$85 million ‘Meebits’ NFT project exploited; attacker nabs $700,000 collectible

$85 million ‘Meebits’ NFT project exploited; attacker nabs $700,000 collectible

Legendary NFT developers Larva Labs were the victims of an exploit this morning, as an attacker found a way to mint a rare NFT worth over $700,000 from the “Meebits” collection. 

The attacker, 0xNietzsche, teased the exploit on Twitter this morning, saying he anticipated making “$300,000 per hour” throughout the duration of the attack. He has since deleted the Tweets, saying that they came off as “douchey.”

Our top trading bots

His attack essentially centered on “rerolling” his Meebit mints until the contract gave him one he wanted. The Meebits contract includes a zipped Interplanetary File System file, one which reveals the characteristics of each Meebit’s ID. The IDs of the remaining Meebits are public knowledge, but until knowledge of the IPFS leak spread, their characteristics were not. As a result, 0xNietzsche simply needed to make a list of desirable IDs, and design a contract that minted Meebits over and over, but cancelled the transaction if he didn’t get a favorable ID. 

An Etherscan address shows 345 total transactions, hundreds of which are failed “rolls” to obtain desirable Meebits. The only successful roll appears to be for Meebit 16647, a “visitor” or alien. 16647 was bought by the collector-whale Pranksy for 200 ETH. Per Opensea, the next lowest-price Visitor Meebit is listed for 300 ETH.

In a pinned post in their Discord, Larva Labs announced that they have since shut down the marketplace.

“We have temporarily paused community minting and trading in the Meebits contract. The contract is safe, all Meebits are safe, and trading is working just fine,” the announcement reads in part.

While the Meebits minting period was scheduled to conclude on Monday, some CryptoPunk and Authglyphs owners (each of whom are entitled to a Meebit on a one-to-one basis) may not have redeemed theirs yet. As a result, the Larva Labs team plans to “provide a form where you can use your wallet to sign a message that proves ownership of your punks/glyphs, and we’ll mint the Meebits for you using the ‘devMint’ function,” allowing users to continue to mint through the weekend while preventing others from utilizing the exploit.

By 0xNietzsche’s own estimations, his exploit could have been far more successful. Per posts in the Discord, given the length of the attack before the market shutdown he felt he “should've gotten two meebs in that time.” He also noted that his contract cost “~$20k an hour in gas fees” and that he had to purchase punks with unredeemed Meebits in order for the exploit to work, meaning his total haul was reduced due to associated costs:

In a now-deleted Tweet, he said he raked in “50 ETH and 5 floor punks” from the exploit.

An anonymous source told Cointelegraph that other NFT collectors were aware of the attack vector, but did not choose to exploit it as they felt it would be “unethical.” Tweets from yesterday indicate that others were indeed aware of the IPFS leak and had identified the rarest remaining Meebit, 10761, a “dissected,” which was among 0xNietzsche's targets. 

The community is currently publicly debating what this will mean for prices across the Meebits and wider Larva Labs space. Many believe that the exploit could, paradoxically, increase floor prices for the projects due to “narrative.”

Historical significance can play a major role in the price of NFTs. Earlier this year, digital archeologists uncovered “Mooncats,” thought by many to be the second-ever NFT project, leading to a temporary buying frenzy. 0xNietzsche himself is a Mooncats enthusiast.

Continue reading about Cointelegraph
Bitcoin's got 3 strikes, but investors remain calm despite price drop
After Bitcoin (BTC) faced its third consecutive rejection, investors became more confident in adding altcoin positions. For the leading cryptocurrency,...
Front-running, flash bots and keeping things fair in the crypto market
Decentralized finance (DeFi) has the opportunity to democratize access to financial markets that have typically only been open to the rich and powerful....
Bitcoin stays higher after stocks propel BTC price toward $42K
Bitcoin (BTC) held above $41,000 into the weekend after a late surge Friday took the largest cryptocurrency to two-week highs.BTC/USD 1-day candle chart...
Altcoin Roundup: Cross-chain bridge tokens moon as crypto shifts toward interoperability
Interoperability is shaping up to be one of the main themes for the cryptocurrency market in 2022 as projects across the ecosystem unveil integrations that...
Analysts say Bitcoin’s bounce at $36K means 'it’s time to start thinking about a bottom'
Bears remain in full control of the cryptocurrency market on Jan. 24 and to the shock of many, they managed to pound the price of Bitcoin (BTC) to a multi-month...
Hedera Governing Council to buy hashgraph IP, and open-source projects code
The Hedera Governing Council has officially voted to purchase the intellectual property rights to the hashgraph consensus algorithm from founding architect...
‘Dip,’ ‘Buy’ and ‘Fed’ top trending topics on social media, per survey
Over the past seven days, the top trending words on cryptocurrency social media are “dip,” “buy” and “Fed.” Plus, the word “sell” fell out of the top 10...
Kosovar government halts crypto mining amid power crisis
The government of Kosovo has ceased crypto mining in the country owing to power constraints during the winter season.Kosovo's Minister of Economy, Artane...
Hot July at Christie’s: Over $93M in NFT sales and Art+Tech Summit 2021
Christie’s upscale building located in New York City’s Rockefeller Center, Midtown Manhattan. The organizers were exhibiting a 3D frame, which allows a...
Crypto derivatives exchange Bitget to list USDC as collateral for margin trading
Derivatives exchange Bitget is set to become one of the first exchanges to list USD Coin (USDC) as collateral for trading crypto derivatives.The development...
Proposed bill in Iran could ban all foreign-mined cryptocurrencies
A new bill drafted by the Iranian Parliament Commission on Economy aims to restrict the use of cryptocurrencies within the country while providing a clearer...
Crypto firms not meeting AML standards, says UK minister
Cryptocurrency businesses in the United Kingdom have been struggling to meet Anti-Money Laundering standards set by the Financial Conduct Authority, according...
PlanB speculates that BTC price fall doesn't mean the end
Bitcoin’s (BTC) price has declined over the past day or so, falling from highs above $60,000 to below $50,000. That, however, does not necessarily mean...
Scaramucci surprised at lack of banking response to Coinbase listing
After much anticipation, Coinbase listed on the Nasdaq on Wednesday via a direct listing. Skybridge founder Anthony Scaramucci thinks the event should have...
From Citizenship to Data: Trump’s Former Aide Says Cryptos Will Make People Freer
The instigator of right-wing populist groups as well as the former adviser to the current US President Donald Trump – Steve Bannon – has claimed that cyber...