First Flight #16: Mafia Takedown

Beginner FriendlyDeFiFoundry
100 EXP
Submission Details
Severity: high
Valid

[H-2] An attacker can steal the funds of other users by depositing their tokens into the protocol on behalf of his account, if the victim approved the `moneyShelf` contract for deposits.

Updates

Lead Judging Commences

n0kto Lead Judge 4 months ago
Submission Judgement Published
Validated
Assigned finding tags:

Arbitrary account deposit, steal approval

Support

FAQs

Can’t find an answer? Join our Discord or follow us on Twitter.