According to the documentation, only gang members and the godfather are authorized to transfer crime money. However, there is a critical flaw in the implementation that allows external users to receive and transfer crime money
Function: Crime Money Transfer Functions
Issue: Unauthorized Access
The current implementation does not restrict crime money transfers exclusively to gang members and the godfather.
External users are able to receive and transfer crime money, contrary to the documented permissions.
Unauthorized Transactions: Unauthorized users can engage in crime money transactions, which may lead to misuse or theft of funds.
Manual Review
Implement Access Control: Ensure that only gang members and the godfather can transfer crime money by implementing proper access control mechanisms.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.