Wiki
Biturai Trading Wiki
The Biturai crypto encyclopedia: AI-assisted, data-informed, and continuously quality-audited.
Unprotected Selfdestruct: The Contract Destruction Vulnerability
An unprotected selfdestruct vulnerability allows unauthorized termination of a smart contract, leading to loss of funds or disruption of essential functionalities. This critical flaw can be exploited by malicious actors to manipulate
Delegatecall Vulnerabilities in Smart Contracts
Delegatecall is a low-level function in Solidity that allows a contract to execute code from another contract while preserving its own storage context. If not implemented with extreme care, this mechanism can introduce severe security
tx.origin Phishing: The Authentication Trap in Solidity
tx.origin phishing exploits a critical vulnerability in Solidity smart contracts where authentication relies on the original transaction initiator rather than the immediate caller. This allows malicious intermediary contracts to trick
SafeMath and Protection Against Integer Overflows
Smart contracts rely on precise arithmetic, but standard operations can lead to unexpected results if numbers exceed their storage limits. SafeMath is a crucial library designed to prevent these integer overflows and underflows,
Checks-Effects-Interactions Pattern for Reentrancy Prevention
The Checks-Effects-Interactions pattern is a fundamental security practice in smart contract development. It structures code to prevent reentrancy attacks by ensuring state updates occur before external calls.
Understanding Cross-Function Reentrancy Attacks
Cross-function reentrancy is a sophisticated smart contract vulnerability where an attacker manipulates the execution flow across multiple functions or even contracts. This allows repeated calls to withdraw funds or alter state before the
Read-Only Reentrancy: The Underestimated Vulnerability
Read-only reentrancy is a subtle smart contract vulnerability where an attacker exploits a temporary, inconsistent state by calling a view function from an external contract. This allows the attacker to read an outdated or manipulated
Reentrancy Attack Explained: A Classic Smart Contract Vulnerability
A reentrancy attack is a critical vulnerability in smart contracts where a malicious actor repeatedly calls a function before its initial execution is complete. This allows the attacker to drain funds or manipulate the contract's state in
KyberSwap Hack 2023: Complex Tick Manipulation Attack
On November 23, 2023, the decentralized exchange KyberSwap suffered a significant exploit resulting in approximately $47 million in losses. The attack exploited a sophisticated tick manipulation flaw within its concentrated liquidity
Munchables Exploit 2024: Insider Developer Attack
In March 2024, the blockchain game Munchables suffered a $62.5 million exploit due to a rogue developer who had embedded vulnerabilities into its smart contracts. The attacker, suspected to be linked to North Korea, later returned the
Radiant Capital Hack 2024: Multisig Compromise
The Radiant Capital protocol suffered a significant security breach in October 2024, resulting in a loss of approximately $53 million. This exploit targeted the protocol's multisignature wallet, compromising signer devices through
Cetus Protocol Hack 2025 on Sui: An In-Depth Analysis
In May 2025, the Cetus Protocol, a leading decentralized exchange on the Sui blockchain, suffered a major exploit resulting in an estimated $223 million loss. This incident highlighted critical vulnerabilities in smart contract logic and
The DMM Bitcoin Hack of 2024: A Major Japanese Exchange Theft
The DMM Bitcoin hack in May 2024 involved the theft of 4,502.9 Bitcoin, valued at approximately $305 million, from the Japanese cryptocurrency exchange. This incident highlights the persistent security vulnerabilities within centralized
Phemex Hack 2025: Hot Wallet Theft
A significant security breach occurred at the Phemex exchange in January 2025, resulting in the theft of over $85 million in various cryptocurrencies. Attackers exploited vulnerabilities in the exchange's hot wallet management, leading to
Heco Bridge and HTX Hack 2023: A Security Incident Analysis
In November 2023, the Heco Chain bridge and the HTX cryptocurrency exchange suffered significant security breaches. These exploits resulted in the loss of approximately $97 million in digital assets, primarily attributed to compromised
Orbit Chain Bridge Hack 2024 Explained
The Orbit Chain cross-chain bridge suffered an $81.5 million exploit on New Year's Eve 2023, marking one of the largest bridge hacks to date. This incident highlighted the persistent security vulnerabilities within the decentralized
Vanity Address Risks: Security Pitfalls of Custom Crypto Addresses
Vanity addresses are custom cryptocurrency wallet addresses designed to include specific, recognizable patterns. While aesthetically pleasing, their generation process can introduce security vulnerabilities if not handled with extreme care.
Profanity Tool Vulnerability: Insecure Vanity Addresses
A critical flaw in the Profanity tool allowed private keys of Ethereum vanity addresses to be recovered, leading to significant asset loss. Users who generated addresses with Profanity must immediately transfer funds to a secure wallet.
The Wintermute Hack 2022: Vanity Address Vulnerability
In September 2022, the crypto market maker Wintermute suffered a $160 million hack, primarily due to a vulnerability in a 'vanity address' generated by the Profanity tool. This incident highlighted critical security flaws associated with
Bitstamp Hack 2015: Phishing as the Attack Vector
The Bitstamp exchange suffered a significant security breach in January 2015, resulting in the theft of approximately $5 million in Bitcoin. This incident was not a direct attack on the blockchain but rather a sophisticated phishing