Yuga Labs Developer: Super Sushi Samurai's LP Lost 1,310 ETH in an Attack
According to a post by Yuga Labs developer Coffee, the LP of the Telegram game Super Sushi Samurai has been attacked on Blast, and there is a loophole in the token contract that doubles the funds by transferring all the funds to itself. The order of operation is to decrement the FROM balance, then set the TO balance, and if the two addresses are the same, the toBalance does not consider the AMOUNT decrement and overwrites the balance with the initial balance and the transferred balance. The attacker doubled the funds through several cycles and sold them all, obtaining 1,310 ETH from the LP. In addition, according to CertiK monitoring, Super Sushi Samurai lost about $4.6 million.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Decentralized RWA infrastructure project Infinite Galaxy Protocol officially launches Genesis Node sale
HyperLiquid co-founder: No external fundraising has been conducted, so there are no investor HYPE token unlocks
Santiment: Stablecoin yields decline, Ethereum may soon return to the $3,200 level
Data: Ethereum staking rate reaches 28.65%, Lido market share at 24.12%