注册并分享邀请链接,可获得视频播放与邀请奖励。

SlowMist (@SlowMist_Team) “🚨SlowMist TI Alert🚨 💸 Loss: 85,519.47 USDT 🔍 Root Cause: The `cliamRewred` f” — TopicDigg

SlowMist 的个人资料封面
SlowMist 的头像
SlowMist
@SlowMist_Team
SlowMist is a Blockchain security firm established in 2018, providing services such as security audits, security consultants, red teaming, and more.
加入 April 2018
406 正在关注    88.6K 粉丝
🚨SlowMist TI Alert🚨 💸 Loss: 85,519.47 USDT 🔍 Root Cause: The `cliamRewred` function in `LegendaryMoneyMonNft` allows arbitrary reward claiming. The only authorization depends on `verify()` which checks `recoverSigner(...) == admin`. `recoverSigner` does not validate `ecrecover` returning `address(0)`, and `changeadmin()` allows setting admin to zero address. The attacker used an invalid signature (r=0, s=0, v=27) which returns `address(0)` from `ecrecover`, passing the check because `admin` was zero address at that moment. 📌 Attacker: 0xe1582248c593df4b367e131922438fec9d76e787 📌 Victim Contract: 0x92d60629ff5d53a0098b51e9b1d59546d1d8e5b6 📌 Vulnerable Contract: 0x92d60629ff5d53a0098b51e9b1d59546d1d8e5b6 The attacker exploited the zero-address signature bypass to drain all tokens from the contract and swapped them for USDT via PancakeSwap. Powered by #SlowMist#.AI
显示更多
0
1
64
19
转发到社区