Merlin Exploited after CertiK Audit, Raising Questions about Audit Firm's Validity

Merlin Exploited after CertiK Audit, Raising Questions about Audit Firm's Validity

Merlin, a decentralized exchange (DEX) on Ethereum (ETH) layer-2 protocol zkSync, confirmed it was exploited despite being audited by smart-contract auditor CertiK.

CertiK said its initial investigations into the hack showed that it was a potential private key management issue rather than an exploit as the root cause. The blockchain security firm noted that it highlighted the “centralization risk” under “Decentralization Efforts” in its audit of the firm. CertiK added that “audits cannot prevent private key issues.”

Despite CertiK’s explanations, some crypto community members have questioned the validity of the audits performed by the firm. CertiK is one of the biggest names in the blockchain security business.

Some KOK claims the percentage of projects audited by CertiK but later exploited is much higher than other audit firms. However, there are no statistics on the number of exploits on projects audited by different firms up to now.

 

TokenInsight is dedicated to covering the most important and cutting-edge trends in the world of crypto. If you have information to share with us, please feel free to contact our email news@tokeninsight.com. Your trust will be well respected.

Source

Security Incidents

Related News
Bybit hackers move over half the stolen ETH onto Bitcoin, largely using ThorChain Bybit hackers move over half the stolen ETH onto Bitcoin, largely using ThorChain
Stablecoin neobank Infini exploited for $49 million: security analysts Stablecoin neobank Infini exploited for $49 million: security analysts
NoOnes CEO Ray Youssef discloses $8 million exploit weeks after the fact, confirming crypto sleuth ZachXBT's investigation NoOnes CEO Ray Youssef discloses $8 million exploit weeks after the fact, confirming crypto sleuth ZachXBT's investigation
Lending Protocol Sonne Finance Exploited for $20M Lending Protocol Sonne Finance Exploited for $20M
Users Lost $69M in $WBTC due to Address Poisoning Users Lost $69M in $WBTC due to Address Poisoning
Latest News More More
3 Days Ago 0xbow unveils ‘Privacy Pools,’ a new blockchain privacy tool drawing from Vitalik Buterin’s research
March 27 Ethereum edges closer to deploying Pectra on mainnet with successful upgrade on Hoodi testnet
March 27 MEXC Extends DEX+ Platform to Binance Smart Chain Users
March 25 Binance suspends employee for allegedly profiting off of insider information
March 25 BlackRock launches bitcoin ETP in Europe following US success
delate
Use TokenInsight App All Crypto Insights Are In Your Hands
Open