Bitcoin
Bitcoin (BTC)
$64,163.00 -0.05847
Bitcoin price
Ethereum
Ethereum (ETH)
$1,732.26 -0.21668
Ethereum price
XRP
XRP (XRP)
$1.13 -0.69479
XRP price
BNB
BNB (BNB)
$591.72 0.13115
BNB price
Solana
Solana (SOL)
$71.90 -2.52543
Solana price
Hyperliquid
Hyperliquid (HYPE)
$67.13 -1.61119
Hyperliquid price
Cardano
Cardano (ADA)
$0.159128 -0.43282
Cardano price
Chainlink
Chainlink (LINK)
$7.89 -0.11334
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.079027 -0.98493
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.65 1.01866
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001179 -7.87455
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$64,163.00 -0.05847
Bitcoin price
Ethereum
Ethereum (ETH)
$1,732.26 -0.21668
Ethereum price
XRP
XRP (XRP)
$1.13 -0.69479
XRP price
BNB
BNB (BNB)
$591.72 0.13115
BNB price
Solana
Solana (SOL)
$71.90 -2.52543
Solana price
Hyperliquid
Hyperliquid (HYPE)
$67.13 -1.61119
Hyperliquid price
Cardano
Cardano (ADA)
$0.159128 -0.43282
Cardano price
Chainlink
Chainlink (LINK)
$7.89 -0.11334
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.079027 -0.98493
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.65 1.01866
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001179 -7.87455
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$64,163.00 -0.05847
Bitcoin price
Ethereum
Ethereum (ETH)
$1,732.26 -0.21668
Ethereum price
XRP
XRP (XRP)
$1.13 -0.69479
XRP price
BNB
BNB (BNB)
$591.72 0.13115
BNB price
Solana
Solana (SOL)
$71.90 -2.52543
Solana price
Hyperliquid
Hyperliquid (HYPE)
$67.13 -1.61119
Hyperliquid price
Cardano
Cardano (ADA)
$0.159128 -0.43282
Cardano price
Chainlink
Chainlink (LINK)
$7.89 -0.11334
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.079027 -0.98493
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.65 1.01866
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001179 -7.87455
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$64,163.00 -0.05847
Bitcoin price
Ethereum
Ethereum (ETH)
$1,732.26 -0.21668
Ethereum price
XRP
XRP (XRP)
$1.13 -0.69479
XRP price
BNB
BNB (BNB)
$591.72 0.13115
BNB price
Solana
Solana (SOL)
$71.90 -2.52543
Solana price
Hyperliquid
Hyperliquid (HYPE)
$67.13 -1.61119
Hyperliquid price
Cardano
Cardano (ADA)
$0.159128 -0.43282
Cardano price
Chainlink
Chainlink (LINK)
$7.89 -0.11334
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.079027 -0.98493
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.65 1.01866
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001179 -7.87455
Asteroid Shiba price

NFT hacker’s new technique introduces new feature to Blur market

Yana Khlebnikova
Edited by
News
NFT hacker’s new technique introduces new feature to Blur market

A hacker known as “Pink Drainer” has discovered a method to enable private sales on Blur, a platform that typically does not offer this feature.

This revelation, first shared by Twitter user Quit, has the potential to alter the dynamics of the NFT marketplace significantly.

https://twitter.com/0xQuit/status/1664373487165923328

Blur, an NFT marketplace, traditionally does not offer private listings. Any user can fulfill any listing created on the platform. However, Pink Drainer has found a way to purchase items for near zero ether (ETH) on Blur. This is achieved by uniquely exploiting the royalty system.

Typically, if a scammer tricks a victim into creating a Blur listing for the minimum amount of ETH, arbitrage bots would outpace them. These bots are willing to pay most of the value of the NFT in fees to block validators, thereby securing the purchase for themselves. This situation is not ideal for phishing hackers such as Pink Drainer.

To counteract this, scammers have been known to phish signatures to list items above the floor price, with their own address set as the royalty recipient with 100% royalties. However, Pink Drainer has taken this concept a step further.

Pink Drainer sets a royalty recipient with 100% royalties, but instead of putting the recipient to themselves, they set it to a contract. This contract reverts for any transaction in which Pink Drainer is not the origin.

As a result, even though the NFT is publicly listed for nearly zero ETH, no one can fulfill it except for the hacker. If someone else tries, the royalty payment reverts, causing the entire transaction to revert. This effectively makes it a private listing on the Blur NFT marketplace.

As explained by Quit, his technique could potentially be used by others to create legitimate private listings on Blur. It could even inspire the development of a frontend that simplifies this process. Despite the illicit origins of this technique, it could contribute positively to the NFT space by introducing a new Blur feature that was previously unavailable.