{"id":80432,"date":"2023-06-19T17:05:24","date_gmt":"2023-06-19T14:05:24","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=80432"},"modified":"2025-09-11T16:58:15","modified_gmt":"2025-09-11T13:58:15","slug":"sui-pays-certik-500000-bounty-for-vulnerability-discovery","status":"publish","type":"post","link":"https:\/\/forklog.com\/en\/sui-pays-certik-500000-bounty-for-vulnerability-discovery\/","title":{"rendered":"Sui pays CertiK $500,000 bounty for vulnerability discovery."},"content":{"rendered":"<p>CertiK&#8217;s smart-contract security auditor received a $500,000 bounty for discovering a critical vulnerability in the blockchain <a href=\"https:\/\/forklog.com\/en\/news\/sui-an-ambitious-blockchain-and-cryptocurrency-from-meta-alumni\">Sui<\/a>. The report by <a href=\"https:\/\/cointelegraph.com\/news\/certik-bounty-sui-blockchain-threat-discovery\">Cointelegraph<\/a> says so.<\/p>\n<p>Analysts stressed that the bug, dubbed HamsterWheel, differs from traditional exploits. They said a potential attacker could hijack nodes and perform transactions without processing new transactions.<\/p>\n<p>CertiK discovered the vulnerability before <a href=\"https:\/\/forklog.com\/en\/news\/sui-network-launches-its-mainnet\">the launch of the Sui mainnet<\/a> in May. The developers acted quickly to fix the bug. A more detailed report from the auditors was promised for publication later.<\/p>\n<p>CertiK&#8217;s Chief Security Officer Kan Li said that methods for attacking blockchains are continually evolving. The discovery of HamsterWheel demonstrates the &#8216;increasing sophistication of threats&#8217;, he added.<\/p>\n<p>The company also emphasised the importance of bounty programmes as a preventive measure in cybersecurity.<\/p>\n<p>In May, CertiK <a href=\"https:\/\/forklog.com\/en\/news\/certik-freezes-160000-stolen-from-merlin-dex\">said<\/a> it froze $160,000, withdrawn from the Merlin decentralised exchange following <a href=\"https:\/\/forklog.com\/en\/news\/merlin-on-zksync-era-hacked-for-1-82-million-after-certik-audit\">an exploit<\/a>.<\/p>\n<p>In June 2022, the team behind the non-custodial crypto wallet MetaMask, in partnership with HackerOne, <a href=\"https:\/\/forklog.com\/en\/news\/metamask-developers-launch-bounty-program-in-partnership-with-hackerone\">launched<\/a> a vulnerability-bounty initiative for the app.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CertiK&#8217;s smart-contract security auditor received a $500,000 bounty for discovering a critical vulnerability in the Sui blockchain.<\/p>\n","protected":false},"author":1,"featured_media":80433,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"1","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1204,1111,1651],"class_list":["post-80432","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-certik","tag-cybersecurity","tag-sui-sui"],"aioseo_notices":[],"amp_enabled":true,"views":"11","promo_type":"1","layout_type":"1","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/80432","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/comments?post=80432"}],"version-history":[{"count":1,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/80432\/revisions"}],"predecessor-version":[{"id":80434,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/80432\/revisions\/80434"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media\/80433"}],"wp:attachment":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media?parent=80432"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/categories?post=80432"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/tags?post=80432"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}