Beginner FriendlyFoundryNFT
100 EXP
View results
Submission Details
Severity: medium
Invalid

Malicious users can mint and battle their own NFTs to win more

Description

The smart contract presents a vulnerability where a malicious user can mint multiple rapper NFTs, place matching bet to ensure guaranteed wins by pitting their own NFTs against each other.

Impact

The vulnerability enables malicious users to manipulate the system, leading to unfair advantages and potential disruption of a potential leaderboard mechanism. By minting multiple rapper NFTs and orchestrating matches between them, the malicious user can perpetually secure victories, distorting the integrity of the platform.

Tools Used

Manual Review

Recommended Mitigation

Randomized Matchmaking: Introduce a randomized matchmaking system to ensure fairness and unpredictability in NFT battles, minimizing the potential for orchestrated victories.

Updates

Lead Judging Commences

inallhonesty Lead Judge almost 2 years ago
Submission Judgement Published
Invalidated
Reason: Design choice
ebok21 Submitter
almost 2 years ago
inallhonesty Lead Judge
almost 2 years ago
inallhonesty Lead Judge almost 2 years ago
Submission Judgement Published
Invalidated
Reason: Design choice

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.

Give us feedback!