• bitcoinBitcoin (BTC) $ 118,014.00
  • ethereumEthereum (ETH) $ 2,969.13
  • xrpXRP (XRP) $ 2.79
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 694.36
  • solanaSolana (SOL) $ 163.59
  • usd-coinUSDC (USDC) $ 0.999957
  • dogecoinDogecoin (DOGE) $ 0.202224
  • tronTRON (TRX) $ 0.304827
  • staked-etherLido Staked Ether (STETH) $ 2,970.27
  • cardanoCardano (ADA) $ 0.717854
  • hyperliquidHyperliquid (HYPE) $ 46.78
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 117,882.00
  • wrapped-stethWrapped stETH (WSTETH) $ 3,583.52
  • suiSui (SUI) $ 3.44
  • stellarStellar (XLM) $ 0.379238
  • chainlinkChainlink (LINK) $ 15.30
  • bitcoin-cashBitcoin Cash (BCH) $ 518.02
  • avalanche-2Avalanche (AVAX) $ 20.85
  • hedera-hashgraphHedera (HBAR) $ 0.198315
  • leo-tokenLEO Token (LEO) $ 9.08
  • wrapped-eethWrapped eETH (WEETH) $ 3,185.07
  • shiba-inuShiba Inu (SHIB) $ 0.000013
  • the-open-networkToncoin (TON) $ 2.99
  • usdsUSDS (USDS) $ 0.999784
  • wethWETH (WETH) $ 2,972.81
  • litecoinLitecoin (LTC) $ 93.25
  • whitebitWhiteBIT Coin (WBT) $ 46.66
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • moneroMonero (XMR) $ 333.29
  • polkadotPolkadot (DOT) $ 4.00
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 117,994.00
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • pepePepe (PEPE) $ 0.000012
  • bitget-tokenBitget Token (BGB) $ 4.42
  • uniswapUniswap (UNI) $ 8.59
  • aaveAave (AAVE) $ 301.44
  • bittensorBittensor (TAO) $ 394.88
  • pi-networkPi Network (PI) $ 0.472407
  • daiDai (DAI) $ 1.00
  • crypto-com-chainCronos (CRO) $ 0.104753
  • aptosAptos (APT) $ 4.89
  • nearNEAR Protocol (NEAR) $ 2.53
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.18
  • okbOKB (OKB) $ 48.66
  • internet-computerInternet Computer (ICP) $ 5.37
  • jito-staked-solJito Staked SOL (JITOSOL) $ 198.76
  • ondo-financeOndo (ONDO) $ 0.894045
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • ethereum-classicEthereum Classic (ETC) $ 18.44
  • susdssUSDS (SUSDS) $ 1.06
  • kaspaKaspa (KAS) $ 0.086142
  • usd1-wlfiUSD1 (USD1) $ 1.00
  • cosmosCosmos Hub (ATOM) $ 4.71
  • mantleMantle (MNT) $ 0.634403
  • ethenaEthena (ENA) $ 0.334412
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.233605
  • vechainVeChain (VET) $ 0.024435
  • arbitrumArbitrum (ARB) $ 0.403975
  • official-trumpOfficial Trump (TRUMP) $ 9.82
  • gatechain-tokenGate (GT) $ 16.21
  • fasttokenFasttoken (FTN) $ 4.45
  • algorandAlgorand (ALGO) $ 0.221538
  • render-tokenRender (RENDER) $ 3.68
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.706359
  • sei-networkSei (SEI) $ 0.330510
  • worldcoin-wldWorldcoin (WLD) $ 1.04
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,970.81
  • filecoinFilecoin (FIL) $ 2.59
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 117,761.00
  • bonkBonk (BONK) $ 0.000022
  • skySky (SKY) $ 0.079509
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.74
  • binance-staked-solBinance Staked SOL (BNSOL) $ 173.50
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.023614
  • spx6900SPX6900 (SPX) $ 1.58
  • jupiter-exchange-solanaJupiter (JUP) $ 0.488621
  • kucoin-sharesKuCoin (KCS) $ 11.48
  • usdtbUSDtb (USDTB) $ 0.999637
  • first-digital-usdFirst Digital USD (FDUSD) $ 1.00
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,115.58
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,384.71
  • usdt0USDT0 (USDT0) $ 1.00
  • celestiaCelestia (TIA) $ 1.91
  • nexoNEXO (NEXO) $ 1.28
  • fartcoinFartcoin (FARTCOIN) $ 1.26
  • story-2Story (IP) $ 4.35
  • injective-protocolInjective (INJ) $ 12.60
  • flare-networksFlare (FLR) $ 0.017077
  • memecoreMemeCore (M) $ 0.759336
  • sonic-3Sonic (S) $ 0.361949
  • xdce-crowd-saleXDC Network (XDC) $ 0.071335
  • blockstackStacks (STX) $ 0.751563
  • optimismOptimism (OP) $ 0.654962
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.75
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,172.15
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,123.21
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 117,830.00
  • polygon-bridged-usdt-polygonPolygon Bridged USDT (Polygon) (USDT) $ 1.00
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 1.00
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,130.43
  • dogwifcoindogwifhat (WIF) $ 0.977468
  • the-graphThe Graph (GRT) $ 0.097801
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 117,693.00
  • immutable-xImmutable (IMX) $ 0.507823
  • syrupusdcSyrupUSDC (SYRUPUSDC) $ 1.11
  • kaiaKaia (KAIA) $ 0.160448
  • pax-goldPAX Gold (PAXG) $ 3,348.35
  • flokiFLOKI (FLOKI) $ 0.000097
  • wbnbWrapped BNB (WBNB) $ 694.54
  • clbtcclBTC (CLBTC) $ 118,409.00
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,215.58
  • tokenize-xchangeTokenize Xchange (TKX) $ 11.16
  • paypal-usdPayPal USD (PYUSD) $ 0.999711
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.52
  • curve-dao-tokenCurve DAO (CRV) $ 0.631481
  • vaultaVaulta (A) $ 0.544026
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 183.78
  • tether-goldTether Gold (XAUT) $ 3,349.43
  • msolMarinade Staked SOL (MSOL) $ 213.79
  • theta-tokenTheta Network (THETA) $ 0.805991
  • galaGALA (GALA) $ 0.017234
  • iotaIOTA (IOTA) $ 0.192654
  • lido-daoLido DAO (LDO) $ 0.835131
  • raydiumRaydium (RAY) $ 2.73
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.74
  • ethereum-name-serviceEthereum Name Service (ENS) $ 21.92
  • jasmycoinJasmyCoin (JASMY) $ 0.014686
  • the-sandboxThe Sandbox (SAND) $ 0.290538
  • ousgOUSG (OUSG) $ 111.77
  • zcashZcash (ZEC) $ 42.81
  • pyth-networkPyth Network (PYTH) $ 0.118137
  • jito-governance-tokenJito (JTO) $ 1.95
  • wrapped-hypeWrapped HYPE (WHYPE) $ 46.86
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.997961
  • bittorrentBitTorrent (BTT) $ 0.00000068
  • aerodrome-financeAerodrome Finance (AERO) $ 0.786797
  • super-oethSuper OETH (SUPEROETH) $ 2,971.62
  • tezosTezos (XTZ) $ 0.632255
  • saros-financeSaros (SAROS) $ 0.249704
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 3,179.34
  • pendlePendle (PENDLE) $ 3.95
  • mog-coinMog Coin (MOG) $ 0.000002
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.09
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 3,085.99
  • tbtctBTC (TBTC) $ 117,831.00
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,974.11
  • flowFlow (FLOW) $ 0.385919
  • newton-projectAB (AB) $ 0.009016
  • decentralandDecentraland (MANA) $ 0.311423
  • falcon-financeFalcon USD (USDF) $ 0.999494
  • chain-2Onyxcoin (XCN) $ 0.017142
  • usual-usdUsual USD (USD0) $ 0.997692
  • based-brettBrett (BRETT) $ 0.056873
  • coredaoorgCore (CORE) $ 0.558644
  • solv-protocol-solvbtc-bbnSolv Protocol Staked BTC (XSOLVBTC) $ 116,886.00
  • walrus-2Walrus (WAL) $ 0.404326
  • heliumHelium (HNT) $ 3.01
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 118,013.00
  • build-onBUILDon (B) $ 0.554781
  • syrupMaple Finance (SYRUP) $ 0.508421
  • morphoMorpho (MORPHO) $ 1.71
  • staked-hypeStaked HYPE (STHYPE) $ 46.84
  • apecoinApeCoin (APE) $ 0.667943
  • thorchainTHORChain (RUNE) $ 1.51
  • bitcoin-svBitcoin SV (BSV) $ 26.33
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.201874
  • ripple-usdRipple USD (RLUSD) $ 0.999853
  • starknetStarknet (STRK) $ 0.141886
  • conflux-tokenConflux (CFX) $ 0.099859
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,972.84
  • true-usdTrueUSD (TUSD) $ 0.998272
  • usddUSDD (USDD) $ 1.00
  • venomVenom (VENOM) $ 0.222874
  • kavaKava (KAVA) $ 0.428642
  • reserve-rights-tokenReserve Rights (RSR) $ 0.007914
  • stader-ethxStader ETHx (ETHX) $ 3,162.21
  • dydx-chaindYdX (DYDX) $ 0.611569
  • dog-go-to-the-moon-runeDog (Bitcoin) (DOG) $ 0.004574
  • apenftAPENFT (NFT) $ 0.00000045
  • bridged-usdc-polygon-pos-bridgeBridged USDC (Polygon PoS Bridge) (USDC.E) $ 0.999997
  • neoNEO (NEO) $ 6.32
  • beldexBeldex (BDX) $ 0.062260
  • compound-governance-tokenCompound (COMP) $ 46.96
  • elrond-erd-2MultiversX (EGLD) $ 15.40
  • dexeDeXe (DEXE) $ 7.60
  • ether-fiEther.fi (ETHFI) $ 1.14
  • aioz-networkAIOZ Network (AIOZ) $ 0.358605
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,281.52
  • eigenlayerEigenCloud (prev. EigenLayer) (EIGEN) $ 1.34
  • ecasheCash (XEC) $ 0.000021
  • deepDeepBook (DEEP) $ 0.168333
  • axie-infinityAxie Infinity (AXS) $ 2.50
  • arweaveArweave (AR) $ 6.34
  • hashnote-usycCircle USYC (USYC) $ 1.09
  • ether-fi-staked-btcEther.fi Staked BTC (EBTC) $ 117,970.00
  • telcoinTelcoin (TEL) $ 0.004442
  • usdbUSDB (USDB) $ 1.01
  • zksyncZKsync (ZK) $ 0.056073
  • movementMovement (MOVE) $ 0.152614

Illicit Huione Group (USDH) allegedly tricked Certik in audit to gain legitimacy

0 34

Illicit Huione Group (USDH) allegedly tricked Certik in audit to gain legitimacy

Huione Group, a Cambodian-based company that is reportedly behind the largest illicit marketplace is facing allegations that it misled blockchain security company Certik to produce a favorable audit for its newly launched stablecoin, USDH.

In a post on X, Certik co-founder Ronghui Gu claims that the smart contract auditing company was contacted by a third-party agency, which blindsided them from linking the project with the illicit marketplace.

Certik claims it was misled to audit USDH

Huione Group was exposed to be behind the Huione Guarantee Telegram marketplace, which facilitates transactions for cybercrime in Southeast Asia; the platform has reportedly processed over $24 billion in transactions.

In 2024, it reportedly launched the USDH stablecoin, which is pegged to the US dollar and marketed as censorship-resistant to help users avoid the transaction freezes commonly associated with popular stablecoins like USDT. This raises concerns that the coin is a tool to aid money laundering.

Following the launch of the USDH, Huione Group contracted Certik, a prominent blockchain security firm, to conduct a smart contract audit for the stablecoin.

The audit identified 12 security issues: three major, two medium, three minor, and four informational issues. The major issues were around the coin’s centralization. The audit report indicated that six of these issues were resolved, one partially solved, and five just acknowledged.

The coin received a Certik Security Score of less than 30%, but it ran with the audit as a mark of legitimacy regardless.

However, there are allegations that Huione Group might have misrepresented or concealed critical information from the audit team during the audit in order to receive a favorable assessment.

Certik co-founder Ronghui Gu said a third party had contacted Certik for the audit, which prevented them from quickly linking the project with fraudulent activities. While emphasizing that Certik evaluates the code security and functionality and does not perform KYC or business audits, he added, “We agree that deeper due diligence and extra alerts would’ve helped,” admitting that the company could have done a better job to protect public interest.

Huione Guarantee has attempted to distance itself from the Huione Group, lending credibility to the allegations that the organization tricked Certik into giving it a favorable audit.

In July 2024, blockchain analytics firm Elliptic published an investigative report, which unveiled the group as being behind the illicit marketplace. Following the release of this publication, Huione Guarantee rebranded as Haowang Guarantee, Huione Group’s payments business, Huione Pay also removed a section on its website dedicated to the marketplace. However, Huione Group remains a “strategic partner and shareholder,” according to statements from the marketplace.

Certik’s reputation takes a hit

This case highlights the challenges in the blockchain and crypto markets regarding project auditing. While smart contract audits assess technical vulnerabilities, they do not evaluate the business operations or regulatory compliance of the entities behind the projects, which allows bad actors to use audit reports as a stamp of legitimacy.

Vocal on-chain sleuth, @tayvano_on X (formerly Twitter) also alluded to this in a post, saying “a literal multi-billion dollar money laundering operation paid CertiK to stamp of approval their new money laundering contract.”

Others commenting on CertiK’s audit of USDH raised questions about the need for a more comprehensive evaluation framework that includes technical assessments and due diligence on the entities behind blockchain projects. The blowback could negatively impact Certik’s reputation, with critics saying it knowingly took money to endorse criminals.

Source

Leave A Reply

Your email address will not be published.