DeFiHardhat
21,000 USDC
View results
Submission Details
Severity: medium
Invalid

Relying on the lastoraclesnapshot within the twaDeltaB function is a mistake

Description:

Relying on the most recent snapshot data makes the TWAdB calculation more susceptible to manipulation through strategic deposits/withdrawals right before a capture event.A single snapshot only captures a specific point in time. It might not accurately reflect the overall behavior of the Well over a longer timeframe, especially if prices are volatile.

Actors might attempt to manipulate the TWAdB in their favor by strategically depositing or withdrawing tokens from a Well right before a capture event. This manipulation is more likely to be successful with:

Short capture intervals.
Highly volatile Well token ratios.
Simple TWAdB calculations relying solely on the latest snapshot data.
A successful manipulation could lead to an inaccurate TWAdB, potentially impacting various functionalities within the protocol.

Impact:

A successful manipulation could lead to an inaccurate TWAdB, potentially impacting various functionalities within the protocol, such as:

Disrupted rewards distribution for Wells.
Skewed Well performance evaluation, leading to unfair advantages for manipulative actors.

Updates

Lead Judging Commences

giovannidisiena Lead Judge about 1 year ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.