Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
No Result
View All Result

OpenSea serves as an example of why crypto security must improve

Altszn.com by Altszn.com
February 3, 2023
in Blockchain, Crypto, DeFi, Web3
0
OpenSea serves as an example of why crypto security must improve
399
SHARES
2.3k
VIEWS
Share on FacebookShare on Twitter



In February 2022, OpenSea fell prey to a major phishing attack that resulted in over $1.7 million in nonfungible tokens (NFTs) being stolen from users. It wasn’t the only incident: Blockchain users reportedly lost $3.9 billion to fraudulent activity in 2022 alone.

As we entered 2023, there was a chorus of promises to increase security within the crypto space. But, so far, things haven’t significantly changed. Companies that utilize blockchain still aren’t doing enough to prevent scams.

If blockchain technology is going to see mass adoption, companies will have to change their approach from the bottom up. By focusing on education and implementing better processes to identify malicious activity, these platforms can better serve their customers as the space continues to grow.

Blockchain platforms need to learn how to identify malicious activity

In the case of the OpenSea hack, victims were asked to sign an incomplete contract, seemingly at the platform’s request. While OpenSea’s core infrastructure was not hacked, the fake accounts were able to take advantage of the open-source Wyvern Protocol. Hackers were then able to use the owner’s signature to be transferred to a false contract that gave them ownership without having to pay for the NFTs.

Related: 10 predictions for crypto in 2023

OpenSea recently reversed some of its previous policies after it was reported that 80% of NFTs minted for free on the platform were plagiarized or spam. OpenSea also relies on trust in the developers that use its API, which is not a foolproof way to assess risk. These developers could use the API for malicious purposes to take advantage of users signing contracts they don’t read.

Smart contracts are an integral part of the blockchain engine and can be found everywhere, from NFT exchanges to veritable decentralized applications. Understanding how these contracts function is imperative to keeping users secure. Rather than reinventing the wheel, companies can implement standard protocols to ensure smart contracts are resilient and protected from malicious activity. From there, companies can take advantage of the blockchain’s flexible nature and customize their contract, like setting up multisignature wallets and regular unit testing.

Beware of the spammy airdrop

If you look for the popular Mutant Hounds collection featured on OpenSea’s top collections, there is no indication of which collection is legitimate. Lack of verification can lead to counterfeit collections being formed, artificially increasing the price to make it appear legitimate and confusing to users. Fake collections are often distributed through airdrops, intended to be found through an NFT platform’s search functionality.

Related: What Paul Krugman gets wrong about crypto

Spammy collections can also send users NFTs they did not ask for via airdrops. Users will be redirected not through the platform where they hold a collection, such as OpenSea, but via a different site, where the scam occurs.

This is a commonplace risk that can be addressed by platforms monitoring such activity, either through a crowdsourced database that tracks fraudulent accounts or an administrative tool that knows what to look for and is constantly aware of updated scams. In addition, NFT platforms can require bids to be in the same currency as the listing to avoid confusion. Many users have been scammed by accepting an offer in a less valuable currency than the one in which they listed the NFT for sale. Blockchain platforms can rely on data to expose their outliers by flagging suspicious activity based on irregular activity among a small number of holders.

Of course, it must be noted that companies like OpenSea are in the challenging position of having to police fraudulent accounts that mint on their platform. In many cases, it boils down to a need for more verification of the official collection.

Onboarding is an integral part of the business plan

Onboarding should be a core part of the blockchain experience for veteran and novice users. Like smart contracts, establishing clear user guidelines and highlighting potential risks should be considered one of the fundamental best practices for ensuring user safety. These guides should be regularly reviewed, taking into account risk assessment, and adjusted accordingly as blockchain matures.

Among experienced users, the initialism “DYOR” is commonplace among users on the blockchain. As an abbreviation of “do your own research,” this expression has become an unspoken rule for those interacting with potential investment opportunities. Yet, it can be challenging for newcomers to know precisely where to start. There is a chorus of discordant information from influencers within the space who are often pushing the next big thing and driving risky investments, resulting in users falling victim to scams or loss of assets. Guidelines and educational materials should be readily available, curated to each platform’s value system and unique risks.

Best practices should be a priority for all blockchain platforms

As the blockchain community currently works through its growing pains, companies should take the hard lessons learned via major exploits like the ones on OpenSea and refine their security protocols to ensure that doesn’t happen again. Learning the ins and outs of basic technology, from smart contracts to how to protect one’s seed phrase, should be the starting point. From there, learn how to implement and maintain best practices, such as identifying malicious activity and those wreaking havoc. Perhaps all it would have taken to prevent some of the most recent large-scale hacks was simply for someone to notice that something seemed off.

Michael R. Pierce is the co-founder and CEO of NotCommon. He received both his BBA and MBA from The University of Texas at Austin.

This article is for general information purposes and is not intended to be and should not be taken as legal or investment advice. The views, thoughts and opinions expressed here are the author’s alone and do not necessarily reflect or represent the views and opinions of Cointelegraph.





Read More: cointelegraph.com

Tags: CryptoDeFiimproveOpenSeaSecurityserves
ADVERTISEMENT

Recent

Cardano Eyes Milestone as Hoskinson Teases Blockchain’s First Privacy Stablecoin

Cardano Eyes Milestone as Hoskinson Teases Blockchain’s First Privacy Stablecoin

May 15, 2025
Canada lags with stablecoin approach, but there’s room to catch up

Canada lags with stablecoin approach, but there’s room to catch up

May 15, 2025
Post-halving profitability, hashrate and energy trends

Post-halving profitability, hashrate and energy trends

May 15, 2025

Categories

  • Bitcoin (4,858)
  • Blockchain (11,412)
  • Crypto (9,352)
  • Dark Web (549)
  • DeFi (8,397)
  • Ethereum (4,905)
  • Metaverse (7,531)
  • Monero (290)
  • NFT (1,481)
  • Solana (5,047)
  • Web3 (20,709)
  • Zcash (510)

Category

Select Category

    Advertise

    Advertise your site, company or product to millions of web3, NFT and cryptocurrency enthusiasts. Learn more

    Useful Links

    Advertise
    DMCA
    Contact Us
    Privacy Policy
    Shipping & Returns
    Terms of Use

    Resources

    Exchanges
    Changelly
    Web3 Jobs

    Recent News

    Cardano Eyes Milestone as Hoskinson Teases Blockchain’s First Privacy Stablecoin

    Cardano Eyes Milestone as Hoskinson Teases Blockchain’s First Privacy Stablecoin

    May 15, 2025
    Canada lags with stablecoin approach, but there’s room to catch up

    Canada lags with stablecoin approach, but there’s room to catch up

    May 15, 2025

    © 2022 Altszn.com. All Rights Reserved.

    No Result
    View All Result
    • Home
      • Home – Layout 1
      • Home – Layout 2
      • Home – Layout 3

    © Altszn.com. All Rights Reserved.

    • bitcoinBitcoin (BTC) $ 103,704.00
    • ethereumEthereum (ETH) $ 2,562.30
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.48
    • bnbBNB (BNB) $ 656.83
    • solanaSolana (SOL) $ 172.08
    • usd-coinUSDC (USDC) $ 0.999844
    • dogecoinDogecoin (DOGE) $ 0.226230
    • cardanoCardano (ADA) $ 0.781457
    • tronTRON (TRX) $ 0.275882
    • staked-etherLido Staked Ether (STETH) $ 2,563.23
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,733.00
    • suiSui (SUI) $ 3.93
    • wrapped-stethWrapped stETH (WSTETH) $ 3,085.83
    • chainlinkChainlink (LINK) $ 16.46
    • avalanche-2Avalanche (AVAX) $ 23.83
    • stellarStellar (XLM) $ 0.299345
    • shiba-inuShiba Inu (SHIB) $ 0.000015
    • hyperliquidHyperliquid (HYPE) $ 25.65
    • hedera-hashgraphHedera (HBAR) $ 0.200590
    • leo-tokenLEO Token (LEO) $ 8.89
    • bitcoin-cashBitcoin Cash (BCH) $ 396.32
    • the-open-networkToncoin (TON) $ 3.12
    • litecoinLitecoin (LTC) $ 99.06
    • polkadotPolkadot (DOT) $ 4.86
    • usdsUSDS (USDS) $ 0.999741
    • wethWETH (WETH) $ 2,566.36
    • pi-networkPi Network (PI) $ 0.902521
    • moneroMonero (XMR) $ 340.51
    • wrapped-eethWrapped eETH (WEETH) $ 2,742.03
    • pepePepe (PEPE) $ 0.000014
    • bitget-tokenBitget Token (BGB) $ 4.84
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,540.00
    • whitebitWhiteBIT Coin (WBT) $ 30.33
    • bittensorBittensor (TAO) $ 441.51
    • uniswapUniswap (UNI) $ 6.37
    • daiDai (DAI) $ 1.00
    • nearNEAR Protocol (NEAR) $ 2.94
    • aptosAptos (APT) $ 5.53
    • aaveAave (AAVE) $ 229.89
    • okbOKB (OKB) $ 53.49
    • ondo-financeOndo (ONDO) $ 1.00
    • kaspaKaspa (KAS) $ 0.118987
    • jito-staked-solJito Staked SOL (JITOSOL) $ 205.78
    • crypto-com-chainCronos (CRO) $ 0.102507
    • internet-computerInternet Computer (ICP) $ 5.50
    • ethereum-classicEthereum Classic (ETC) $ 19.22
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • bitcoinBitcoin (BTC) $ 103,704.00
    • ethereumEthereum (ETH) $ 2,562.30
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.48
    • bnbBNB (BNB) $ 656.83
    • solanaSolana (SOL) $ 172.08
    • usd-coinUSDC (USDC) $ 0.999844
    • dogecoinDogecoin (DOGE) $ 0.226230
    • cardanoCardano (ADA) $ 0.781457
    • tronTRON (TRX) $ 0.275882
    • staked-etherLido Staked Ether (STETH) $ 2,563.23
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,733.00
    • suiSui (SUI) $ 3.93
    • wrapped-stethWrapped stETH (WSTETH) $ 3,085.83
    • chainlinkChainlink (LINK) $ 16.46
    • avalanche-2Avalanche (AVAX) $ 23.83
    • stellarStellar (XLM) $ 0.299345
    • shiba-inuShiba Inu (SHIB) $ 0.000015
    • hyperliquidHyperliquid (HYPE) $ 25.65
    • hedera-hashgraphHedera (HBAR) $ 0.200590
    • leo-tokenLEO Token (LEO) $ 8.89
    • bitcoin-cashBitcoin Cash (BCH) $ 396.32
    • the-open-networkToncoin (TON) $ 3.12
    • litecoinLitecoin (LTC) $ 99.06
    • polkadotPolkadot (DOT) $ 4.86
    • usdsUSDS (USDS) $ 0.999741
    • wethWETH (WETH) $ 2,566.36
    • pi-networkPi Network (PI) $ 0.902521
    • moneroMonero (XMR) $ 340.51
    • wrapped-eethWrapped eETH (WEETH) $ 2,742.03
    • pepePepe (PEPE) $ 0.000014
    • bitget-tokenBitget Token (BGB) $ 4.84
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,540.00
    • whitebitWhiteBIT Coin (WBT) $ 30.33
    • bittensorBittensor (TAO) $ 441.51
    • uniswapUniswap (UNI) $ 6.37
    • daiDai (DAI) $ 1.00
    • nearNEAR Protocol (NEAR) $ 2.94
    • aptosAptos (APT) $ 5.53
    • aaveAave (AAVE) $ 229.89
    • okbOKB (OKB) $ 53.49
    • ondo-financeOndo (ONDO) $ 1.00
    • kaspaKaspa (KAS) $ 0.118987
    • jito-staked-solJito Staked SOL (JITOSOL) $ 205.78
    • crypto-com-chainCronos (CRO) $ 0.102507
    • internet-computerInternet Computer (ICP) $ 5.50
    • ethereum-classicEthereum Classic (ETC) $ 19.22
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00