LienFinance was attacked due to a code vulnerability, with losses of $542k

robot
Abstract generation in progress

PANews July 24, according to SlowMist monitoring, Lien Finance suffered an attack that resulted in losses of about $542k due to missing multi-set completeness checks in the exchangeEquivalentBonds function in the BondMakerCollateralizedEth contract. The attacker drained abnormal counts by repeatedly reusing a single exception bondID, hiding missing input anomalies, and minted new non-exception BondTokens without destroying the corresponding input bonds, then sold them for USDC, stealing funds from the victim’s pre-authorized addresses.

USDC0.00%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned