{"id":51452,"date":"2023-05-20T06:30:37","date_gmt":"2023-05-20T06:30:37","guid":{"rendered":"http:\/\/egrowonline.com\/?p=51452"},"modified":"2023-05-20T06:30:37","modified_gmt":"2023-05-20T06:30:37","slug":"3m-worth-of-customer-funds-swiped-via-alleged-swaprum-dex-rug-pull","status":"publish","type":"post","link":"http:\/\/egrowonline.com\/?p=51452","title":{"rendered":"$3M worth of customer funds swiped via alleged Swaprum DEX rug pull"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div data-v-2f4c2c70=\"\">\n<p>Arbitrum-based decentralized exchange (DEX) Swaprum has allegedly conducted a rug-pull on its users, with $3 million worth of customer deposits being swiped from the platform.<\/p>\n<p>A <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/blockchain-security-firm-freezes-160k-stolen-in-merlin-dex-rugpull\" rel=\"noopener\">rug-pull or exit scam<\/a> occurs when a seemingly legitimate project ropes in a certain amount of investment or user deposits before promptly shutting everything down, pulling the capital and vanishing off into the distance \u2014 if they don\u2019t adequately <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/kucoin-meme-coin-daily-rug-pull-confirmation\" rel=\"noopener\">cover their tracks<\/a>, of course. <\/p>\n<p>According to May 19 tweet from the alerts-focused account of blockchain security firm Peck Shield, the bad actors swiped 1,628 Ether (<a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/ethereum-price\" rel=\"noopener\">ETH<\/a>) \u2014 worth roughly $2.95 million at current prices \u2014 from Swaprum\u2019s liquidity pools, bridged it to Ethereum, and then \u201claundered\u201d almost all of those funds through crypto mixer Tornado Cash. <\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\"><a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/PeckShieldAler?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#PeckShieldAler<\/a> <a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/rugpull?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#rugpull<\/a> <a target=\"_blank\" href=\"https:\/\/twitter.com\/Swaprum?ref_src=twsrc%5Etfw\" rel=\"noopener\">@Swaprum<\/a> on <a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/Arbitrum?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#Arbitrum<\/a> rugged ~$3M, <a target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24SAPR&amp;src=ctag&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">$SAPR<\/a> has dropped -100%. <a target=\"_blank\" href=\"https:\/\/twitter.com\/Swaprum?ref_src=twsrc%5Etfw\" rel=\"noopener\">@Swaprum<\/a> already deleted its social accounts\/groups. <br \/>The scammers have bridged ~1,628 <a target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24ETH&amp;src=ctag&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">$ETH<\/a> to <a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/Ethereum?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#Ethereum<\/a> and laundered 1,620 <a target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24ETH&amp;src=ctag&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">$ETH<\/a> to Tornado Cash<a target=\"_blank\" href=\"https:\/\/t.co\/tUNgbwGQCd\" rel=\"noopener\">https:\/\/t.co\/tUNgbwGQCd<\/a> <a target=\"_blank\" href=\"https:\/\/t.co\/UH8V9RyFHy\" rel=\"noopener\">pic.twitter.com\/UH8V9RyFHy<\/a><\/p>\n<p>\u2014 PeckShieldAlert (@PeckShieldAlert) <a target=\"_blank\" href=\"https:\/\/twitter.com\/PeckShieldAlert\/status\/1659404608685604864?ref_src=twsrc%5Etfw\" rel=\"noopener\">May 19, 2023<\/a><\/p><\/blockquote>\n<p>Following the incident, Swaprum\u2019s Twitter, Telegram and Github accounts have all been deleted, however Swaprum\u2019s website is still operational at the time of writing.<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/s3.cointelegraph.com\/uploads\/2023-05\/895a8bd0-149a-4721-ab99-2d7e6b36b75d.png\" \/><figcaption style=\"text-align: center\"><em>Deleted socials. Source: Twitter<\/em><\/figcaption><\/figure>\n<p>Adding extra context to the incident, fellow blockchain security firm Beosin claimed that the \u201cdeployer of Swaprum used the add() backdoor function to steal LP [liquidity provider] tokens staked by users, then removed liquidity from the pool for profit.\u201d<\/p>\n<p>This was apparently made possible due to the Swaprum developer team allegedly \u201cupgrading the normal liquidity collateral reward contract to a contract containing backdoor functions.\u201d <\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">3\/ The backdoor function add() will transfer LP tokens from the contract to the _devadd address. By querying the _devadd address, it will return the \u2018Swaprum:Deployer\u2019 address. <a target=\"_blank\" href=\"https:\/\/t.co\/Z1rZmFSf5R\" rel=\"noopener\">pic.twitter.com\/Z1rZmFSf5R<\/a><\/p>\n<p>\u2014 Beosin Alert (@BeosinAlert) <a target=\"_blank\" href=\"https:\/\/twitter.com\/BeosinAlert\/status\/1659482292614725635?ref_src=twsrc%5Etfw\" rel=\"noopener\">May 19, 2023<\/a><\/p><\/blockquote>\n<p>A keyword search for \u201cSwaprum\u201d on Twitter yields several tweets from people calling out <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/april-s-crypto-scams-exploits-and-hacks-lead-to-103m-lost-certik\" rel=\"noopener\">smart contract auditors<\/a> CertiK over the whole ordeal, as the firm had conducted an audit of the platform as recently as May 5. <\/p>\n<p><strong><em>Related: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/can-you-recover-stolen-bitcoin-from-crypto-scams\" rel=\"noopener\"><strong><em>Can you recover stolen Bitcoin from crypto scams?<\/em><\/strong><\/a><\/p>\n<p>Their complaints essentially assert that CertiK signed off on the platform by auditing the platform, with the \u201caudited by CertiK\u201d logo still <a target=\"_blank\" href=\"https:\/\/swaprum.finance\/swap#\" rel=\"noopener nofollow\">currently<\/a> up on the Swaprum website. <\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Well done <a target=\"_blank\" href=\"https:\/\/twitter.com\/CertiK?ref_src=twsrc%5Etfw\" rel=\"noopener\">@CertiK<\/a> another rug that\u2019s comming from your audits.<a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/swaprum?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#swaprum<\/a> <a target=\"_blank\" href=\"https:\/\/twitter.com\/Swaprum?ref_src=twsrc%5Etfw\" rel=\"noopener\">@Swaprum<\/a> <a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/certik?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#certik<\/a> <a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/scam?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#scam<\/a> <a target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/rug?src=hash&amp;ref_src=twsrc%5Etfw\" rel=\"noopener\">#rug<\/a> <a target=\"_blank\" href=\"https:\/\/t.co\/cPlyx3GMU6\" rel=\"noopener\">pic.twitter.com\/cPlyx3GMU6<\/a><\/p>\n<p>\u2014 Crypto Emprende YT (@cryptoemprende_) <a target=\"_blank\" href=\"https:\/\/twitter.com\/cryptoemprende_\/status\/1659228098427068417?ref_src=twsrc%5Etfw\" rel=\"noopener\">May 18, 2023<\/a><\/p><\/blockquote>\n<p>However, it is worth noting that as per CertiK\u2019s disclaimers, it \u201cconducts security assessments on the provided source code exclusively,\u201d and can\u2019t guarantee that its recommendations are integrated. In the audit, CertiK flagged a \u201cmajor\u201d issue with how centralized Swaprum was. <\/p>\n<p>While it also appears that the backdoor-related upgrades to the project\u2019s smart contracts were conducted after the audit was completed.<\/p>\n<p>As it stands, CertiK\u2019s website has now flagged Swaprum as an \u201cexit scam.\u201d<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/s3.cointelegraph.com\/uploads\/2023-05\/e524567d-1b65-4e35-8924-2ffbf5a9c732.png\" \/><figcaption style=\"text-align: center\"><em>Swaprum audit. Source: CertiK<\/em><\/figcaption><\/figure>\n<p><strong><em>Magazine: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/magazine\/3-4-billion-bitcoin-popcorn-tin-silk-road-hacker\/\" rel=\"noopener\"><strong><em>$3.4B of Bitcoin in a popcorn tin \u2014 The Silk Road hacker\u2019s story<\/em><\/strong><\/a><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/cointelegraph.com\/news\/alleged-swaprum-rug-pull-swipes-three-million-in-customer-funds\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Arbitrum-based decentralized exchange (DEX) Swaprum has allegedly conducted a rug-pull on its users, with $3 million worth of customer deposits being swiped from the platform. A rug-pull or exit scam occurs when a seemingly legitimate project ropes in a certain amount of investment or user deposits before promptly shutting everything down, pulling the capital and [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":51453,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[38],"tags":[3430,7969,486,1351,4872,4871,15645,13803,341],"class_list":["post-51452","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blockchain","tag-alleged","tag-customer","tag-dex","tag-funds","tag-pull","tag-rug","tag-swaprum","tag-swiped","tag-worth"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"http:\/\/egrowonline.com\/wp-content\/uploads\/2023\/05\/295faf72-2b51-4eb2-bec2-c9b85c5e8975.jpg","_links":{"self":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/51452","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=51452"}],"version-history":[{"count":1,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/51452\/revisions"}],"predecessor-version":[{"id":51454,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/51452\/revisions\/51454"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/media\/51453"}],"wp:attachment":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=51452"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=51452"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=51452"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}