-
The withdraw() function is vulnerable to reentrancy. This is because the function updates the user's balance and total supply before transferring the tokens to the user. If an attacker can reenter the…
-
# Lines of code
https://github.com/Tapioca-DAO/tapioca-periph/blob/032396f701be935b04a7e5cf3cb40a0136259dbc/contracts/Magnetar/Magnetar.sol#L199-L212
https://github.com/Tapioca-DAO/tapioca-periph/blo…
-
Not too sure about when exactly this happens but i think there is a bug where you need to retarget tunnels when they are rebuilding after being hole-moded.
--> After ordering your units to attack t…
-
### Area
Malware reports
### Parent threat
Initial Access, Credential Access, Impact
### Finding
https://www.microsoft.com/security/blog/2022/05/19/rise-in-xorddos-a-deeper-look-at-the-…
-
**Github username:** @0xmahdirostami
**Twitter username:** 0xmahdirostami
**Submission hash (on-chain):** 0x29c81863c2d782c4373e7f4dac5a9de857ddd4d97d87afe2878f3d74849cdeff
**Severity:** high
**Desc…
-
# Lines of code
https://github.com/code-423n4/2022-06-nibbl/blob/8c3dbd6adf350f35c58b31723d42117765644110/contracts/Basket.sol#L41-L47
https://github.com/code-423n4/2022-06-nibbl/blob/8c3dbd6adf350f3…
-
# Lines of code
https://github.com/code-423n4/2022-03-lifinance/blob/main/src/Facets/AnyswapFacet.sol#L35-L53
# Vulnerability details
## Impact
In `AnyswapFacet.sol` we parse arbitrary data in `_…
-
We need to plan the experiments and figure out which attack types we think are realistically doable, while also being relevant to our research
For normal, we can include traffic such as:
- Globus …
-
**Github username:** @0xmahdirostami
**Twitter username:** 0xmahdirostami
**Submission hash (on-chain):** 0x454cd2e078911ec27a4a53cd3214aa3ec4dbee5383550afa303488ded31d78a8
**Severity:** low
**Descr…
-
1. Protects against zip bombs
2. Protects against malicious executable
3. Protects against suspicious files (ex: phishing, attacks)
4. Produces README with debugging information
5. Protects agains…