Security Conscious - The Daily Gwei #366
We all know that there has been numerous DeFi exploits/hacks, rug pulls and scams over the last 18 months with the most recent exploit happening just yesterday to Cream Finance (where $100 million was stolen). Unfortunately, these sorts of things are just par for the course in DeFi and users need to be well aware of all the risks when interacting with this ecosystem. ![]() 2476 🔥👠 @punk2476 @cyounessi1 @FrankResearcher @CreamdotFinance can someone plz share the most battle tested DeFi appsAs Cyrus notes above, there are only a certain number of apps that he’s willing to put more than 50% of his net worth into and I’m in the same boat as him. The apps that he’s listed are built by world-class teams, have been around for a long time, don’t play cowboy with users funds and take a very conservative approach across all areas of the protocol. Now, of course, some of them have been exploited in various ways such as Compound’s latest COMP-related exploit and Maker becoming undercollateralized after the “covid crash” back in March of 2020. Though none of the protocols mentioned in Cyrus’ tweet have suffered massive losses of user funds - yet. Unfortunately, there is simply no way to guarantee that a piece of software is 100% bug free no matter how many audits or eyeballs it has had on it. The most that developers can strive for when building software is to follow general best practices and try to keep the code as simple as possible as complexity is quite literally the enemy of security. Obviously as time goes on security practices get better, auditors get more skilled, protocols become more battle-hardened and user protections mature but while we’re in the pioneer/early adopter phase, we should all strive to keep users informed about the risks of using these protocols. There are other ways that developers can protect users early on during the product life-cycle. The concept of a “guarded launch” has become quite popular recently where developers can have hard caps on the amount of money that can flow into the protocol or they can have some sort of centralized controls in case of an exploit. On top of that, there are protocols that have built-in “insurance” mechanisms so that if an exploit was to happen, some or all of the user funds could be paid back. Maker is famous for this as the protocol will print more MKR tokens in order to cover any shortfall which is exactly what it successfully did in March of 2020. And on the topic of insurance - there are numerous protocols like Nexus Mutual that allow users to take out cover on their deposits in various DeFi protocols. In saying all of the above, I think that most users of DeFi still vastly underestimate just how risky a lot of the newer products are and think that they are safe just because the protocol has had an audit or two. Well, this couldn’t be further from the truth - there have been plenty of protocols that have gone through multiple rounds of audits only to get exploited shortly after. So given this context, I believe that users need to take security much more seriously than they currently do if they want to stay safe in the DeFi ecosystem over the long run. It’s all fun and games “aping” 5% of a portfolio into some ponzi yield farm, but when it comes to actually putting most of a portfolio to work there needs to be a risk framework that an individual uses to protect themselves. If they just stuff their entire portfolio into a brand new DeFi protocol, there is a high chance that they could lose some or all of their money - it’s just not worth it - even for some crazy yields. Though of course, I understand that if one has a gambling/degen mentality then risk is the last thing they are thinking about. I think ultimately a lot of this stuff is going to fall on the interfaces that users interact with. There could be warning labels and curated lists of “safe” protocols that the interfaces show users so that they don’t fall prey to scams and don’t put their life savings into a protocol assuming it’s safe. This may be an unpopular opinion, but I do believe that as long as the risks are presented to the user and they understand them then anything that happens from there is their own responsibility. For the users who don’t want to do any of this stuff on their own, they’ll most likely just use centralized custodial services to access things like DeFi - and I think this is totally fine. Have a great day everyone, Enjoyed today’s piece? I send out a fresh one every week day - be sure to subscribe to receive it in your inbox! Join the Daily Gwei EcosystemAll information presented above is for educational purposes only and should not be taken as investment advice. If you liked this post from The Daily Gwei, why not share it? |
Older messages
The People's Network - The Daily Gwei #365
Wednesday, October 27, 2021
All are welcome on Ethereum.
Taking It Slow - The Daily Gwei #364
Tuesday, October 26, 2021
Always be playing long-term games.
Ideologically Inclined - The Daily Gwei #363
Monday, October 25, 2021
Ideology and tribalism don't have to be toxic.
Real Passion - The Daily Gwei #362
Friday, October 22, 2021
You can't buy it, can't fake it and you can't inherit it - it must come from the soul.
Going Up - The Daily Gwei #361
Thursday, October 21, 2021
All time high has been hit, but have we *earned* it?
You Might Also Like
El Salvador defies IMF, continues Bitcoin purchases amid market downtrend
Monday, March 10, 2025
El Salvador's Bitcoin holdings grow to $504 million, challenging IMF directives amid sharp price declines. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
🖊️ Trump signed an Executive Order for a US Strategic Bitcoin Reserve; Cronos proposed to reissue 70 billion CRO …
Monday, March 10, 2025
Trump signed an Executive Order for a US Strategic Bitcoin Reserve; Cronos proposed to reissue 70 billion CRO for a Cronos Strategic Reserve; Texas's Senate passed bitcoin reserve bill SB-21 ͏ ͏ ͏
Vitalik TAKO AMA: ETH Positioning, Sequencer Centralization, L1 vs L2, Governance, and Success Metrics
Monday, March 10, 2025
On the evening of February 19th at 12 PM UTC and lasting until 12 PM UTC on February 20th, Vitalik Buterin, the founder of Ethereum, was invited to participate in a flash text interview on Tako (a
Donald Trump Creates U.S. Bitcoin Reserve
Monday, March 10, 2025
March 10th, 2025 Sign Up Your Weekly Update On All Things Crypto TL;DR Donald Trump Creates US Bitcoin Reserve Diddy Shows 'Kindness' To Sam Bankman-Fried Robinhood Conducts $1M Crypto Trivia
Bitcoin’s realized volatility surges in as traders face extreme price swings
Sunday, March 9, 2025
Volatility clustering in Bitcoin reveals the impact of turbulent rallies and sharp pullbacks. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
Asia's weekly TOP10 crypto news (Mar 3 to Mar 9)
Sunday, March 9, 2025
Ms. Sun Xueling, Minister of State, Ministry of Home Affairs of Singapore, said that cryptocurrency fraud cases accounted for a quarter of the total loss amount involved in fraud last year. ͏ ͏ ͏ ͏ ͏ ͏
Trump declares end to ‘war on crypto,’ vows to propel America to Bitcoin supremacy
Saturday, March 8, 2025
Trump brands the Biden era as a crypto setback, .President Trump vows to make America the Bitcoin leader, ending Operation Chokepoint 2.0 and bolstering crypto strategies. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
⚡ incentive → click → sale
Saturday, March 8, 2025
PLUS: the best links, events, and jokes of the week → ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
Weekly Project Updates: World Network Launches Chat Feature, Zora Set to Introduce Its Native Token, and Trump Ann…
Saturday, March 8, 2025
Sam Altman's blockchain project, World Network, has launched World Chat, a “mini-app” integrated into the World App wallet. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
Treasury Secretary Scott Bessent hints at future US Bitcoin reserve acquisition plans
Friday, March 7, 2025
Federal government considers expanding Bitcoin holdings without taxpayer funds; official discussions underway in Washington. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏