CryptoMediaClub
Saturday, December 20, 2025
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis
No Result
View All Result
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis
No Result
View All Result
CryptoMediaClub
No Result
View All Result
Home Blockchain

CertiK to launch compensation plan for $2M Merlin DEX exploit

26.04.2023
A A
0
124
VIEWS
ShareShare

Blockchain security firm CertiK is launching a compensation plan to cover the $2 million lost during a public sale of decentralized exchange Merlin’s MAGE token.

In a statement to Cointelegraph on April 26, CertiK reiterated it is investigating the exit scam and has also enlisted the remaining Merlin team to initiate the compensation plan. It said:

“Initial investigations indicate that the rogue developers are based in Europe, and CertiK will collaborate with law enforcement authorities to track them down if direct negotiation is unsuccessful.”

The blockchain security company is urging the rogue developer to return 80% of the stolen funds, conceding 20% as a white hat bounty.

The firm also pointed out that private key privileges are “committed to assisting impacted users” despite them being outside the scope of a smart contract audit.

Merlin lost about $850,000 worth of USD Coin (USDC) and some more relatively illiquid tokens on April 26 during its three-day MAGE token public sale without any hard cap. Blockchain data suggests that an exploiter with control over the liquidity pool was able to easily siphon the funds.

We did some research on Merlin smart contracts and we identified the malicious code responsible for the draining of funds.
These two lines of code in the initialize function are essentially granting approval for the feeTo address to transfer an unlimited (type(uint256).max)… pic.twitter.com/mIksh4HkhB

— eZKalibur ∎ (@zkaliburDEX) April 26, 2023

CertiK, which audited Merlin’s code, responded with its initial findings pointing to a “potential private key management issue.”

We’re actively investigating the @TheMerlinDEX incident. Initial findings point to a potential private key management issue rather than an exploit as the root-cause.
While audits cannot prevent private key issues, we always highlight best practices to projects.
Should any foul…

— CertiK (@CertiK) April 26, 2023

Crypto Twitter questioned the CertiK audit, implying that there might be a rug pull.

Verichains founder Thanh Nguyen alluded to a “backdoor” present in Merlin’s code, saying it is a “clear security risk as there is no use case that requires its approval.”

3/4 However, in the Merlin code, there is a "backdoor" code (L87-88) that allows the feeTo of MerlinFactory to transfer all assets in the pair, in addition to the fee in the swap function. This backdoor is a clear security risk as there is no use case that requires its approval. pic.twitter.com/HAnwZT27ZS

— Thanh Nguyen (@redragonvn) April 26, 2023

“While audits can identify potential risks and vulnerabilities, they cannot prevent malicious activities on the part of rogue developers such as rug pulls,” CertiK said in a statement to Cointelegraph. “We encourage users to look for projects with a ‘KYC Badge’ as an added layer of security, signifying that the project has voluntarily gone through a KYC vetting process.”

Related: Ordinals Finance has conducted a $1M rug pull: CertiK

The firm explained that doing so can help reduce and mitigate the risk of insider threats such as rug pulls.

CertiK said it would continue providing updates on its compensation plan and ongoing investigation.

This article was updated to reflect that only CertiK had proposed a compensation plan for the Merlin DEX exploit.

Share10Tweet6ShareSharePin2

Related Posts

Ondo Finance Unleashes Revolutionary Tokenized US Treasuries on Sei
Blockchain

Ondo Finance Unleashes Revolutionary Tokenized US Treasuries on Sei

18.07.2025
0

Skip to content

Read moreDetails
Hashed stablecoin: South Korea’s Crypto Giant Unveils Bold Trademark Play

Hashed stablecoin: South Korea’s Crypto Giant Unveils Bold Trademark Play

17.07.2025
LA Token’s Strategic Move: Lagrange Foundation Considers Crucial Buyback for Price Stability

LA Token’s Strategic Move: Lagrange Foundation Considers Crucial Buyback for Price Stability

14.07.2025
Shocking Loss: Crypto Influencer Accidentally Burns $75K in PUMP Token

Shocking Loss: Crypto Influencer Accidentally Burns $75K in PUMP Token

14.07.2025
Dubai’s Historic Approval: Qatar National Bank Launches Revolutionary Tokenized Money Market Fund in DIFC

Dubai’s Historic Approval: Qatar National Bank Launches Revolutionary Tokenized Money Market Fund in DIFC

08.07.2025
Load More
Next Post
Binance.​US enables free Web3 domain creation for American users

Binance.​US enables free Web3 domain creation for American users

0 0 votes
Рейтинг статьи
Subscribe
Notify of
guest
guest
0 комментариев
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Recommended

People Want To Hold More Bitcoin, Blockchain Association CEO Kristin Smith Says

People Want To Hold More Bitcoin, Blockchain Association CEO Kristin Smith Says

12 months ago
Low Market Cap Meme Coin With Excessive Potential: Why PEPETO’s Early Traders Might Win Huge

Low Market Cap Meme Coin With Excessive Potential: Why PEPETO’s Early Traders Might Win Huge

10 months ago
BAY Miner Releases High-Performance Mobile App, Transforming Smartphones into Global Cloud Mining Hubs

BAY Miner Releases High-Performance Mobile App, Transforming Smartphones into Global Cloud Mining Hubs

4 months ago
Court Rules Upbit Must Compensate LUNC Investor Over Pre-crash Transaction

Court Rules Upbit Must Compensate LUNC Investor Over Pre-crash Transaction

1 year ago

Categories

  • All news
  • Altcoins
  • Analysis
  • Bitcoin
  • Blockchain
  • Ethereum
  • NFT
No Result
View All Result

Highlights

Solana AI Token Ava Plunges 96% After ‘Insiders’ Snipe 40% of Supply

Bitcoin Cash Price Prediction: Is the BCH Price Headed to $650 Before Christmas?

Crypto.com Introduces New Referral Program With More Rewards and Real-Time Dashboard

Bitcoin encryption isn’t at risk from quantum computers for one simple reason: it doesn’t actually exist

Senate Confirms Pro-Crypto Mike Selig as CFTC Chair — What To Expect

Aptos Proposes Quantum-Resistant Signatures to Future-Proof Blockchain Security

Trending

Solana Price Prediction: Can SOL Reverse The Massive 40% YoY Price Collapse?
All news

Solana Price Prediction: Can SOL Reverse The Massive 40% YoY Price Collapse?

20.12.2025
0

Solana price is down by a lot. The Solana chart has closed with red candles for 3...

Fidelity’s latest Bitcoin chart pattern signals a 2026 “off-year” that could drag prices down to this brutal support level

Fidelity’s latest Bitcoin chart pattern signals a 2026 “off-year” that could drag prices down to this brutal support level

19.12.2025
Bitcoin ETF IBIT Ranks Among Top 2025 Fund Flows Despite Negative Returns

Bitcoin ETF IBIT Ranks Among Top 2025 Fund Flows Despite Negative Returns

19.12.2025
Solana AI Token Ava Plunges 96% After ‘Insiders’ Snipe 40% of Supply

Solana AI Token Ava Plunges 96% After ‘Insiders’ Snipe 40% of Supply

19.12.2025
Bitcoin Cash Price Prediction: Is the BCH Price Headed to $650 Before Christmas?

Bitcoin Cash Price Prediction: Is the BCH Price Headed to $650 Before Christmas?

19.12.2025
  • All news
  • Altcoins
  • Bitcoin
  • Blockchain
  • Ethereum
  • NFT
  • Analysis
Editor: cryptomediaclub.com@gmail.com
Advertising: digestmediaholding@gmail.com

Disclaimer: Information found on CryptoMediaClub is those of writers quoted. It does not represent the opinions of CryptoMediaClub on whether to sell, buy or hold any investments. You are advised to conduct your own research before making any investment decisions. Use provided information at your own risk.
CryptoMediaClub covers fintech, blockchain and Bitcoin bringing you the latest crypto news and analyses on the future of money.

© 2023 Crypto News. All Rights Reserved

No Result
View All Result
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis

Disclaimer: Information found on CryptoMediaClub is those of writers quoted. It does not represent the opinions of CryptoMediaClub on whether to sell, buy or hold any investments. You are advised to conduct your own research before making any investment decisions. Use provided information at your own risk.
CryptoMediaClub covers fintech, blockchain and Bitcoin bringing you the latest crypto news and analyses on the future of money.

© 2023 Crypto News. All Rights Reserved

wpDiscuz