Wednesday, 30 Jul 2025
  • My Feed
  • My Interests
  • My Saves
  • History
  • Blog
Subscribe
Crypto Guide Daily
  • Home
  • Credit & Loans
    Credit & LoansShow More
    Opendoor Cash Plus Launched Amid Meme Stock Frenzy

    In the midst of becoming a meme stock, iBuying company Opendoor has…

    By Mia Schneider
    Why Beyoncé and Jay-Z Took Out a Second Mortgage

    When you hear the phrase “second mortgage,” a negative connotation likely comes…

    By Mia Schneider
    Fannie Mae Forecasts Lower Mortgage Rates, Less Home Price Appreciation in 2026

    While it’s a difficult concept to wrap one’s head around, it is…

    By Mia Schneider
    Home Builders Are Advertising Monthly Payments Instead of Home Prices to Clear Inventory

    Once upon a time, it was pretty common to see a new…

    By Mia Schneider
    The Magic Mortgage Rate Is Now 6%

    Ever since mortgage rates surged from their record lows in early 2022,…

    By Mia Schneider
  • Finance
    FinanceShow More
    Need to Increase No. Large & Midcap Stocks by Widening Categorization? And How to Do it?

    I have maintained that there is a need to relook at the…

    By Ethan Walker
    Making Sense of Overlap among active Smallcap Funds

    There is significantly less portfolio overlap among active Smallcap Funds than among…

    By Ethan Walker
    Rethinking Retirement + Is Retirement is the real enemy of longevity?

    Most people view “retirement” as a sharp break – working full-time one…

    By Ethan Walker
    Comparing the Overlaps between major indices of Nifty50, Next50, Nifty100 and Nifty500.

    Let’s compare the Overlaps between major indices of Nifty50, Next50, Nifty100 and…

    By Ethan Walker
    Quoted (Moneycontrol) – June 2025 – How to maximise Home loan interest savings with prepayments?

    I was recently quoted in Moneycontrol in an article titled “Home loan…

    By Ethan Walker
  • Financial Tools & Apps
    Financial Tools & AppsShow More
    Major Compliance Risks When Using AI Tools (And Best Practices To Mitigate Them)

    AI tools like ChatGPT and automated meeting notetakers offer meaningful time savings…

    By Sofia Martins
    How I Stay Disciplined With Money Without Being Perfect

    Let’s be honest: you don’t need another “perfect budget” template or some…

    By Sofia Martins
    Why Risk Tolerance Questionnaires Can Be Powerful For Prospects (Not Just Clients)

    For the last 20 years, Risk Tolerance Questionnaires (RTQs) have served as…

    By Sofia Martins
    Weekend Reading For Financial Planners (July 26–27)

    Enjoy the current installment of "Weekend Reading For Financial Planners" – this…

    By Sofia Martins
    Kitces & Carl Ep 169: IS There A Future Of Financial Planning In The AI Era?

    From the advent of personal computers and the Internet to smartphones and…

    By Sofia Martins
  • Investing
    InvestingShow More
    Jeff Rhodes: Gold, Silver Price Calls for 2025, Top Drivers to Watch

    Jeff Rhodes of Goldstrom Advisory shares his analysis of the gold price…

    By Emily Johansson
    2025 Precious Metals Market Outlook

    Investing in precious metals? Let our experts help you stay ahead of…

    By Emily Johansson
    Psychedelics Market Update: H1 2025 in Review

    The psychedelic drugs market is emerging as a strategic investment opportunity in…

    By Emily Johansson
    Gold Retreats, Equities Down as Fed Leaves Rates Unchanged​

    The US Federal Reserve held its fifth meeting of 2025 from Tuesday…

    By Emily Johansson
    Capricorn Metals’ Karlawinda Expansion Gets Thumbs Up

    The Karlawinda gold project by Capricorn Metals (ASX:CMM,OTC Pink:CRNLF) is now clear…

    By Emily Johansson
  • Crypto
    CryptoShow More
    Fundamental Global Sinks 13% Following Ether Treasury News

    Shares of Fundamental Global plunged today on the Nasdaq after the company…

    By Sofia Martins
    Treasury Companies Present Clear Use Case for ETH — Bitwise Exec

    Ether treasury and holding companies have solved Ethereum’s narrative problem by packaging…

    By Sofia Martins
    Can ETH Break $4.5K And Invalidate Daily Bearish Divergence?

    Key takeaways:Ether perpetual futures volume has surpassed Bitcoin, signaling a major shift…

    By Sofia Martins
    CBOE Files to Streamline Crypto ETF Listings as US Pushes Regulatory Reform

    The Chicago Board Options Exchange (CBOE) has filed a rule change request…

    By Sofia Martins
    Ripple CEO Debunks SWIFT Partnership, XRP To Dramatically Change Payments Infrastructure

    Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad…

    By Sofia Martins
  • 🔥
  • Crypto
  • Investing
  • Finance
  • Credit & Loans
  • Financial Tools & Apps
Font ResizerAa
Crypto Guide DailyCrypto Guide Daily
  • My Saves
  • My Interests
  • My Feed
  • History
Search
  • Home
  • Credit & Loans
  • Finance
  • Financial Tools & Apps
  • Investing
  • Crypto
  • Personalized
    • My Feed
    • My Saves
    • My Interests
    • History
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Crypto Guide Daily > Blog > Crypto > SuperRare $730,000 exploit was easily preventable — Experts weigh in
Crypto

SuperRare $730,000 exploit was easily preventable — Experts weigh in

Sofia Martins
Last updated: July 29, 2025 2:47 pm
Sofia Martins
Share
SHARE

Contents
Anatomy of a vulnerabilityThe importance of unit testingMost vulnerabilities are oversights

NFT trading platform SuperRare suffered a $730,000 exploit on Monday due to a basic smart contract bug that experts say could have easily been prevented with standard testing practices.

SuperRare’s (RARE) staking contract was exploited on Monday with around $731,000 worth of RARE tokens stolen, according to crypto cybersecurity firm Cyvers.

The vulnerability stems from a function meant to allow only specific addresses to modify the Merkle root, a critical data structure that determines user staking balances. However, the logic was mistakenly written to allow any address to interact with the function.

0xAw, lead developer at Base decentralized exchange Alien Base, pointed out that the mistake in question was obvious enough to be caught by ChatGPT. Cointelegraph independently verified that OpenAI’s o3 model successfully identified the flaw when tested.

Security, Hackers, Cybersecurity, Hacks
Relevant code in the SuperRare token staking contract. Source: Cointelegraph

“ChatGPT would’ve caught this, any half competent Solidity dev would’ve caught this. Basically anyone, if they looked. Most likely nobody did,” 0xAw told Cointelegraph.

SuperRare co-founder Jonathan Perkins told Cointelegraph that no core protocol funds were lost, and affected users will be made whole. He said that it appears that 61 wallets are affected.

“We’ve learned from it, and now future changes will go through a much more robust review pipeline,“ he said.

Related: Crypto hacks surpass $3.1B in 2025 as access flaws persist: Hacken

Anatomy of a vulnerability

To determine whether changing the Merkle root should be allowed, the smart contract checked if the interacting address was not a specific address or the contract’s owner. This is the opposite logic to what was intended to be enforced, allowing anyone to siphon the staked RARE out of the contract.

Security, Hackers, Cybersecurity, Hacks
The line containing the relevant check. Source: Cointelegraph

A senior engineer at crypto insurance firm Nexus Mutual told Cointelegraph that “unit tests would have caught this mistake.”

Mike Tiutin, blockchain architect and chief technology officer at firm AMLBot, said, “It’s a silly mistake of the developer that was not covered by tests (that’s why full coverage is important).”

AMLBot CEO Slava Demchuk also came to the same conclusion, noting that “there was no extensive testing (or a bug bounty program) that could have found it pre-deployment.” He highlighted the importance of testing, noting that it is a “classic example why smart contract logic must be rigorously audited.” He added:

“This stands as a stark reminder: in decentralized systems, even a one-character mistake can have severe consequences.”

While Perkins insisted the contracts were audited and unit-tested, he acknowledged that the bug was introduced late in the process and wasn’t covered in final test scenarios:

“It’s a painful reminder of how even small changes in complex systems can have unintended consequences.“

Related: Indian crypto exchange CoinDCX hacked, $44M drained

The importance of unit testing

Unit tests are small, automated tests that check whether individual parts (“units”) of a program — typically functions or methods — work as expected. Each test targets a specific behavior or output based on a given input, helping to catch bugs early.

In this case, the tests that verify whether addresses can or cannot call the function to modify the Merkle root would have failed.

“By oversight or inadequate testing, the effect was the same: an avoidable vulnerability that cost massively,“ Demchuk told Cointelegraph.

0xAw similarly said that “the problem was, of course, the apparently complete lack of testing.” He said that “it’s not even a kind of code that works well in normal conditions, and fails if you push it in the right places.”

“This code just does the opposite of what you expect,“ he added.

Perkins told Cointelegraph that moving forward, SuperRare has introduced new workflows that mandate re-audits for any post-audit changes, no matter how minor.

Most vulnerabilities are oversights

0xAw said that the mistake is “a normal human error.” Instead, what he views as a “monumental mistake” is that it “made it to production and stayed there.”

0xAw highlighted that the vast majority of serious vulnerabilities originate from “really stupid and easily preventable mistakes.” Still, he admitted that “they’re usually a bit harder to notice than this.”

Hacken’s head of incident response, Yehor Rudytsia, agreed that thorough test coverage would have caught the flaw.

“If reviewing this function, it’s a pretty obvious bug,” he said.

Magazine: North Korea crypto hackers tap ChatGPT, Malaysia road money siphoned: Asia Express

Share This Article
Twitter Email Copy Link Print
Previous Article Why is India investigating Binance and WazirX over crypto loopholes?
Next Article Ethereum Sta Diventando Parte della Finanza Tradizionale (TradFi) — Ecco Perché
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Informed with Verified and Up-to-the-Minute Information

We are committed to accuracy, impartiality, and delivering breaking news as it unfolds—earning the trust of a wide and discerning audience. Stay informed with real-time updates on the latest events and emerging trends.
FacebookLike
TwitterFollow
PinterestPin
InstagramFollow
MediumFollow
QuoraFollow

You Might Also Like

Crypto

Grok Picks These 4 Altcoins to 10x Before 2026

By Sofia Martins
Crypto

Hive Digital Technologies Rings Nasdaq Closing Bell, Eyes $100M HPC Growth

By Sofia Martins
Crypto

Solo Bitcoin Miner Successfully Mines Block

By Sofia Martins
Crypto

ETH Rally To $4K Still Possible Despite Recent Sell-off

By Sofia Martins
Crypto Guide Daily
Facebook Twitter Youtube Rss Medium

About Us

CryptoGuideDaily: Your gateway to the fast-paced world of cryptocurrency. Get real-time updates, expert insights, and breaking news across Bitcoin, Ethereum, DeFi, NFTs, and more. Stay informed with 24/7 crypto coverage.

Top Categories
  • Financial Tools & Apps
  • Credit & Loans
  • Finance
  • Investing
  • Crypto
  • Terms and Conditions
Usefull Links
  • Advertise with US
  • Privacy Policy
  • History
  • My Saves
  • My Interests
  • My Feed
  • Contact
  • About us
  • Sitemap
  • Terms and Conditions

© Crypto Daily Guide. All Rights Reserved.

  • bitcoinBitcoin(BTC)$117,006.00-0.23%
  • ethereumEthereum(ETH)$3,752.71-0.37%
  • rippleXRP(XRP)$3.07-1.20%
  • tetherTether(USDT)$1.000.01%
  • binancecoinBNB(BNB)$784.91-2.18%
  • solanaSolana(SOL)$175.32-2.73%
  • usd-coinUSDC(USDC)$1.000.00%
  • staked-etherLido Staked Ether(STETH)$3,748.00-0.36%
  • dogecoinDogecoin(DOGE)$0.216298-2.25%
  • tronTRON(TRX)$0.327711-2.20%
  • cardanoCardano(ADA)$0.76-2.68%
  • Wrapped stETHWrapped stETH(WSTETH)$4,548.410.04%
  • wrapped-bitcoinWrapped Bitcoin(WBTC)$116,948.00-0.17%
  • HyperliquidHyperliquid(HYPE)$42.04-2.10%
  • suiSui(SUI)$3.74-1.79%
  • stellarStellar(XLM)$0.404546-2.67%
  • wrapped-beacon-ethWrapped Beacon ETH(WBETH)$4,037.09-0.12%
  • chainlinkChainlink(LINK)$17.42-1.68%
  • bitcoin-cashBitcoin Cash(BCH)$566.560.54%
  • Wrapped eETHWrapped eETH(WEETH)$4,020.78-0.35%
  • hedera-hashgraphHedera(HBAR)$0.252989-2.71%
  • avalanche-2Avalanche(AVAX)$23.08-4.61%
  • WETHWETH(WETH)$3,752.58-0.35%
  • litecoinLitecoin(LTC)$108.830.88%
  • leo-tokenLEO Token(LEO)$8.95-0.02%
  • the-open-networkToncoin(TON)$3.350.00%
  • Ethena USDeEthena USDe(USDE)$1.000.04%
  • USDSUSDS(USDS)$1.000.03%
  • shiba-inuShiba Inu(SHIB)$0.000013-2.29%
  • Binance Bridged USDT (BNB Smart Chain)Binance Bridged USDT (BNB Smart Chain)(BSC-USD)$1.000.08%
  • whitebitWhiteBIT Coin(WBT)$43.810.14%
  • Coinbase Wrapped BTCCoinbase Wrapped BTC(CBBTC)$117,012.00-0.18%
  • uniswapUniswap(UNI)$9.82-3.94%
  • polkadotPolkadot(DOT)$3.76-2.79%
  • moneroMonero(XMR)$308.75-2.07%
  • bitget-tokenBitget Token(BGB)$4.490.05%
  • pepePepe(PEPE)$0.000011-1.70%
  • Ethena Staked USDeEthena Staked USDe(SUSDE)$1.190.12%
  • crypto-com-chainCronos(CRO)$0.141850-1.38%
  • aaveAave(AAVE)$270.76-3.86%
  • daiDai(DAI)$1.000.02%
  • EthenaEthena(ENA)$0.582.53%
  • BittensorBittensor(TAO)$367.78-2.55%
  • ethereum-classicEthereum Classic(ETC)$21.11-2.59%
  • nearNEAR Protocol(NEAR)$2.61-3.51%
  • Pi NetworkPi Network(PI)$0.415511-2.24%
  • aptosAptos(APT)$4.43-1.76%
  • OndoOndo(ONDO)$0.94-1.36%
  • internet-computerInternet Computer(ICP)$5.38-0.46%
  • okbOKB(OKB)$47.93-1.18%
  • Jito Staked SOLJito Staked SOL(JITOSOL)$213.33-2.98%
  • mantleMantle(MNT)$0.74-2.44%
  • kaspaKaspa(KAS)$0.091637-3.47%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • Binance-Peg WETHBinance-Peg WETH(WETH)$3,755.85-0.09%
  • bonkBonk(BONK)$0.0000290.17%
  • Pudgy PenguinsPudgy Penguins(PENGU)$0.034933-6.00%
  • algorandAlgorand(ALGO)$0.250655-2.95%
  • USD1USD1(USD1)$1.000.07%
  • arbitrumArbitrum(ARB)$0.408755-2.82%
  • vechainVeChain(VET)$0.024233-2.94%
  • gatechain-tokenGate(GT)$17.38-0.31%
  • cosmosCosmos Hub(ATOM)$4.37-4.35%
  • fasttokenFasttoken(FTN)$4.590.09%
  • render-tokenRender(RENDER)$3.79-2.68%
  • polygon-ecosystem-tokenPOL (ex-MATIC)(POL)$0.214878-2.03%
  • worldcoin-wldWorldcoin(WLD)$1.05-1.20%
  • Official TrumpOfficial Trump(TRUMP)$9.20-2.25%
  • Binance Staked SOLBinance Staked SOL(BNSOL)$186.80-2.37%
  • sUSDSsUSDS(SUSDS)$1.060.02%
  • SkySky(SKY)$0.084957-0.34%
  • sei-networkSei(SEI)$0.309994-2.89%
  • fetch-aiArtificial Superintelligence Alliance(FET)$0.68-2.63%
  • rocket-pool-ethRocket Pool ETH(RETH)$4,268.35-0.28%
  • StoryStory(IP)$5.861.00%
  • quant-networkQuant(QNT)$117.82-1.50%
  • SPX6900SPX6900(SPX)$1.81-7.60%
  • flare-networksFlare(FLR)$0.024247-0.83%
  • filecoinFilecoin(FIL)$2.46-3.29%
  • Kelp DAO Restaked ETHKelp DAO Restaked ETH(RSETH)$3,948.060.03%
  • Lombard Staked BTCLombard Staked BTC(LBTC)$116,873.00-0.30%
  • Jupiter Perpetuals Liquidity Provider TokenJupiter Perpetuals Liquidity Provider Token(JLP)$5.00-0.77%
  • xdce-crowd-saleXDC Network(XDC)$0.095752-4.78%
  • JupiterJupiter(JUP)$0.51-4.04%
  • USDtbUSDtb(USDTB)$1.000.01%
  • kucoin-sharesKuCoin(KCS)$11.310.09%
  • curve-dao-tokenCurve DAO(CRV)$1.035.85%
  • StakeWise Staked ETHStakeWise Staked ETH(OSETH)$3,944.88-1.29%
  • Mantle Staked EtherMantle Staked Ether(METH)$4,014.33-0.40%
  • Liquid Staked ETHLiquid Staked ETH(LSETH)$4,052.54-0.40%
  • USDT0USDT0(USDT0)$1.000.08%
  • injective-protocolInjective(INJ)$13.57-3.22%
  • blockstackStacks(STX)$0.74-3.79%
  • nexoNEXO(NEXO)$1.320.14%
  • first-digital-usdFirst Digital USD(FDUSD)$1.00-0.21%
  • CelestiaCelestia(TIA)$1.74-5.68%
  • Renzo Restaked ETHRenzo Restaked ETH(EZETH)$3,951.21-0.11%
  • Polygon Bridged USDT (Polygon)Polygon Bridged USDT (Polygon)(USDT)$1.000.03%
  • optimismOptimism(OP)$0.70-3.04%
  • Falcon USDFalcon USD(USDF)$1.00-0.04%
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?