hop-protocol / hop-airdrop

Hop Airdrop distribution 🐰
174 stars 218 forks source link

Sybil Attacker Report #604

Closed Annu2047 closed 2 years ago

Annu2047 commented 2 years ago

Related Addresses

10 addresses:

0x0b1937f6ee406ca9e44dd99035da38840c242a9d
0x1b3dff537b7d46a0d30b1d20b101c483586747aa
0x2b5ef7f8d42feb86ba3d4eec6e325ec314105f29
0x354044d39f1e31109ecab3407b99b2ad5ed6515d
0x3b810b595edf7bb386942677ef01d8ebfe2946a1
0x3f0c713b4e3fc2f56cfdbfcac0b45c927045a833
0x5a81868992ffcf4200a85972c60151690af39006
0xa4caccef0dd28212b2aff92443bd560ba83ff428
0xa63c2a96b84b73867c0c6a89331907ebb4c94d56
0xd1d547b26dbfdca5019dfd70f0b239ff745688ea

Reasoning

All address received (0.1 - 0.01)ETH from 0x2fc617e933a52713247ce25730f6695920b3befe on arbitrum network

Tx details: 0x0b1937f6ee406ca9e44dd99035da38840c242a9d(https://arbiscan.io/tx/0xe805754b02167dcffa8201d60ab5fdc0b0ea9389561913a399053cabb57023b9) 0x1b3dff537b7d46a0d30b1d20b101c483586747aa(https://arbiscan.io/tx/0xe5def2c3e2595b350220df228e1ce1a3d3915e44a8a4394d7e6a0b795a33d019) 0x2b5ef7f8d42feb86ba3d4eec6e325ec314105f29(https://arbiscan.io/tx/0x3fa5b8c7f96f04cdd1e6d691f1bc3e570bbb5c3e63fa037175a2ec75e2877c7e) 0x354044d39f1e31109ecab3407b99b2ad5ed6515d(https://arbiscan.io/tx/0xdac300eb502378b03fecbca08763f9953a3aa84552166501fdf60ffecbcb9937) 0x3b810b595edf7bb386942677ef01d8ebfe2946a1(https://arbiscan.io/tx/0x863f7c1a62b6485556566492cfe3e2a755839bb19a55a0917fda1781c8d0340a) 0x3f0c713b4e3fc2f56cfdbfcac0b45c927045a833(https://arbiscan.io/tx/0x2d836e1a721e2d1474faf14a18b088484351f56dce08b9c5339158ac6f047d49) 0x5a81868992ffcf4200a85972c60151690af39006(https://arbiscan.io/tx/0xf3834c482d8588e26a6b0fc5ea56fbd4cc5f88f1bfb9e1a0e85f60ad14752115) 0xa4caccef0dd28212b2aff92443bd560ba83ff428(https://arbiscan.io/tx/0x0bf2ea5c17a99b5b34cd0ca84c979d53284cd09c6b74fd197a75a01147d9636c) 0xa63c2a96b84b73867c0c6a89331907ebb4c94d56(https://arbiscan.io/tx/0xf617923e5aec044afca014b315b51706af0793754f32538b64de1edda48f26f5) 0xd1d547b26dbfdca5019dfd70f0b239ff745688ea(https://arbiscan.io/tx/0x9f5cb609c9c9d09f84a7b026ef779603324aef77a77e501ed29049f37d52bbb7)

All addresses farmed Government Toucans (TOUCAN) from 2022-04-01 to 2022-04-02

Tx details: 0x0b1937f6ee406ca9e44dd99035da38840c242a9d(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0x0b1937f6ee406ca9e44dd99035da38840c242a9d) 0x1b3dff537b7d46a0d30b1d20b101c483586747aa(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0x1b3dff537b7d46a0d30b1d20b101c483586747aa) 0x2b5ef7f8d42feb86ba3d4eec6e325ec314105f29(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0x2b5ef7f8d42feb86ba3d4eec6e325ec314105f29) 0x354044d39f1e31109ecab3407b99b2ad5ed6515d(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0x354044d39f1e31109ecab3407b99b2ad5ed6515d) 0x3b810b595edf7bb386942677ef01d8ebfe2946a1(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0x3b810b595edf7bb386942677ef01d8ebfe2946a1) 0x3f0c713b4e3fc2f56cfdbfcac0b45c927045a833(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0x3f0c713b4e3fc2f56cfdbfcac0b45c927045a833) 0x5a81868992ffcf4200a85972c60151690af39006(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0x5a81868992ffcf4200a85972c60151690af39006) 0xa4caccef0dd28212b2aff92443bd560ba83ff428(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0xa4caccef0dd28212b2aff92443bd560ba83ff428) 0xa63c2a96b84b73867c0c6a89331907ebb4c94d56(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0xa63c2a96b84b73867c0c6a89331907ebb4c94d56) 0xd1d547b26dbfdca5019dfd70f0b239ff745688ea(https://arbiscan.io/token/0x642ffab2752df3bce97083709f36080fb1482c80?a=0xd1d547b26dbfdca5019dfd70f0b239ff745688ea)

All addresses also farmed Volmex NFT (Volmex) on from 2022-05-07 to 2022-05-09

Tx details: 0x0b1937f6ee406ca9e44dd99035da38840c242a9d(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0x0b1937f6ee406ca9e44dd99035da38840c242a9d) 0x1b3dff537b7d46a0d30b1d20b101c483586747aa(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0x1b3dff537b7d46a0d30b1d20b101c483586747aa) 0x2b5ef7f8d42feb86ba3d4eec6e325ec314105f29(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0x2b5ef7f8d42feb86ba3d4eec6e325ec314105f29) 0x354044d39f1e31109ecab3407b99b2ad5ed6515d(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0x354044d39f1e31109ecab3407b99b2ad5ed6515d) 0x3b810b595edf7bb386942677ef01d8ebfe2946a1(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0x3b810b595edf7bb386942677ef01d8ebfe2946a1) 0x3f0c713b4e3fc2f56cfdbfcac0b45c927045a833(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0x3f0c713b4e3fc2f56cfdbfcac0b45c927045a833) 0x5a81868992ffcf4200a85972c60151690af39006(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0x5a81868992ffcf4200a85972c60151690af39006) 0xa4caccef0dd28212b2aff92443bd560ba83ff428(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0xa4caccef0dd28212b2aff92443bd560ba83ff428) 0xa63c2a96b84b73867c0c6a89331907ebb4c94d56(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0xa63c2a96b84b73867c0c6a89331907ebb4c94d56) 0xd1d547b26dbfdca5019dfd70f0b239ff745688ea(https://arbiscan.io/token/0x522810e92bfb808fef392650feeb2cc33ce52815?a=0xd1d547b26dbfdca5019dfd70f0b239ff745688ea)

All address also have a low nonce.

Methodology

Same as https://github.com/hop-protocol/hop-airdrop/issues/602#issue-1245041297

Rewards Address

0x6a1AF72bBcfD0BA492E502F83334d3910Fa025dB

shanefontaine commented 2 years ago

@Annu2047

Can you please provide detail reasoning that shows high-quality research and can be easy to verify by the Hop Labs team. The report must have a non-negligible probability of eliminating legitimate users.

Annu2047 commented 2 years ago

Hi @shanefontaine update with more details, thx for your reminder!

shanefontaine commented 2 years ago

Thank you for your report.

Unfortunately, only 9 of these addresses are eligible. All eligible addresses are here.

It looks like they were submitted in #383 .