Tap to Trade in Gate Square, Win up to 50 GT & Merch!
Click the trading widget in Gate Square content, complete a transaction, and take home 50 GT, Position Experience Vouchers, or exclusive Spring Festival merchandise.
Click the registration link to join
https://www.gate.com/questionnaire/7401
Enter Gate Square daily and click any trading pair or trading card within the content to complete a transaction. The top 10 users by trading volume will win GT, Gate merchandise boxes, position experience vouchers, and more.
The top prize: 50 GT.
, and exchanged it for 720.81 ETH through the cross-chain bridge deBridge, then transferred it all into Tornado Cash for mixing. As of now, Griffin AI has removed the official liquidity pool of GAIN on the BNB Chain and officially requested all CEXs to suspend trading, deposits, and withdrawal functions for GAIN (BSC) tokens. However, it should be noted that the project team has not proposed a solution for the compensation of the stolen assets.
The only consolation is that, unlike UXLINK and SFUND, some bottom buyers of GAIN have successfully harvested good returns, with one address buying in at an average price of 0.00625 dollars for 20,200 dollars worth of GAIN, realizing a floating profit of 107,000 dollars in one hour.
Overall, compared to previous one-time attack behaviors, the current attack methods have begun to focus on contract permissions and token issuance control. Although both are means of attack, the latter is obviously much worse. For projects, malicious token issuance destroys the entire ecosystem centered around the token, which will greatly reduce user trust in the project and trigger a series of chain reactions. A typical example is that as incidents of issuance increase, there are already voices in the market suggesting that project parties are self-directing and self-acting through multi-signature.
From a security perspective, the management of multi-signature (multi-sig) is also worth paying attention to. Nowadays, project parties generally adopt multi-sig in their smart contracts, but management should also keep up. The primary requirement is to enforce the use of hardware wallets to achieve physical isolation. Secondly, the signing parties should be as decentralized as possible, avoiding centralized risks from the perspectives of time and space, hardware, and backups. In addition to avoiding technical hard risks, the soft environment is also crucial. Multi-sig holders should ensure identity concealment and establish cross-verification processes for effective secondary checks, building an artificial defense line. Moreover, drills are essential; maintaining a sense of crisis and conducting regular drills while preparing crisis plans is vital, as in the industry, a fake drill can turn into a real battle in an instant.
The founder of Slow Fog, Yu Xian, also suggested to the project party that the multi-signature owners should match hardware wallets that only support complex signatures and have large screens, encompassing the entire process from mnemonic generation to usage, and also compatible with Passphrase or SSS backup to enhance security. In daily usage, one should remain vigilant, be highly cautious about signature requirements, and reduce potential risks.