The post Bug that can drain all your tokens impacting ‘thousands’ of sites appeared on BitcoinEthereumNews.com. Welcome to The Protocol, CoinDesk’s weekly wrap The post Bug that can drain all your tokens impacting ‘thousands’ of sites appeared on BitcoinEthereumNews.com. Welcome to The Protocol, CoinDesk’s weekly wrap

Bug that can drain all your tokens impacting ‘thousands’ of sites

Welcome to The Protocol, CoinDesk’s weekly wrap of the most important stories in cryptocurrency tech development. I’m Margaux Nijkerk, a reporter at CoinDesk.

In this issue:

  • New React bug that can drain all your tokens is impacting ‘thousands’ of websites
  • Ripple Expands $1.3B RLUSD Stablecoin to Ethereum L2s via Wormhole in Multichain Push
  • Aave DAO Pushes Back as Interface Fees Shift Away From Treasury
  • NFT Project Pudgy Penguins Takes Over Las Vegas Sphere in Holiday Campaign

Network News

BUG THAT COULD DRAIN WALLET AFFECTS THOUSANDS OF WEBSITES: A critical vulnerability in React Server Components is being actively exploited by multiple threat groups, putting thousands of websites — including crypto platforms — at immediate risk with users possibly seeing all their assets drained, if impacted. The flaw, tracked as CVE-2025-55182 and nicknamed React2Shell, allows attackers to execute code remotely on affected servers without authentication. React’s maintainers disclosed the issue on Dec. 3 and assigned it the highest possible severity score. Shortly after disclosure, GTIG observed widespread exploitation by both financially motivated criminals and suspected state-backed hacking groups, targeting unpatched React and Next.js applications across cloud environments. React Server Components are used to run parts of a web application directly on a server instead of in a user’s browser. The vulnerability stems from how React decodes incoming requests to these server-side functions. In simple terms, attackers can send a specially crafted web request that tricks the server into running arbitrary commands, or effectively handing over control of the system to the attacker. The bug affects React versions 19.0 through 19.2.0, including packages used by popular frameworks such as Next.js. Merely having the vulnerable packages installed is often enough to allow exploitation.— Shaurya Malwa Read more.

RIPPLE COMING TO ETH L2S: Ripple, the payments-focused blockchain firm closely related to the XRP Ledger (XRP), is taking its U.S. dollar-backed stablecoin to Ethereum layer-2 (L2) blockchains including Optimism, Coinbase’s Base, Kraken’s Ink and Uniswap’s Unichain in a push to embed the $1.3 billion token deeper into the multichain ecosystem. The company said it is starting with a test phase ahead of a wider rollout expected next year, pending regulatory approval by the New York Department of Financial Services (NYDFS). The pilot integrates Wormhole’s Native Token Transfers (NTT) standard, which allows RLUSD to move natively across chains without wrapping or synthetic assets. This helps maintain liquidity and regulatory control while supporting a range of decentralized finance (DeFi) use cases across networks optimized for speed and lower costs. Stablecoins are rapidly growing as a key piece of digital-finance plumbing connecting traditional finance and the crypto economy. They are a $300 billion class of cryptocurrencies, with prices pegged to fiat money like the U.S. dollar. — Krisztian Sandor Read more.

AAVE PROTOCOL INTERFACE DEBATE INTENSIFIES: A debate inside Aave’s DAO is raising questions about who controls the protocol’s interface and who benefits financially from it. The issue surfaced after Aave Labs integrated decentralized exchange aggregator CoWSwap into the app.aave.com interface earlier this month, replacing earlier Paraswap routing used for collateral swaps. While the change was framed as a user-experience upgrade offering improved execution and MEV protection, delegates later flagged that swap-related fees were no longer flowing to the Aave DAO treasury. An open letter from Orbit delegate EzR3aL argued that the integration introduced front-end fees of roughly 15 to 25 basis points that accrue to an external recipient rather than the DAO. On-chain data cited in the post showed weekly distributions of ether tied to CoWSwap’s partner-fee mechanism across multiple networks, potentially amounting to millions of dollars annually. That surplus has since declined as routing shifted to CoWSwap’s batch-auction model, which prioritizes execution certainty over price improvement. But at the center of the debate is a distinction Aave Labs says has always existed: the protocol versus the product. In a forum reply, Aave Labs said the interface is operated, funded and maintained independently from the protocol governed by the DAO. Under this model, the DAO controls on-chain parameters, interest rates and protocol-level fees, while Labs retains discretion over optional, application-level features such as swap routing and interface monetization. “Any monetization applies only to accessory features,” Aave Labs wrote, arguing that this separation preserves protocol neutrality and avoids centralizing economic control at the base layer. Critics, however, say the practical reality has been different. Marc Zeller of the Aave Chan Initiative (ACI) said there had been a long-standing expectation that monetization tied to the aave.com frontend — including swap surplus and flash-loan-assisted execution — would benefit the DAO, especially given that the brand, governance legitimacy and much of the underlying development were funded by tokenholders. — Shaurya Malwa Read more.

PUDGY PENGUINS TAKE OVER VEGAS: Once a breakout non-fungible token (NFT) project during the 2021 crypto boom, Pudgy Penguins is turning to real-world visibility with a high-profile ad placement at the Las Vegas Sphere during Christmas week. Only a few crypto-related brands have secured ad space at the Sphere, a massive LED-covered venue known for its immersive displays and performances by acts like U2 and the Eagles. A bitcoin-focused activation ran in July, but other examples have been rare. Pudgy Penguins’ ad will run for several days starting December 24 and will include multiple animated segments, according to a person familiar with the deal. The brand spent roughly $500,000 on the placement — standard for a run at the Sphere. “It’s sort of showing that a crypto project can exceed and go out of crypto, touch the hearts and minds of everyday consumers,” Vedant Mangaldas, chief of strategy and brand at Pudgy Penguins, told CoinDesk. He said that the deal was made possible because the project has a “real business” behind it. – Helene Braun Read more.


In Other News

  • Securitize will offer what it calls the first fully compliant onchain trading platform for real public stocks in early 2026, blurring the lines between traditional markets and Web3 infrastructure. The company’s system allows investors to directly own tokenized shares of public companies, issued and recorded onchain, and tradable through a blockchain-based interface, according to an announcement. Unlike synthetic token models that track stock prices via offshore entities or derivatives, Securitize’s approach offers full legal ownership. Each share is issued by the company itself and logged on its official cap table, the firm said. “This is not a synthetic price tracker or an IOU against a custodian,” Securitize wrote in its announcement. “These are real, regulated shares: issued onchain, recorded directly on the issuer’s cap table, and tradable through a familiar Web3 swap-style experience.” That means token holders get real shareholder rights, including dividends and voting privileges, and their assets sit under self-custody, with no middlemen rehypothecating shares behind the scenes. The assets are, nevertheless, permissioned and can only be transferred between compliant, whitelisted wallets. — Francesco Rodrigues Read more.
  • Credit card giant Visa (V) is launching USDC settlement in the United States, letting issuer and acquirer partners settle obligations to the card network in Circle’s dollar-pegged stablecoin. The move marks the U.S. phase of a stablecoin settlement program that has reached a $3.5 billion annualized run rate as of Nov. 30, according to a Visa press release. The new option is meant to give banks and fintechs near-instant funds movement, seven-day-a-week settlement and more predictable liquidity around weekends and holidays, while keeping the consumer card experience unchanged. — Will Canny Read more.

Regulatory and Policy

  • U.S. Senator Elizabeth Warren has asked for another U.S. national-security probe into a corner of the crypto sector, specifying concerns with PancakeSwap, a decentralized exchange she flagged as trying to amplify coins issued by President Donald Trump-connected World Liberty Financial Inc. She said the exchange, which operates across several blockchains and is a major protocol on Binance’s chain, should be reviewed for connection to “any improper political influence by the Trump Administration on enforcement decisions,” Warren said in a Monday letter to Treasury Secretary Scott Bessent and Attorney General Pam Bondi, asking for them to look into it, echoing a similar request she was involved with last month regarding WLFI. “As Congress considers crypto market structure legislation — including rules to prevent terrorists, criminals, and rogue states from exploiting decentralized finance (DeFi) to fund their activities — it is critical to understand whether you are seriously investigating these risks,” wrote Warren, who is the ranking Democrat on the Senate Banking Committee that must mark up the legislation and approve it before the wider Senate can take a vote. — Jesse Hamilton Read more.
  • The U.S. Federal Deposit Insurance Corp. has rolled out the first official rule proposal stemming from the new law governing stablecoin issuers, with its board voting to open a 60-day public comment period on its system for handling applications from its regulated banks looking to issue stablecoins from subsidiaries. The agency — led by Acting Chairman Travis Hill, who is also President Donald Trump’s nominee for the permanent seat — will gather comments and review them before it can release a final rule. The Tuesday proposal, approved by all three members of the shorthanded board, would establish the procedures for accepting applications, reviewing them under a 120-day approval window and offering an appeal process for those rejected. “Under the proposal, the FDIC would adopt a tailored application process that would enable the FDIC to evaluate the safety and soundness of an applicant’s proposed activities based on the statutory factors while minimizing the regulatory burden on applicants,” said Hill, whose nomination could be confirmed as soon as this week by the Senate. The Guiding and Establishing National Innovation for U.S. Stablecoins (GENIUS) Act was the first major crypto law approved by Congress, and it set out a complex array of regulators for companies wishing to issue stablecoins, the dollar-tied tokens vital to transactions in the digital assets sector. For insured depository institutions, the FDIC is the assigned regulator. — Jesse Hamilton Read more.

Calendar

  • Feb. 10-12, 2026: Consensus, Hong Kong
  • Feb. 17-21, 2026: EthDenver, Denver
  • Mar. 30-Apr. 2, 2026: EthCC, Cannes
  • Apr.15-16, 2026: Paris Blockchain Week, Paris
  • May 5-7, 2026: Consensus, Miami

Source: https://www.coindesk.com/tech/2025/12/17/the-protocol-bug-that-can-drain-all-your-tokens-impacting-thousands-sites

Market Opportunity
MemeCore Logo
MemeCore Price(M)
$1.36971
$1.36971$1.36971
-2.13%
USD
MemeCore (M) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Disney (DIS) Stock Takes Hit as Kimmel Controversy Rocks ABC Network

Disney (DIS) Stock Takes Hit as Kimmel Controversy Rocks ABC Network

TLDR Disney stock dropped 1.9% over the week, closing at $113.76 down from $115.96 high ABC suspended Jimmy Kimmel’s show after controversial remarks, sparking immediate market reaction Streaming segment turned profitable with ESPN partnerships driving growth Traditional TV division continues facing subscriber decline challenges Analysts maintain positive outlook with $5.85 EPS guidance for full year [...] The post Disney (DIS) Stock Takes Hit as Kimmel Controversy Rocks ABC Network appeared first on CoinCentral.
Share
Coincentral2025/09/21 22:09
Crypto in Drug Cases: South Korea Deploys Elite Unit to Combat Illicit Trade

Crypto in Drug Cases: South Korea Deploys Elite Unit to Combat Illicit Trade

BitcoinWorld Crypto in Drug Cases: South Korea Deploys Elite Unit to Combat Illicit Trade The digital age has brought remarkable innovations, but it has also presented new challenges for law enforcement worldwide. One significant concern is the alarming rise of crypto in drug cases, transforming how illicit transactions occur globally. South Korea, a nation at the forefront of technological adoption, is now taking decisive action to combat this growing threat, signaling a crucial shift in its approach to digital crime. Why the Surge in Crypto in Drug Cases? Why are criminals increasingly turning to virtual assets for drug deals? The answer lies in several factors that make cryptocurrencies an attractive, albeit deceptive, tool for illicit activities. These digital currencies offer perceived advantages that traditional payment methods often lack, making them a preferred choice for illegal transactions. Perceived Anonymity: While not truly anonymous, cryptocurrencies offer a layer of pseudonymity that can complicate tracing transactions for the untrained eye. Global Reach: Digital currencies enable cross-border payments with relative ease and speed, significantly facilitating international drug trafficking networks. Speed and Efficiency: Transactions can be processed quickly, often bypassing traditional banking hurdles and regulatory oversight, which is appealing to criminals. This shift has led to a noticeable surge in drug offenses, particularly among younger demographics, from teenagers to individuals in their thirties. The ease of online procurement, coupled with the perceived security of crypto payments, creates a complex landscape for authorities striving to curb the proliferation of crypto in drug cases. South Korea’s Dedicated Response: An Elite Virtual Asset Team In response to this escalating crisis, South Korean police are making a significant strategic move. They will be assigning all 41 of their newly recruited narcotics investigators for the latter half of the year to a specialized virtual asset team. This dedicated unit signifies a robust commitment to addressing the sophisticated nature of crimes involving crypto in drug cases. It’s a clear signal that traditional investigative methods alone are no longer sufficient to tackle the intricacies of digital financial crime. This proactive step underscores the gravity of the situation and the necessity for specialized expertise. By concentrating resources and talent, South Korean law enforcement aims to develop a cutting-edge capability to navigate the complex world of virtual assets and their misuse in criminal enterprises. How Will This Elite Unit Tackle Crypto in Drug Cases? What exactly will these 41 specialists do? Their mandate is comprehensive and multi-faceted, focusing on disrupting the entire financial flow of drug-related crimes. Their efforts will extend beyond simple arrests, targeting the very infrastructure that enables these illicit operations. Tracking Illicit Virtual Assets: The team will employ advanced forensic tools and techniques to follow the digital breadcrumbs left by cryptocurrency transactions, no matter how obscured. Cracking Down and Confiscating: Beyond tracking, their goal is to actively seize and confiscate illicit virtual assets, effectively cutting off funding for criminal enterprises and recovering proceeds for the state. Investigating Payment Gateway Operators: Many online drug deals rely on specific payment services that facilitate crypto transactions. The unit will target these operators to dismantle the infrastructure supporting illegal trade. Combating Money Laundering: A crucial part of their work will involve investigating organizations that launder criminal proceeds, aiming to block funds and recover assets for the state. This proactive approach aims not only to apprehend offenders but also to cripple the financial networks that enable the proliferation of crypto in drug cases, making it harder for criminals to profit from their illegal activities. Broader Implications and the Road Ahead This initiative by South Korean police holds significant implications, not just for domestic law enforcement but potentially as a model for international cooperation in combating digital crime. By developing specialized expertise in virtual asset forensics, South Korea is positioning itself to effectively combat modern illicit trade. The recovery of criminal proceeds is vital, not only for justice but also to deter future illicit activities by making crime less profitable. This specialized team represents a critical investment in the future of digital security and public safety. It ensures that the benefits of technological advancement are not overshadowed by its misuse in criminal endeavors, particularly concerning drug trafficking and its impact on younger generations. The deployment of South Korea’s elite virtual asset team is a testament to the evolving landscape of crime and law enforcement. As crypto in drug cases continues to pose a significant challenge, specialized units like this are essential to protect communities, especially younger generations, from the devastating impact of drug trafficking. It’s a proactive, informed, and necessary step towards a safer digital future where accountability extends into the virtual realm. Frequently Asked Questions (FAQs) 1. What is the main reason South Korean police are deploying this new team? South Korean police are deploying this new team primarily in response to a significant surge in the use of cryptocurrency as the primary payment method for online drug deals and a rise in drug offenses among people in their 10s to 30s. 2. How many new officers are being assigned to the virtual asset team? All 41 of the new narcotics investigators recruited for the second half of the year will be assigned to this dedicated virtual asset team. 3. What specific tasks will the new virtual asset team undertake? The team’s mandate includes tracking, cracking down on, and confiscating illicit virtual assets. They will also investigate illegal payment gateway operators and money laundering organizations to block fund flow and recover criminal proceeds. 4. Why are criminals increasingly using cryptocurrency for drug deals? Criminals use cryptocurrency due to its perceived anonymity, global reach for easy cross-border payments, and the speed and efficiency of transactions, which can bypass traditional banking hurdles. 5. What is the broader goal of this initiative beyond just arresting individuals? The broader goal is to cripple the financial networks that enable drug trafficking, recover criminal proceeds, and dismantle the infrastructure supporting illicit virtual asset transactions, thereby deterring future criminal activities. Found this article insightful? Share it with your network to spread awareness about the global efforts to combat crypto in drug cases and the evolving strategies in digital law enforcement. Your shares help inform others and highlight the importance of these initiatives. To learn more about the latest cryptocurrency regulations and their impact, explore our article on key developments shaping digital asset security and law enforcement efforts. This post Crypto in Drug Cases: South Korea Deploys Elite Unit to Combat Illicit Trade first appeared on BitcoinWorld.
Share
Coinstats2025/09/22 14:45
Trump's grasp on GOP slips as nervous Republicans privately take on White House: report

Trump's grasp on GOP slips as nervous Republicans privately take on White House: report

White House insiders said this week that President Donald Trump and his closest allies are in turmoil trying to keep House Republicans from jumping ship — and it
Share
Rawstory2026/02/14 10:55