Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Collapse
Brand Logo
UDS UDS: $1.5927
24h: -0.13%
Trade UDS
Gate.io
Gate.io
UDS / USDT
KuCoin
KuCoin
UDS / USDT
MEXC
MEXC
UDS / USDT
BingX
BingX
UDS / USDT
BitMart
BitMart
UDS / USDT
LBank
LBank
UDS / USDT
XT.COM
XT.COM
UDS / USDT
Uniswap v3
Uniswap v3
UDS / USDT
Biconomy.com
Biconomy.com
UDS / USDT
WEEX
WEEX
UDS / USDT
PancakeSwap v3
PancakeSwap v3
UDS / USDT
Pionex
Pionex
UDS / USDT
COINSTORE
COINSTORE
UDS / USDT
Sushiswap v3
Sushiswap v3
UDS / USDT
Picol
Picol
UDS / USDT

Earn up to 50 UDS per post

Post in Forum to earn rewards!

Learn more
UDS Right

Spin your Wheel of Fortune!

Earn or purchase spins to test your luck. Spin the Wheel of Fortune and win amazing prizes!

Spin now
Wheel of Fortune
selector
wheel
Spin

Paired Staking

Stake $UDS
APR icon Earn up to 50% APR
NFT icon Boost earnings with NFTs
Earn icon Play, HODL & earn more
Stake $UDS
Stake $UDS
UDS Left

Buy UDS!

Buy UDS with popular exchanges! Make purchases and claim rewards!

Buy UDS
UDS Right

INFLUENCER LEVEL

Based on the number of subscribers

MULTIPLIER

up to 10k

x1.1

10-25k

x1.25

25-100k

x1.5

100k-250k

x2

250k-1m

x3

1m+

x5

Post links to Undeads Forum messages or Undeads products to receive additional rewards

Post limits and staking coefficients applied similar to Forum posts

Discord, Telegram, Twiter

Post in Forum to earn rewards!

UDS Rewards
  1. Home
  2. Pulse of the market
  3. Polymarket Dismisses Data Breach Claims Saying the Exposed Information Is Publicly Available by Design

Polymarket Dismisses Data Breach Claims Saying the Exposed Information Is Publicly Available by Design

Scheduled Pinned Locked Moved Pulse of the market
2 Posts 2 Posters 2 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
This topic has been deleted. Only users with topic management privileges can see it.
  • edE Offline
    edE Offline
    ed
    wrote last edited by
    #1

    b558129f-9915-421b-bde8-fbf8a9581986-image.png

    Polymarket has pushed back against claims of a data breach after a threat actor known as xorcat posted approximately 300,000 records on a cybercrime forum, including user profiles, market data, comments, and alleged proof-of-concept exploit code. The platform responded within hours, stating that all data flagged in the post is either auditable on-chain or accessible through its documented public API endpoints. The company described the situation as a feature rather than a vulnerability, pointing to the transparent nature of on-chain infrastructure where market activity is publicly visible by design. Polymarket also directed users to its API documentation, noting that researchers can access the same information for free without purchasing anything from a forum seller.

    The forum post advertised a 750 MB package containing roughly 10,000 user profiles, 4,111 comments, 48,536 markets from Polymarket's Gamma API, and more than 250,000 active markets from its CLOB API, along with follower lists and internal user identifiers. The actor also claimed to have bundled proof-of-concept exploits covering an Axios proxy bypass, a CORS misconfiguration on the CLOB API, a Next.js middleware authentication bypass, and a pagination flaw allowing unlimited query sizes. Polymarket separately rebutted the claim that it has no bug bounty program, pointing to its $5 million program hosted with Cantina, while clarifying that scraping public API endpoints does not qualify for rewards. Eligible submissions are limited to verified vulnerabilities affecting funds, contracts, or genuinely private user data.

    1 Reply Last reply
    0
    • tradelikeproT Offline
      tradelikeproT Offline
      tradelikepro
      wrote last edited by
      #2

      The threat actor bundled CORS misconfigurations with public API data and Polymarket responded by pointing to the API documentation, one of these responses addresses the actual concern.

      1 Reply Last reply
      0


      • Login or register to search.
      Powered by NodeBB Contributors
      • First post
        Last post
      0
      • Categories
      • Recent
      • Tags
      • Popular
      • World
      • Users
      • Groups