Prefer Koin Bülteni on Google Add as source

How Did an Attacker Bypass Authorization to Steal 114 ETH from Two Wallets Using an Aave-Linked Vulnerability?

SlowMist reported that exploiting a vulnerability in the Aave v3 Loop Safe module led to the theft of approximately 114.09 ETH from two multisig wallets.

An access control vulnerability in the `open()` and `close()` functions of the FlashLoopAdapter component allowed the attacker to bypass Safe wallet approvals and execute any transaction modules they wanted.

The attacker repaid approximately 1,300 WETH in debt to release the collateral.

Tüm gelişmelerden ve paylaşımlardan haberdar olmak için Telegram kanalımıza katılın!