

Web3 Security Warning丨Be careful with 'hot spots': Detailed explanation of OrdiZK exit scam
Mar 14, 2024 pm 07:37 PMOn March 5, the CertiK security team discovered that OrdiZK orchestrated an exit scam. In this incident, the scammers used methods such as hoarding transaction fees, malicious selling, and abusing management rights to steal approximately US$1.4 million in user funds.
This incident is the sixth exit scam that occurred in 2024. To date, total losses from 2024 exit scams have exceeded $64 million.
Event Overview
OrdiZK claims to be a privacy cross-chain bridge between the Ethereum network and the Bitcoin network. They also claimed to enable cross-chain operations between other networks such as Solana and Avalanche, according to their since-deleted announcement.
The project’s deployer has established two OZK token contracts and multiple pledge contracts. Initial funding comes from ChangeNOW, which deployers deposit into FixFloat. Currently, we are unable to accurately confirm the identity of the source address of the funds.
OrdiZK’s project name covers two current industry hot spots and has attracted widespread attention. After the project is launched, users will be attracted to participate by promoting high returns. In a since-deleted announcement, they claimed that OZK’s staking annualized return is as high as 321.8%, which is an impressive figure.
Scam Timeline
OrdiZK announced via their X account on February 21 that they planned to migrate the contract to the V2 version. The new contract is expected to launch on February 26th and will allow users to migrate until March 4th.
After researching the migration mechanism, we found that when users call the "migrate" function, their V1 OZK tokens will be transferred to the deployer wallet (later marked as Fake_Phishing323133), V2 OZK tokens will be obtained later. See the case below:
#The substantial consequence of this migration is that the deployer address began to accumulate a large amount of OZK tokens. It is worth noting that this migration was announced shortly after the OrdiZK project went online. Officials claimed that this migration was to solve a small error discovered during the audit.
On March 5 after the migration deadline, the OrdiZK deployer sold 489 million OZK from the old contract at a price of 35.65 ETH (approximately $134,000), resulting in Price slippage of up to 98%.
At that time, users may not have realized that they had become victims of the scam. Because according to official news from the project, the liquidity after selling the old tokens should be added to the new token contract.
However, these funds were not added from the V1 contract to V2’s liquidity pool, but remained in the deployer’s wallet.
On March 5, within 12 hours after the sale of V1 tokens, the deployer sold an additional 454 million OZK in the new contract for 57.64 ETH (approximately $214,000), in OZK V2 liquidity The pool causes 98% slippage.
Subsequently, the deployer called the EmergencyWithdraw function twice and withdrew 57.68 ETH and 0.90 ETH respectively from the OZK pledge contract.
In addition to two sell-offs and emergency withdrawals of pledges, deployers also actively hoarded transaction fees while the project was online.
According to CertiK security team estimates, OrdiZK’s losses in this exit scam through the above methods were approximately US$1.4 million.
Funding Trends
OrdiZK also has two additional project wallet addresses, a marketing wallet and a financial wallet. On January 12, 70.5 ETH was injected into the marketing wallet, and it still holds 46.66 ETH. The treasury wallet received a capital injection of 75 ETH on January 15, which was used to create the pledge contract, and currently still holds 70 ETH in the wallet.
The project currently holds a total of approximately 1.47 million US dollars in assets in the wallet. The details are as follows:
ozk Deployer: 277.89 ETH (approximately 1,037,125 US dollars)
ozk- treasury.eth: 70.59 ETH (approx. $263,482)
ozk-marketing.eth: 46.66 ETH (approx. $173,899)
Written at the end
Removal resulted in $56.5 million The loss-making BitForex incident and the OrdiZK exit scam are the largest losses this year. With the emergence of innovative experimental standards such as ERC-404 and the popularity of the Bitcoin ecosystem reaching an all-time high, we may see more high-impact exit scams in 2024.
CertiK will continue to monitor the subsequent progress of this scam and will continue to bring you the latest security monitoring developments in the future to help the community stay vigilant and guard industry security.
If necessary, you can continue to pay attention to OrdiZK’s exit scam information and the subsequent financial trends of the fraud group in CertiK SkyInsights.
The above is the detailed content of Web3 Security Warning丨Be careful with 'hot spots': Detailed explanation of OrdiZK exit scam. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undress AI Tool
Undress images for free

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

Hot Topics

As the digital asset market gradually matures, Bitcoin, Ethereum and Dogecoin are called the "three giants in the currency circle", attracting the attention of a large number of investors. This article will analyze their technical basis, market position, community activity and long-term potential, so as to help users understand which one is more suitable for long-term holding.

As blockchain technology continues to mature, the virtual currency market remains highly concerned in 2025. Bitcoin, Ethereum and Dogecoin are mainstream digital assets and are attracting investors' attention. This article will analyze the investment potential of the three currencies from four aspects: project development, community activity, practical application and market trends, and help users compare and make more rational judgments.

As one of the mainstream digital assets, Ethereum (ETH) has attracted a lot of investors' attention. For beginners, how to buy Ethereum safely and quickly is the key to taking the first step in investment. This article will explain step by step the entire process from registering an account to successfully purchasing ETH, helping readers easily get started with digital asset investment.

?Many people are easily influenced by market sentiment in digital currency investment, blindly following the trend but not understanding the value of the currency itself. This article will compare and analyze the core mechanisms and values ??of the three mainstream currencies, Bitcoin, Ethereum, and Dogecoin, to help readers establish rational cognition and avoid being misled by short-term fluctuations.

In the virtual asset market, Bitcoin, Ethereum and Dogecoin are the three most common mainstream currencies, and many new retail investors are often confused when faced with these three. This article will compare and analyze technical characteristics, application scenarios, market performance, development ecology and community support, etc., to help investors understand the differences between these three currencies more clearly and make more appropriate choices.

As the market conditions pick up, more and more smart investors have begun to quietly increase their positions in the currency circle. Many people are wondering what makes them take decisively when most people wait and see? This article will analyze current trends through on-chain data to help readers understand the logic of smart funds, so as to better grasp the next round of potential wealth growth opportunities.

Recently, Bitcoin hit a new high, Dogecoin ushered in a strong rebound and the market was hot. Next, we will analyze the market drivers and technical aspects to determine whether Ethereum still has opportunities to follow the rise.

For newbies who are new to digital assets, they often get into choice difficulties when facing various mainstream currencies. This article will compare the three popular currencies: Bitcoin, Ethereum, and Dogecoin in detail from the aspects of technical characteristics, usage scenarios, market evaluation, etc. to help users understand the main differences between them and their respective advantages and disadvantages.