SOAR COIN - Beware of a Backdoor Exploit!

in #cryptocurrency6 years ago

1450_Ly9jb2ludGVsZWdyYXBoLmNvbS9zdG9yYWdlL3VwbG9hZHMvdmlldy80ZjkyM2E2MmVhNTI0NmUxMDRjMjM0ODVmOTc5ZGZjOC5qcGc=.jpg

Police in Queensland are investigating one of the first instances of a company swiping cryptocurrency using a software backdoor after a business deal went bad.

A transaction between Byte Power Party Ltd. of Newstead, Queensland, and Soar Labs of Singapore occurred where over 300 million SOAR coins were transferred to Byte Power for a 49% stake in the company by Soar Labs. The deal involved over $5 million of SoarCoins.

Byte Power then decided to sell off some of it's many coins which Soar Labs did not want as this would then put downward pressure on the value of the ERC-20 token. On February 12th this year, 214 million SoarCoin tokens were withdrawn from their e-wallets, worth around $6.6 million by Soar Labs.

So how did Soar Labs reclaim its coins? The identified problem is a backdoor within the coin's code. The way in which the smart contracts were written allowed Soar Labs to remove the coins, which the company itself wasn't aware of at the time until the coins were actually taken.

The smart contract of the token has a zero-fee transaction function that can only be called by the owner of the Ethereum smart contract, which in this case would be Soar Labs. With a function such as this within the smart contract, Soar Labs can rewrite balances at will which doesn't make it a very secure option for investment.

I am sure there are many examples of this type of code in smart contracts out there, this one was just exposed via a very large business deal.

Thanks for reading!


Make Sure To Vote For These
Awesome Steem Witnesses!

DQmcRhugXJtKG9NtzBxvgVYr7YB5rg2Rvziokw7i8uU88fb.png


Come and join us in the Team Australia Discord Channel

Thanks to @ryivhnn and @bearone for the fantastic footers :)

Sort:  

Wow, that's quite concerning. So you need a legal team and It team to review smart contracts...

That's slightly concerning D: And not the best publicity for that coin.

goatsig

Get your post resteemed to 72,000 followers. Go here https://steemit.com/@a-a-a

Amazing idea of the posting I love your post

Coin Marketplace

STEEM 0.30
TRX 0.11
JST 0.033
BTC 63968.82
ETH 3136.80
USDT 1.00
SBD 4.28