Rock Paper Scissors

First Flight #38
Beginner FriendlySolidity
100 EXP
View results
Submission Details
Severity: high
Invalid

Signature Malleability in Token Transfers

Summary: Missing nonce validation in token transfers allows replay attacks.

Details: The joinGameWithToken() and other token functions don't validate transfer nonces, allowing malicious users to replay token transfers.

Impact: Could result in duplicate token transfers and game state corruption.

Recommendation: Add nonce tracking:

Updates

Appeal created

m3dython Lead Judge 7 months ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.