ETH were wash-traded on exchanges to manipulate prices during EOS’s multi-billion dollar ICO. 2201 Total views 45 Total shares New research has shed more light on the crypto industry’s largest-ever token sale, alleging that foul play may have been afoot during EOS’s initial coin offering (ICO) four years ago.Researchers…