HashingBits Week 97: CowSwap On Base, Electric Developer Report & Clober $501k Exploit
QuillAudits ?? Web3 Security ?????
7+ Years Securing #Web3: 1M+ Lines Audited. Trusted by 1400+ Clients including StarkWare, Taiko, ZetaChain & Metis
GM! BUIDLers
In this latest issue of HashingBits, we’re diving deep into Ethereum’s Core Developers meetings, covering all the major updates in the Ethereum ecosystem. But that’s not all—we’ll explore the latest happenings in the Aptos, Base. Arbitrum ecosystems, along with advancements in the AI & Web3 space. For developers, we’re highlighting new tools designed to assist smart contract developers and auditors. Also we are taking a look at the recent $501k+ exploit of Clober DEX due to reentrancy attack.
EtherScope: Core Developments ????
L1 & L2 Developments
EIPs
ERCs
EcoExpansions: Beyond Ethereum ??
Aptos
Base
Arbitrum
Hackathons, Workshops, CTFs & Events
Updates on Development Kits & Tools
Explore the Depths of Knowledge: Research Papers, Blogs and Tweets??
Articles
Research Papers
领英推荐
Watch??
Web3 Security
Articles
Research Papers
Clober DEX
On 10th Dec, Clober DEX Liquidity Vault on the Base network was exploited. The attacker used a reentrancy vulnerability in the _burn function of the Rebalancer contract, stealing 133.7 ETH (~$501K).
The exploit targeted the _burn() function's failure to follow the checks-effects-interactions (CEI) pattern—a key security principle in smart contract design.
Exploit Details:
Attacker’s Address:
To know about this exploit in detail, read the post mortem.
Community Spotlight