Weak Source of Randomness
The randomness used is insecure ways of generating randomness due to deterministic nature of the blockchain especially the one that uses block.timestamp easily playable and influenced by miners
If resorting to latests versions Solidity since Proof Of Stae block.difficulty does not make sense anymore can only use e.g block.prevrandao
Randomness can be manipulated by especially miners to ensure the resulting index is their index corresponding to their address. Manipulators can ensure they always win and always get their desired rarity and so make the raffle which is supposed to give everyone fair chances an unfair curve
Manual Analysis
Make use of Chainlink VRF, external sources randomness, RANDAO or any other scheme that cant be manipulate by users or miners to ensure fair outcomes
Root cause: bad RNG Impact: manipulate winner
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.