Log in

Research Report

Cryptonary Portfolio Updates: 30x Token

Updated: Aug 5, 2024
Published: Jul 28, 2021
0
Share:

DeFi is a brand new concept, and as such the risks in investing in these protocols is higher than investing in Bitcoin for example. There have been rug pulls, scams, exploits, all costing millions of dollars worth of losses.

Post Feature Image

One common theme is that the useless assets never recover and are dead for good. However, there are some protocols that survive the onslaught, and end up being battle-tested.

No project is ever 100% finished at launch, and projects must be tested under live conditions so that further development can continue and any teething problems ironed out.

It is not all doom and gloom though - the higher risk associated with investing early in a project leads to the potential for higher reward.

The crypto market has experienced a lot of turbulence recently. However, our outlook has not changed.

 

 

Disclaimer: NOT FINANCIAL NOR INVESTMENT ADVICE. Only you are responsible for any capital-related decisions you make and only you are accountable for the results.

 

 

THORChain

The last few weeks have certainly been rough for THORChain. Last week the protocol was subjected to another attack that targeted roughly the same vector that the previous attack used. Additionally, a design flaw in the ETH.RUNE token came to light, causing more FUD to spread about the project. There is no sugar-coating that these attacks have been detrimental to confidence in the project, and it will likely take months to restore that confidence.

However, it is vital to consider the fact that THORChain is a product that is still in development or BETA. There are warnings all over the various interfaces used to interact with the protocol, such as THORSwap, stating that large amounts of funds should not be used. The complexity of the protocol the team is building also increases the likelihood of attacks because multiple chains are involved. What THORChain is trying to achieve is one of the most difficult tasks attempted in crypto – direct L1 to L1 cross-chain swaps.

 

Latest Attack

THORChain was subjected to another attack on the 22nd of July. As previously stated, the attacker used a similar method to the attack outlined in this report. Both recent hacks targeted a weak area within the coding of the protocol that was exploitable due to the complexity of interactions between smart contracts and a block scanner.

Fortunately, during this attack, the network was only partially running as part of the recovery plan outlined for the previous hack, and so trading on all chains was still halted. This prevented the hacker from stealing more funds. An outline of the attack vector used is as follows:

  • The hacker created a smart contract that acted as a phoney router.
  • The attacker then sent a small amount of ETH, which registered as a deposit event.
  • Asgard vaults handle inbound transactions – the smart contract that the hacker created registered as an Asgard vault to the THORChain router, which sent the hacker's ETH back to his own phoney router.
  • This created a fake deposit event with a false memo.
  • The Bifrost read this fake deposit event as a normal deposit, and due to the false memo, automatically refunded the attacker with real assets. This is a built-in mechanism to avoid losing user funds if a wrong memo is entered into the transaction.
The total damage of the attack appears to have been around $8 million. The attacker used Tornado Cash protocol to withdraw in a completely private and untraceable manner – Tornado Cash has been used many times in the past by black-hat hackers to anonymously "launder" their stolen funds.

The attacker used the false memos to send a message to the development team. Here is an example of the raw data from one of the transactions:

size-full wp-image-136919 aligncenter

There were several transactions with messages sent in this way. A user in the THORChain community Discord went through the transactions and found all the memo messages:

size-full wp-image-136920 aligncenter

The implication is that if the protocol was completely online at the time of the attack, then the hacker claims they could have made away with so much more. Clearly, the hacker believes that there are a few more vulnerabilities within the protocol that must be resolved ASAP. They also appear to have criticised the THORChain team for their handling of the previous hack – i.e., rushing the fix.

 

ETH.RUNE

Not long after the attack, another vulnerability came into the spotlight. Some wallets holding ETH.RUNE, the version of RUNE that lives on the Ethereum network, were airdropped a token called UNIH. The token itself is completely useless, and its sole purpose was to bait the wallet owners into trying to sell it on a decentralised exchange. Once the user approved the use of the UNIH token, a malicious contract would transfer all ETH.RUNE in the user's wallet to the scammer's address.

size-full wp-image-136921 aligncenter

This is possible due to the design of the ETH.RUNE token. For some reason, the developers did not want to use ERC-20, the standard that most Ethereum tokens use. The stated purpose of the code is to ease the process of upgrading ETH.RUNE to native THOR.RUNE. However, the developers literally told any would-be scammer exactly how to exploit this in the code comments. Considering all the code is open-source and available on GitHub, this seems rather negligent.

 

It appears that the scammer was only able to steal around $76,000 worth of RUNE. Still, the news of this exploit shortly after the main attack further exasperated an already concerning situation. For holders of ETH.RUNE the tokens should be safe if the UNIH token is not approved for use by the user.

 

What happens going forward?

The THORChain developers and community have been proactive in coming up with solutions to the immediate issues. As previously stated, the protocol is under-going audits from two cyber-security firms, with the Halborn audit set for completion at the end of August. The developers set out an initial plan of action that they will be following over the coming weeks:
  • A controlled restart of the network will be initiated with the compromised components (e.g., Bifrost) isolated. Liquidity Providers and Node Operators will be back paid their rewards owed since the network was halted. Nodes that were on standby will also be paid 50% of the rewards that active nodes will receive to ensure they are compensated as well, which is a great gesture from the developers. Note that trading will not be reactivated at this stage.
  • With the network restarted, updates to fix bugs and add security measures can be implemented.
  • The two auditing firms (Halborn and ToB) will be reviewing all chains, as well as the swap and provide liquidity functions to ensure they are secure and stable, after which the clients will be restarted (this likely means trading will be restarted too, but only for BNB and UTXO chains).
  • Since the Ethereum (ERC-20) chain was the centre of all the major attacks, it will undergo a community review to decide whether ERC-20 tokens will remain supported by THORChain in the near to mid-term.
  • A bug bounty program is currently in development with support from Immunefi, a bug bounty platform currently used by many large DeFi protocols. This will hopefully provide white-hat hackers incentive to report bugs to the team, as well as incentivise potential black-hat hackers to claim a bounty rather than steal the assets outright.
  • Finally, once the action points outlined have been addressed, the network should be fully operational, assuming the audits have been completed in full and any problems resolved.
In addition to this, THORChain has announced that they will be working with DeFi insurance protocols to enquire about insuring the entire THORChain ecosystem to provide further protection against future attacks.

If this is possible, it will massively boost confidence in the protocol since funds could be covered regardless of what happens. Insurance will also protect the THORChain treasury from being drained by future attacks. There is no confirmed timeline for the completion of the action plan yet.

As announced on Discord we have taken the decision to add more RUNE at around $3 to capitalise on this opportunity. In the grand scheme of things, RUNE has not performed any worse than some other DeFi assets, despite the recent events. This is an example of the concept of buying fear that we spoke about in a recent journal.

We believe that the plan put forward by the team, as well as the ongoing audits and talks with insurance protocols, is a step in the right direction. The number of attacks, as well as the less-than-optimal handling of them by the development team, has led to substantial uncertainty around the protocol. It will likely take a couple of months to restore investor confidence; however, after having spectated the community Discord interactions for the last few weeks, we are still confident in the protocol.

 

100% Success Money Back Guarantee

If our approach doesn’t outperform the overall crypto market during your subscription, we’ll give you a full refund of your membership. No questions asked. For quarterly and monthly subscribers this is applicable once your subscription runs for 6 consecutive months.

Terms & Conditions apply

Star

Trusted by 300,000+ traders

Take your next step towards crypto success

Save 50%

$799/year

Get everything you need to actively manage your portfolio and stay ahead. Ideal for investors seeking regular guidance and access to tools that help make informed decisions.

VisaCardImageMsCardImageCoinbaseCardImageSolanaCardImage

For your security, all orders are processed on a secured server.

What’s included in Pro:

  • Success Guarantee, if we don’t outperform the market, you get 100% back, no questions asked

  • 24/7 access to experts with 50+ years’ experience

  • All of our top token picks for 2025

  • Our latest memecoins pick with 50X potential

  • On hand technical analysis on any token of your choice

  • Weekly livestreams & ask us anything with the team

  • Daily insights on Macro, Mechanics, and On-chain

  • Curated list of top upcoming airdrops (free money)

Our track record speaks for itself

With over 2.4M tokens and widespread misinformation in crypto, we cut
through the noise and consistently find winning assets.

/images/advertorial/corpcomm3.webp
/images/advertorial/corpcomm4.webp
/images/advertorial/corpcomm5.webp

Frequently Asked Questions

Yes. We've consistently identified winners across multiple cycles. Bitcoin under $1,000, Ethereum under $70, Solana under $10, WIF from $0.003 to $5, PopCat from $0.004 to $2, SPX blasting past $1.70, and our latest pick has already 200X'd since June 2025. Everything is timestamped and public record.

No. When we founded Cryptonary in 2017 the market was new to everyone. We intentionally created content that was easy to understand and actionable. That foundational principle is the crux of Cryptonary. Taking complex ideas and opportunities and presenting them in a way a 10 year old could understand.

Signal vs noise. We filter out 99.9% of garbage projects, provide data backed analysis, and have a proven track record of finding winners. Not to mention since Cryptonary's inception in 2017 we have never taken investment, sponsorship or partnership. Compare this to pretty much everyone else, no track record, and a long list of partnerships that cloud judgements.

We share highly sensitive, time-critical research. Once it's out, it can't be "returned." That's why membership is annual only. Crypto success takes time and commitment. If someone is not willing to invest 12 months into their future, there is no place for them at Cryptonary.

Yes. You will have 24/7 to the team that bought you BTC at $1,000, ETH at $70, and SOL at $10. Through our community chats, live Q&As, and member only channels, you can ask questions and interact directly with the team. Our team has over 50 years of combined experience which you can tap into every single day.

Daily. We provide real-time updates, weekly reports, emergency alerts, and live Q&As when the markets move fast. In crypto, the market moves fast, in Cryptonary, we move faster.

If our approach to the market doesn’t beat the overall crypto market during your subscription, we’ll give you a full refund of your membership fee. No questions asked. For quarterly and monthly subscribers this is applicable once your subscription runs for 6 consecutive months.

Recommended from Cryptonary
The Crypto Handicap: CZ and Binance vs. Hyperliquid
Research Report
The Crypto Handicap: CZ and Binance...Earlier this month, we called BNB as the asset most likely to outperform BTC. This week, we’re calli...
9 min read
Oct 20, 2025
State of the Market: October 2025
PRO
Research Report
State of the Market: October 2025Crypto just endured one of the largest liquidation events in its history, with more than $19B in pos...
23 min read
Oct 15, 2025
CPro picks update: Diversifying with major asset + trade setup
PRO
Research Report
CPro picks update: Diversifying wit...You can debate decentralisation, you can question regulation, but you can't ignore performance. This...
16 min read
Oct 9, 2025