Description: Miners or validators can manipulate the timestamp (around 15 seconds), allowing them to execute transactions at advantageous times,
potentially leading to unfavorable outcomes for players.
Because the minimum reveal time is set to 5 minutes, miners can manipulate the block timestamp to push it past the deadline, causing the player to fail the reveal.
Impact: This can directly affect the game outcome, if your opponent is a miner, they can manipulate the block timestamp to take advantage.
Recommended Mitigation: Use block.number
instead of block.timestamp
for setting deadlines.
Code suggestions or observations that do not pose a direct security risk.
Code suggestions or observations that do not pose a direct security risk.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.