{"id":24810,"date":"2022-09-08T07:45:31","date_gmt":"2022-09-08T07:45:31","guid":{"rendered":"https:\/\/bitcoinwisdom.com\/?p=24810"},"modified":"2022-09-08T07:45:37","modified_gmt":"2022-09-08T07:45:37","slug":"nereus-finance-suffers-flash-loan-attack","status":"publish","type":"post","link":"https:\/\/bitcoinwisdom.com\/tr\/nereus-finance-suffers-flash-loan-attack\/","title":{"rendered":"\u00c7\u0131\u011f Tabanl\u0131 Nereus Finance, Ani Kredi Sald\u0131r\u0131s\u0131na U\u011frad\u0131: \u00d6l\u00fcm Sonras\u0131"},"content":{"rendered":"<ul class=\"wp-block-list\"><li><strong>Nereus Finance k\u0131sa s\u00fcre \u00f6nce bir ak\u0131ll\u0131 s\u00f6zle\u015fme istismar\u0131 kullanarak USD Coin (USDC) bi\u00e7iminde $371.000 de\u011ferinde kullan\u0131c\u0131 fonunun kayb\u0131yla sonu\u00e7lanan bir sald\u0131r\u0131ya tan\u0131k oldu.<\/strong><\/li><li><strong>CertiK, ilk olarak otomatik piyasa yap\u0131c\u0131 Curve Finance ve merkezi olmayan borsa Trader Joe ile ba\u011flant\u0131l\u0131 olarak hack&#039;i ve bunun Nereus&#039;taki likidite havuzlar\u0131 \u00fczerindeki etkisini tespit etti.<\/strong><\/li><\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\" \/>\n\n\n\n<p>\u00c7\u0131\u011f tabanl\u0131 bor\u00e7 verme platformu Nereus Finance, yak\u0131n zamanda bir ak\u0131ll\u0131 s\u00f6zle\u015fme istismar\u0131 kullanarak USD Coin (USDC) bi\u00e7iminde $371.000 de\u011ferinde kullan\u0131c\u0131 fonunun kayb\u0131yla sonu\u00e7lanan bir sald\u0131r\u0131ya tan\u0131k oldu.&nbsp;<\/p>\n\n\n\n<p>6 Eyl\u00fcl&#039;de, \u00fcnl\u00fc blockchain siber g\u00fcvenlik firmas\u0131 CertiK, ilk olarak otomatik piyasa yap\u0131c\u0131 Curve Finance ve merkezi olmayan borsa Trader Joe ile ba\u011flant\u0131l\u0131 olarak hack&#039;i ve Nereus&#039;taki likidite havuzlar\u0131 \u00fczerindeki etkisini tespit etti.<\/p>\n\n\n\n<p>CertiK ayr\u0131ca, altta yatan protokollerin de kurnaz sald\u0131r\u0131dan etkilendi\u011fine inan\u0131yor. Ancak Curve Finance&#039;e g\u00f6re yaln\u0131zca Nereus etkileniyor. <\/p>\n\n\n\n<p>7 Eyl\u00fcl&#039;de Twitter&#039;da \u015funlar\u0131 s\u00f6yledi:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>\u201cBelki de &#039;etkilenen varl\u0131klar&#039; demek istediniz, &#039;protokoller etkilendi&#039; de\u011fil. Yaln\u0131zca [Nereus Finance] ve varl\u0131klar\u0131 etkilenmi\u015f g\u00f6r\u00fcn\u00fcyor.\u201d<\/p><\/blockquote>\n\n\n\n<p>\u00d6zellikle, yak\u0131n zamanda Nereus Finance <a href=\"https:\/\/medium.com\/nereus-protocol\/post-mortem-flash-loan-exploit-in-single-nxusd-market-343fa32f0c6\" rel=\"nofollow noopener\" target=\"_blank\">piyasaya s\u00fcr\u00fclm\u00fc\u015f<\/a> Sald\u0131r\u0131n\u0131n ayr\u0131nt\u0131l\u0131 bir otopsisi, hacker&#039;\u0131n AVAX\/USDC Trader Joe LP (JLP) havuz fiyat\u0131n\u0131 kas\u0131tl\u0131 olarak manip\u00fcle etmek i\u00e7in Aave&#039;den $51 milyon fla\u015f kredi kullanan \u00f6zel bir ak\u0131ll\u0131 s\u00f6zle\u015fme kulland\u0131\u011f\u0131n\u0131 a\u00e7\u0131k\u00e7a a\u00e7\u0131kl\u0131yor.<\/p>\n\n\n\n<p>Daha sonra 6 Eyl\u00fcl gecesi Nereus, toplulu\u011fu bir sald\u0131r\u0131 hakk\u0131nda uyarmak i\u00e7in topluluk anla\u015fmazl\u0131\u011f\u0131n\u0131 kulland\u0131. G\u00fcvenlik uzmanlar\u0131ndan tavsiye istedi, bir azaltma plan\u0131 olu\u015fturdu ve takip eden saatlerde \u00e7abalar\u0131 desteklemek i\u00e7in kolluk kuvvetlerini uyard\u0131. Rapora g\u00f6re, bor\u00e7 verme platformu, s\u00f6m\u00fcr\u00fclen JLP pazar\u0131n\u0131 tasfiye ederek ve duraklatarak sald\u0131r\u0131y\u0131 en aza indirdi.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">D\u00fcnk\u00fc NXUSD olay\u0131yla ilgili bir otopsi yay\u0131nlad\u0131k. <a href=\"https:\/\/t.co\/ADhu6PagP2\" rel=\"nofollow\">https:\/\/t.co\/ADhu6PagP2<\/a> <br>te\u015fekk\u00fcrler <a href=\"https:\/\/twitter.com\/peckshield?ref_src=twsrc%5Etfw\" rel=\"nofollow noopener\" target=\"_blank\">@peckshield<\/a> <a href=\"https:\/\/twitter.com\/CertiK?ref_src=twsrc%5Etfw\" rel=\"nofollow noopener\" target=\"_blank\">@CertiK<\/a><\/p>\u2014 Nereus Finans (@nereusfinance) <a href=\"https:\/\/twitter.com\/nereusfinance\/status\/1567574661311102976?ref_src=twsrc%5Etfw\" rel=\"nofollow noopener\" target=\"_blank\">7 Eyl\u00fcl 2022<\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>\n<\/div><\/figure>\n\n\n\n<p>Nereus Finance ayr\u0131ca sald\u0131rgan\u0131n $998,000 de\u011ferinde Nereus&#039;un yerel hizmet belirteci NXUSD&#039;yi $508,000 de\u011ferinde teminat kar\u015f\u0131l\u0131\u011f\u0131nda bast\u0131\u011f\u0131n\u0131 do\u011frulad\u0131. Bu fonu birden fazla likidite havuzu arac\u0131l\u0131\u011f\u0131yla farkl\u0131 kripto para birimlerine \u00e7evirmeye devam ettiler ve fla\u015f kredi iade edildi\u011finde $371.000 net h\u0131rs\u0131zl\u0131kla ka\u00e7may\u0131 ba\u015fard\u0131lar. Sald\u0131r\u0131, NXUSD protokol\u00fcnde $500.000 de\u011ferinde NXUSD \u201ck\u00f6t\u00fc bor\u00e7\u201d yaratt\u0131 ve bunun tak\u0131m\u0131n hazinesi taraf\u0131ndan \u00f6dendi\u011fi bildirildi.\u00a0<\/p>\n\n\n\n<p>Nereus ekibi \u015fu anda sald\u0131rgan\u0131 ve fonlar\u0131 bulmak i\u00e7in \u00e7al\u0131\u015f\u0131yor ve varl\u0131klar\u0131n iadesi i\u00e7in 20% Beyaz \u015eapka \u00f6d\u00fcl\u00fc sunmaya karar verdi.<\/p>\n\n\n\n<p>Ayr\u0131ca Nereus, \u201cgelecekte bu t\u00fcr olaylar\u0131n olmamas\u0131n\u0131 sa\u011flamak i\u00e7in denetim ve g\u00fcvenlik politikalar\u0131n\u0131\u201d de\u011fi\u015ftirdi\u011fini iddia etti\u011finden, ayn\u0131 istismar\u0131n tekrar olmayaca\u011f\u0131 da kesin. <\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>&quot;\u0130leriye d\u00f6n\u00fck olarak, TWAP hesaplamalar\u0131, Chainlink oracle&#039;lar\u0131 olmayan teminat varl\u0131klar\u0131 i\u00e7in fiyatland\u0131rma feed&#039;lerinde yap\u0131lacak di\u011fer y\u00fckseltmelerle birlikte uygulanacakt\u0131r.&quot;<\/p><cite>bor\u00e7 verme protokol\u00fcnde belirtilmi\u015ftir.<\/cite><\/blockquote>","protected":false},"excerpt":{"rendered":"<p>Nereus Finance k\u0131sa s\u00fcre \u00f6nce bir ak\u0131ll\u0131 s\u00f6zle\u015fme istismar\u0131 kullanarak USD Coin (USDC) bi\u00e7iminde $371.000 de\u011ferinde kullan\u0131c\u0131 fonunun kayb\u0131yla sonu\u00e7lanan bir sald\u0131r\u0131ya tan\u0131k oldu. CertiK, ilk olarak otomatik piyasa yap\u0131c\u0131 Curve Finance ve merkezi olmayan borsa Trader ile ba\u011flant\u0131l\u0131 olarak hack&#039;i ve bunun Nereus&#039;taki likidite havuzlar\u0131 \u00fczerindeki etkisini tespit etti [\u2026]<\/p>","protected":false},"author":21,"featured_media":24815,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_editorskit_title_hidden":false,"_editorskit_reading_time":1,"_editorskit_is_block_options_detached":false,"_editorskit_block_options_position":"{}","_uag_custom_page_level_css":"","footnotes":""},"categories":[188,12],"tags":[718,1645],"class_list":["post-24810","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-defi-news","category-news","tag-avalanche","tag-nereus-finance"],"acf":[],"uagb_featured_image_src":{"full":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance.jpg",1200,675,false],"thumbnail":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance-500x330.jpg",500,330,true],"medium":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance-300x169.jpg",300,169,true],"medium_large":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance-768x432.jpg",640,360,true],"large":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance-1024x576.jpg",640,360,true],"1536x1536":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance.jpg",1200,675,false],"2048x2048":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance.jpg",1200,675,false],"trp-custom-language-flag":["https:\/\/bitcoinwisdom.com\/wp-content\/uploads\/2022\/09\/Nereus-Finance-18x10.jpg",18,10,true]},"uagb_author_info":{"display_name":"Parth Dubey","author_link":"https:\/\/bitcoinwisdom.com\/tr\/author\/parth\/"},"uagb_comment_info":0,"uagb_excerpt":"Nereus Finance has recently witnessed an attack that resulted in a loss of $371,000 worth of user funds in the form of USD Coin (USDC) using a smart contract exploit. CertiK first detected the hack and its impact on liquidity pools on Nereus in connection with automated market maker Curve Finance and decentralized exchange Trader&hellip;","_links":{"self":[{"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/posts\/24810","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/users\/21"}],"replies":[{"embeddable":true,"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/comments?post=24810"}],"version-history":[{"count":0,"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/posts\/24810\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/media\/24815"}],"wp:attachment":[{"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/media?parent=24810"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/categories?post=24810"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bitcoinwisdom.com\/tr\/wp-json\/wp\/v2\/tags?post=24810"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}