LLMOracleCoordinator.sol contract's validation system is vulnerable to manipulation through multiple account control by a single actor. Due to the lack of a slashing mechanism and permissionless registration, an actor can register multiple validator accounts to manipulate response scoring, allowing them to unfairly earn generator and validator fees while preventing legitimate participants from receiving rewards.register https://github.com/Cyfrin/2024-10-swan-dria/blob/main/contracts/llm/LLMOracleRegistry.sol#L94respond https://github.com/Cyfrin/2024-10-swan-dria/blob/main/contracts/llm/LLMOracleCoordinator.sol#L207validateto manipulate the scores
unregister https://github.com/Cyfrin/2024-10-swan-dria/blob/main/contracts/llm/LLMOracleRegistry.sol#L117
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.