AvengerDAO Report: August 29th



AvengerDAO Report: August 29th

Disclaimer: The information provided through the BNB Chain community does not constitute advice or recommendation for investment or trading. Projects are listed in no particular order below. BNB Chain does not take responsibility for any of your investment decisions. Please seek professional advice before taking financial risks.

AvengerDAO is a community-driven initiative created to protect the users and projects on BNB Chain from malicious actors and activity. AvengerDAO publishes a list of risk projects and addresses on DappBay Red Alarm every Friday.

By actively identifying and flagging such items through DappBay’s Red Alarm,  AvengerDAO can help users identify high-risk BNB Chain dApps with the level of risk, the risk description, and other important risk details. Web3 users can safely navigate BNB Chain dApps while staying safe.

Security Incidents

HashDit is an industry-leading blockchain security company that focuses on building a safe ecosystem for both protocol users and smart contract developers on BNB Chain. HashDit is member of AvengerDAO. HashDit’s analysis shows that there were 4 security incidents that happened in the week of August 21st, 3 of which were rug pulls while 1 was a hack.

Protocol / Contract NameAttack VectorLoss
fake LayerZeroRugpull$1.0m
fake Frontfanz (FANX)Rugpull$30k
GameTop Token (GameTT)Rugpull$155k
ThalesPrivate Key Compromise$35k

Lessons Learned

Here are some tips to spot Rugpull projects:

1. “Fake project name” and “fake token symbols” are common signs that might be mislooked especially when users are ape-ing into a new project. Scammers will usually create a sense of urgency, inviting buyers to be early and buy their scam token. Since crypto is an open space, anyone can deploy a token impersonating an official token.

For example, in the LayerZero rugpull case, scammers deploy a fake ZRO token and trick users into thinking that this is the official token.

Fake: No official label and symbol on BSCscan

Reality: When searching “LayerZero” on CoinMarketCap (CMC), one can see that the token is not deployed yet.

Always double check the correct website and official contract address! Utilize trustable channels like CMC to ensure you are investing in the correct project and using the right contract address. Check Bscscan to see if there are any official labels or tags for this contract.

Red Alarm Weekly Highlights

AvengerDAO publishes a list of risk projects and addresses on DappBay Red Alarm every Friday.  If you have questions or feedback for below risk highlights, please contact here.  

Newly Detected High-Risk dApp Projects

CategoryDescriptionSpotted Project This Week
Ponzi or potential Ponzi dAppsPonzi schemes lure investors with the false promise of extremely high returns.DeFiQ
Forex2
Phishing dAppsPhishing usually forges legitimate web pages to trick you into entering your private keys or authorizing transactions that you don’t understand. Viperaz
BSC Smart Center
APIBinance
CircleFinance
BNBNo
BNB Dogebeer
Drops PEPE
AlphaGPT

Newly Detected High-Risk Address

AvengerDAO members offer APIs to  check the security of a contract to be interacted with or get relevant information such as potential risks of a specific address to perform due diligence. AvengerDAO API gives a comprehensive evaluation of each address. We advise you to regularly check with these APIs when receiving an airdrop for a certain token, or interacting with the contracts that they want to invest in.  https://dappbay.bnbchain.org/risk-scanner is integrated with these APIs. Please have a try!

The latest high-risk addresses detected from Weekly Scan:

No.BSCScan Link WAT
1https://bscscan.com/address/0xc198c3b7b970cbac315614cf27a1b7eb332048d6171536
2https://bscscan.com/address/0x2eeff21c71ae38f9c34496cd9250c0d186dcd988101382
3https://bscscan.com/address/0xffe811714ab35360b67ee195ace7c10d93f89d8c109463
4https://bscscan.com/address/0x98f39d0f8c67885071cc99c5af1d4cacbcc89b0c70393
5https://bscscan.com/address/0xec1f55b5be7ee8c24ee26b6cc931ce4d7fd5955c370529
6https://bscscan.com/address/0x04f46cdfe8dd348e41902eef1aff19ace1661f4c77382
7https://bscscan.com/address/0x4238e5ccc619dcc8c00ade4cfc5d3d9020b2489838712
8https://bscscan.com/address/0x4cb680a2589d742c30556e359a352f9c511eef5442552
9https://bscscan.com/address/0xcfa40a7ae369ba43b71348a66712f44e37a5b0a125923
10https://bscscan.com/address/0x4d1e90ab966ae26c778b2f9f365aa40abb13f53c51476

All the addresses are listed here.

Stay Safe – DYOR (Do Your Own Research)

BNBChain community has published detailed guides for crypto users to identify scam projects. Here are some tips:

  • Do not rely solely on social media channels and forums for information. You should search for a new project on Red Alarm before interacting.
  • A thorough DYOR process includes studying the project’s whitepaper, checking its codebase, engaging with its community, and assessing its market potential.
  • Use reliable tools and sources to aid your research, such as CoinGecko, CoinMarketCap, Etherscan, reputable news outlets, project websites and blogs, and academic articles.
  • Protecting your investment from scammers is as important as identifying the next lucrative crypto project. Always err on the side of caution when in doubt.

About AvengerDAO

AvengerDAO is a community driven initiative that protects users from possible exploits, scams and malicious actors on BNB Chain. The founding members of AvengerDAO started this because BNB Chain is the largest public chain today, and the larger the community, the greater the responsibility.

Our goal is to protect users from financial losses and malicious contracts. Deter malicious actors and notify BNB Chain’s users. We aim to enhance further adoption by setting an industry standard for safe practices and raise awareness on safety and security in the ecosystem.