BTC PULSE
  • News
    • Altcoins
    • Blockchain
    • Bitcoin
    • Ethereum
    • NFT
    • Regulation
    • WEB 3.0
  • Price Prediction
  • Learn
  • Events
  • Advertise
No Result
View All Result
Play Now
  • News
    • Altcoins
    • Blockchain
    • Bitcoin
    • Ethereum
    • NFT
    • Regulation
    • WEB 3.0
  • Price Prediction
  • Learn
  • Events
  • Advertise
No Result
View All Result
BTC PULSE
No Result
View All Result
Play Now
Home Blockchain

Uniswap Saved from a Possible Multi-Billion-Dollar Hack

by Abimbola Adu
Jan 3, 2023 - 12:00 am
in Blockchain
Uniswap Error Patched

A vulnerability in Uniswap that could have seen users lose millions, if not billions of dollars, has been patched. The DEX is the world’s largest by total value locked, currently managing $3.26 billion of assets.

Dedaub team was the first to pick out the re-entrancy error which could have seen users’ funds drained. They proceeded to notify the Uniswap development team. On acknowledging this error, the DEX developer addressed the issue and redeployed the Universal Router smart contracts, including on Polygon and all its chains.

The Dedaub team has disclosed a Critical vulnerability to the Uniswap team!

Funds are safe – Uniswap addressed the issue and redeployed the Universal Router smart contracts on all its chains 👏

The vulnerability allows re-entertrancy to drain the user's funds, mid-tx.

🧵 pic.twitter.com/wFSFsohPvy

— Dedaub (@dedaub) January 2, 2023

The Dedaub team noted that the decision by Uniswap to launch the Universal Router which unifies ERC-20 (fungible) tokens and NFTs into a single swap router introduced this weakness. In their assessment, they found out that malicious actors could “embed a scripting language for all sorts of token actions”.

“Such commands could include transfers to third party (potentially untrusted) recipients. In a correct implementation, such a transfer should send to the recipient only what the call parameters specify. However, if third-party code is invoked at any point in the transfer (which manifests itself due to composition of protocols), the code can reenter the Universal Router and claim any tokens temporarily in the contract.”

Funds are now safe after Uniswap added “a re-entrancy lock to the core execution” and re-deployed the Universal Router.

The re-entrancy attack is a common smart contracting error in account-based blockchains like Ethereum primarily because how transfers are handled in these networks. Over the years, hackers have identified this error and siphoned hundreds of millions of tokens.

For context, a re-entrancy attack was used to lock millions of ETH in the first ever DAO in Ethereum leading to the split of the network to the proof-of-work Ethereum classic, and the longer chain, Ethereum.

To exploit this vulnerability, the attacker initiates an infinite loop between the vulnerable smart contracts and their smart contract until funds held in the former is drained of funds. Since smart contracts are executed on an immutable base layer, it is impossible for the victim to recoup funds once the transaction is approved from the pool.

Dedaub received a $40k bounty from the $3 million program announced by Uniswap.

Tags: DeFiUniswap
Abimbola Adu

Abimbola Adu

Abimbola Adu is a crypto content writer with a background in English studies. She is keen on enlightening others about cryptocurrency and blockchains. She enjoys writing poems and spending time with family.

Related Posts

Malta Financial Services Authority building representing crypto regulation leadership

Malta Regulator Assures MiCA Licenses Safe After EU Peer Review

July 11, 2025

Malta’s MFSA says no MiCA licenses are at risk after an EU review, reinforcing the country’s strong stance...

Malta’s MFSA headquarters under scrutiny from ESMA for MiCA licensing issues

EU Regulator Flags Deficiencies in Malta’s RegulatorLicensing Process

July 10, 2025

Malta’s MFSA “partially met expectations” in its MiCA license process, according to an ESMA report urging tighter crypto...

Venn Network researchers work together to neutralize a $10M backdoor exploit in smart contracts linked to DeFi protocols.

Researchers Foil $10M DeFi Backdoor Attack, Suspected Link to Lazarus Group

July 10, 2025

Researchers foiled a $10M DeFi attack by neutralizing a backdoor exploit in smart contracts, potentially linked to the...

OKX and Circle announce zero-fee USDC to USD conversions, offering smoother crypto trading experiences for users globally.

Circle and OKX Launch Zero-Fee USDC Conversions to US Dolla

July 9, 2025

OKX and Circle partner to offer zero-fee USDC to USD conversions, enhancing liquidity and simplifying the process for...

Press Releases

png 115

BTC Miner: Earn $100-$100,000 Daily – The Fastest Growing Crypto Mining Platform of 2025!

June 25, 2025

BTC Miner, the fastest growing platform in 2025, opens a new era of inclusive cryptocurrency mining, allowing everyone to participate...

image2

Could XYZVerse Overtake DOGE and SHIB? Analysts Say $0.003333 Could Explode to $10!

March 30, 2025

XYZVerse aims to outpace DOGE and SHIB, with bold $10 price goals, strong community rewards, and rising demand as it...

image1 1

Massive Institutional BTC Buys Could Launch the Next Bull Market: 5 Altcoins to Watch

March 29, 2025

Institutional Bitcoin buys may trigger a market surge. Five altcoins, including $XYZ, stand to gain—early investors could see major ROI...

image1

XRP Faces Strong Resistance While XYZVerse Gains Early Investor Attention With 10 Billion $XYZ Airdrop

March 28, 2025

XRP struggles at resistance, while XYZVerse grabs early investor attention with a 10B token airdrop and rapid growth toward a...

View All
BTC-Pulse LogoTransparent

© 2024 BTC-PULSE. Disclaimer: The content is for informational purposes only, you should not construe any such information or other material as legal, tax, investment, financial, or other advice.

News

  • Altcoins
  • Bitcoin
  • Ethereum
  • NFT
  • Regulation
  • WEB 3.0

Info

  • Learn
  • Price Prediction
  • Events
  • Press Releases
  • Sitemap

Company

  • About Us
  • Terms of Service
  • Privacy Policy
  • Contact Us
  • Advertise

©2024 BTC-PULSE – All right Reserved.

No Result
View All Result
  • News
    • Altcoins
    • Blockchain
    • Bitcoin
    • Ethereum
    • NFT
    • Regulation
    • WEB 3.0
  • Price Prediction
  • Learn
  • Events
  • Advertise