AvengerDAO October 10th Weekly Report



Blog post image.

Disclaimer: The information provided through the BNB Chain community does not constitute advice or recommendation for investment or trading. Projects are listed in no particular order below. BNB Chain does not take responsibility for any of your investment decisions. Please seek professional advice before taking financial risks.

AvengerDAO is a community-driven initiative created to protect the users and projects on BNB Chain from malicious actors and activity. AvengerDAO publishes a list of risk projects and addresses on  DappBay Red Alarm every Friday. By actively identifying and flagging such items through DappBay’s Red Alarm,  AvengerDAO can help users identify high-risk BNB Chain dApps with the level of risk, the risk description, and other important risk details. Web3 users can safely navigate BNB Chain dApps while staying safe.

Security Incidents 

HashDit is an industry-leading blockchain security company that focuses on building a safe ecosystem for both protocol users and smart contract developers on BNB Chain. HashDit is member of AvengerDAOHashDit’s analysis shows that there were 8 security incidents that happened in the week of October 10th. 

Attack VectorProtocol / Contract NameLoss
ReentrancyUnknown bridge420,000
Private Key CompromiseMoonlift Capital MLPT400,000
RugpullFake EigenLayer300,000
RugpullFake LayerZero58,000
Function wrongly implementedStarship35,000
RugpullBaseball Fan (Baseball)20,000
Price ManipulationCLASSIC18,000
RugpullTradeFlow7,000

Lessons Learned

Here are some tips to spot Rugpull scams:

  1. Think back to a time when a prominent influencer you follow mentioned that anything “PEPE” was an upcoming venture and promised to match your buy-in. This is a major red flag suggesting a likely rug pull, particularly when influencers are endorsing projects with which they are not directly involved and when they don’t disclose that they are sponsored.
  2. Telegram “pump and dump” groups are a red flag for investing tips. Usually, the team behind are the beneficiary of these incidents and you will be their exit liquidity. Before they tip you to sell the token, they have already exited liquidity and profited from you buying in early. Be wary.

Red Alarm Weekly Highlights

AvengerDAO publishes a list of risk projects and addresses on DappBay Red Alarm every Friday.  If you have questions or feedback for below risk highlights, please contact here.  

Newly Detected High-Risk dApp Projects

CategoryDescriptionSpotted Project This Week
Ponzi or potential Ponzi dAppsPonzi schemes lure investors with the false promise of extremely high returns.Globalaid Club
DeFany
Phishing dAppsPhishing usually forges legitimate web pages to trick you into entering your private keys or authorizing transactions that you don’t understand. Celatis
GPT4 Rook
Claim Wall Stmemes
Payment BNBPlus
BUSD Liquid
Baby Doge NFT
Binance Voucher
opbnb Chains
StableCircle

Newly Detected High-Risk Address

AvengerDAO members offer APIs to  check the security of a contract to be interacted with or get relevant information such as potential risks of a specific address to perform due diligence. AvengerDAO API gives a comprehensive evaluation of each address. We advise you to regularly check with these APIs when receiving an airdrop for a certain token, or interacting with the contracts that they want to invest in.  https://dappbay.bnbchain.org/risk-scanner is integrated with these APIs. Please have a try! 

The latest high-risk addresses detected from Weekly Scan. 

No.BSCScan Link WAT
1https://bscscan.com/address/0x034d5e70c223baea27c86822e1058cafad91afc1174151
2https://bscscan.com/address/0x2eeff21c71ae38f9c34496cd9250c0d186dcd988170158
3https://bscscan.com/address/0xd07f76c7efca7793757db20512aca97cc81ac4bb168436
4https://bscscan.com/address/0x4b70139c0e544c25b6897317d9a93f30e6112dad164625
5https://bscscan.com/address/0x45c36b3ee5f6c9b4b494515b21a59b8b78336536101520
6https://bscscan.com/address/0xfa500178de024bf43cfa69b7e636a28ab68f274174084
7https://bscscan.com/address/0xffe811714ab35360b67ee195ace7c10d93f89d8c55176
8https://bscscan.com/address/0xfef8dff05e0e4bc2903e433fb462262c721ad30f48321
9https://bscscan.com/address/0x8d27fd90066f7d5c596e7a89cef83ebc7e6349b646592
10https://bscscan.com/address/0xdc35505fbf46605f61014b9b2ac96826c47017d543741

All the addresses are listed here

Latest Risk Remediation – TVL >1M$ Projects 

AvengerDAO is actively scanning TVL >1M$ projects. This week, 4 projects are identified with potential risks and 3 have been resolved. Most of the issues are due to a lack of multi-sig wallet setup. We recommend projects to study the Web3 Risk Framework to learn more about best practices. 

Stay Safe – DYOR (Do Your Own Research)

BNBChain community has published detailed guides for crypto users to identify scam projects. Here are some tips: 

  • Do not rely solely on social media channels and forums for information. You should search for a new project on Red Alarm before interacting. 
  • A thorough DYOR process includes studying the project’s whitepaper, checking its codebase, engaging with its community, and assessing its market potential.
  • Use reliable tools and sources to aid your research, such as CoinGecko, CoinMarketCap, Etherscan, reputable news outlets, project websites and blogs, and academic articles.
  • Protecting your investment from scammers is as important as identifying the next lucrative crypto project. Always err on the side of caution when in doubt.

About AvengerDAO

AvengerDAO is a community driven initiative that protects users from possible exploits, scams and malicious actors on BNB Chain. The founding members of AvengerDAO started this because BNB Chain is the largest public chain today, and the larger the community, the greater the responsibility.

Our goal is to protect users from financial losses and malicious contracts. Deter malicious actors and notify BNB Chain’s users. We aim to enhance further adoption by setting an industry standard for safe practices and raise awareness on safety and security in the ecosystem.