create account

Arbitrum Lucky White Hat Hacker Saves Them by chekohler

View this thread on: hive.blogpeakd.comecency.com
· @chekohler ·
$2.97
Arbitrum Lucky White Hat Hacker Saves Them
In today's edition of YIYL (You Invest, You Lose) we take a look at some of the inner workings of the L2 race and how the move fast and break things style of development works when it comes to issuing your own currency. When it comes to the development of a tech platform, it's okay to disregard security to try and scale, because people who breach it can only collect data, but in shitcoins, the data breach can be sold immediately on the market making it a lucrative pursuit to try and find faults in these systems. 

Every time a system begins to hold any reasonable amount of value, eyes are on it, and eventually, an actor who thinks it's worth their time and that they can get away with it, will reach in and grab the pot. If you're relying on people being good actors to ensure your system works, you're only living on borrowed time. 

In a recent case a white hat hacker was willing to give up a $470 million payday in exchange for helping Arbitrum patch an issue and receive 400 ETH (around $540K) in return, now can you see the issue with this? It would have paid for him to be a bad actor, while 500k is an amazing payday netting x100 is a lot sweeter.

## A white knight 

The white hat hacker, known on Twitter as Riptide, decided that it wasn't his plac to rek a bunch of people and used his time to help identify vulnerabilities within smart contracts written in Solidity. Riptide said the “multi-million dollar vulnerability” could potentially affect anyone who wanted to exchange funds from Ethereum to Arbitrum Nitro.

![abribtrumscam.png](https://images.hive.blog/DQmU7dQqbBPX2C9NLUhjzer1eXiSQVimCD1N1YHGtv2r4eG/abribtrum-scam.png)

This work helped save a bunch of people after a recent upgrade, Riptide noticed some errors that prevented the bridge from working correctly. Upon further inspection, Riptide noticed that the inbox sequencer was experiencing a delay.

> “A client can send a message to the Sequencer by signing and publishing an L1 transaction in the Arbitrum chain’s Delayed Inbox. This functionality is most commonly used for depositing ETH or tokens via a bridge.”

After rescanning the contract, Riptide confirmed that the inbox sequencer bug allowed a critical vulnerability in the contract by which Riptide or another malicious hacker could have obtained millions of dollars by diverting incoming ETH deposits from the L1 to the L2 bridge into their wallets before being detected.

https://twitter.com/kelvinfichter/status/1572197710928699393

Now ask yourself, if a multimillion-dollar project could be taken to the cleaners by a random Twitter anon, why would you trust it with any amount of value? It really is scary how much patch work is run in production and how much faith people have in these systems.

## Arbitrum has a history of vulnerabilities 

This is not the first time we've seen Abritrum showcase shoddy work, even this year in March 2022, Arbitrum was the victim of an exploit. Their code allowed an individual to access more than 100 NFTs from TreasureDAO, and waltz away with it to the tune of at least $1.4 million.

Now mind you that was back when NFTs had some value, while today, there are pretty much all but dried up except for a few noobs, scammers, and misinformed people trying to make their fortune trading jpegs.

**Sources:**

- [cryptopotato.com](https://cryptopotato.com/arbitrum-rewards-hacker-with-400-eth-for-detecting-a-critical-400m-vulnerability/)

## Have your say

What do you good people of HIVE think? 

So have at it my Jessies! If you don't have something to comment, "I am a Jessie."

## Let's connect

If you liked this post, sprinkle it with an upvote or esteem and if you don't already, consider following me @chekohler  and subscribe to my [fanbase](https://hive.vote/dash.php?i=2&fan=chekohler)


| Earn Free bitcoin & shop | Earn Free Bitcoin & shop | Claim Free Bitcoin & Shop |
| -------- | -------- | -------- |
| [![lightning.jpg](https://files.peakd.com/file/peakd-hive/chekohler/AJj57GEmQ6xZYk9NchEZHqq5HAQRZFFFPqiXNUQcG1mj1nPsisLAKe7peuKEs8p.png)](https://LightningNetworkStores.com/af/T1MCDJzJKbV) | [![Smiles.jpg](https://files.peakd.com/file/peakd-hive/chekohler/AJpon7mDATX1gYTogQmZbNK33Wpp5pZFdLYdXSGp7eo4kHQQr3V7Zk5VcAJwPrg.png)](https://join.smilesbitcoin.com/cesc04880)| [![thebitcoincompany.jpg](https://files.peakd.com/file/peakd-hive/chekohler/AJkWLuDyRUh1FiEzL8f7dGYnafNMRK8BLbMMNREKn13bKFr2iRm7Ft2idpA6oGX.png)](https://thebitcoincompany.com/refer/?code=8SW11Z)| 





Posted Using [LeoFinance <sup>Beta</sup>](https://leofinance.io/@chekohler/arbitrum-lucky-white-hat-hacker-saves-them)
👍  , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , and 27 others
👎  
properties (23)
authorchekohler
permlinkarbitrum-lucky-white-hat-hacker-saves-them
categoryhive-167922
json_metadata{"app":"leofinance/0.2","format":"markdown","tags":["yiyl","palnet","archon","neoxian","pob","vyb","ctp","shitcoin","leofinance"],"canonical_url":"https://leofinance.io/@chekohler/arbitrum-lucky-white-hat-hacker-saves-them","links":["https://twitter.com/kelvinfichter/status/1572197710928699393","https://cryptopotato.com/arbitrum-rewards-hacker-with-400-eth-for-detecting-a-critical-400m-vulnerability/","https://hive.vote/dash.php?i=2&fan=chekohler","https://LightningNetworkStores.com/af/T1MCDJzJKbV","https://join.smilesbitcoin.com/cesc04880","https://thebitcoincompany.com/refer/?code=8SW11Z"],"image":["https://images.hive.blog/DQmU7dQqbBPX2C9NLUhjzer1eXiSQVimCD1N1YHGtv2r4eG/abribtrum-scam.png","https://files.peakd.com/file/peakd-hive/chekohler/AJj57GEmQ6xZYk9NchEZHqq5HAQRZFFFPqiXNUQcG1mj1nPsisLAKe7peuKEs8p.png","https://files.peakd.com/file/peakd-hive/chekohler/AJpon7mDATX1gYTogQmZbNK33Wpp5pZFdLYdXSGp7eo4kHQQr3V7Zk5VcAJwPrg.png","https://files.peakd.com/file/peakd-hive/chekohler/AJkWLuDyRUh1FiEzL8f7dGYnafNMRK8BLbMMNREKn13bKFr2iRm7Ft2idpA6oGX.png"]}
created2022-10-01 07:10:21
last_update2022-10-01 07:10:21
depth0
children3
last_payout2022-10-08 07:10:21
cashout_time1969-12-31 23:59:59
total_payout_value1.494 HBD
curator_payout_value1.472 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length4,601
author_reputation524,332,427,393,665
root_title"Arbitrum Lucky White Hat Hacker Saves Them"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id117,083,380
net_rshares4,662,094,619,284
author_curate_reward""
vote details (92)
@cmplxty.leo ·
RE: Arbitrum Lucky White Hat Hacker Saves Them
It’s sad the things that make it to production these days. Even at my company, there’s so much shoddy horse shit. I literally heard one of the QA developers say “I didn’t test that because if I did it would have failed and I needed to get it off my plate”. Talk about shit workmanship! 

Posted Using [LeoFinance <sup>Beta</sup>](https://leofinance.io/@cmplxty.leo/re-chekohler-5xpmx6)
👍  
properties (23)
authorcmplxty.leo
permlinkre-chekohler-5xpmx6
categoryhive-167922
json_metadata{"app":"leofinance/0.2","format":"markdown","tags":["leofinance"],"canonical_url":"https://leofinance.io/@cmplxty.leo/re-chekohler-5xpmx6"}
created2022-10-01 17:56:06
last_update2022-10-01 17:56:06
depth1
children1
last_payout2022-10-08 17:56:06
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length385
author_reputation3,729,503,076,390
root_title"Arbitrum Lucky White Hat Hacker Saves Them"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id117,096,957
net_rshares19,654,232,490
author_curate_reward""
vote details (1)
@chekohler ·
Lol if that doesn't sum up todays fiat attitude just do it for doing its sake then I don't know what does, like look at homes built in the last two years man, have you seen some of the shit? Its built so shoddy 
properties (22)
authorchekohler
permlinkre-cmplxtyleo-2022102t13156692z
categoryhive-167922
json_metadata{"tags":["leofinance"],"app":"ecency/3.0.28-vision","format":"markdown+html"}
created2022-10-02 11:02:09
last_update2022-10-02 11:02:09
depth2
children0
last_payout2022-10-09 11:02:09
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length211
author_reputation524,332,427,393,665
root_title"Arbitrum Lucky White Hat Hacker Saves Them"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id117,115,454
net_rshares0
@hivebuzz ·
Congratulations @chekohler! You have completed the following achievement on the Hive blockchain and have been rewarded with new badge(s):

<table><tr><td><img src="https://images.hive.blog/60x60/http://hivebuzz.me/badges/postallmonth.png"></td><td>You have been a buzzy bee and  published a post every day of the month.</td></tr>
</table>

<sub>_You can view your badges on [your board](https://hivebuzz.me/@chekohler) and compare yourself to others in the [Ranking](https://hivebuzz.me/ranking)_</sub>
<sub>_If you no longer want to receive notifications, reply to this comment with the word_ `STOP`</sub>



**Check out the last post from @hivebuzz:**
<table><tr><td><a href="/hive-122221/@hivebuzz/pum-202210"><img src="https://images.hive.blog/64x128/https://i.imgur.com/M9RD8KS.png"></a></td><td><a href="/hive-122221/@hivebuzz/pum-202210">Be ready for the 10th edition of the Hive Power Up Month!</a></td></tr><tr><td><a href="/hive-122221/@hivebuzz/pud-202210"><img src="https://images.hive.blog/64x128/https://i.imgur.com/805FIIt.jpg"></a></td><td><a href="/hive-122221/@hivebuzz/pud-202210">Hive Power Up Day - October 1st 2022</a></td></tr></table>

###### Support the HiveBuzz project. [Vote](https://hivesigner.com/sign/update_proposal_votes?proposal_ids=%5B%22199%22%5D&approve=true) for [our proposal](https://peakd.com/me/proposals/199)!
properties (22)
authorhivebuzz
permlinknotify-chekohler-20221001t084414
categoryhive-167922
json_metadata{"image":["http://hivebuzz.me/notify.t6.png"]}
created2022-10-01 08:44:15
last_update2022-10-01 08:44:15
depth1
children0
last_payout2022-10-08 08:44:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length1,352
author_reputation367,937,817,306,510
root_title"Arbitrum Lucky White Hat Hacker Saves Them"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id117,085,129
net_rshares0