Cross-chain signature reuse enables unauthorized NFT claims.
Normal Behavior: Signatures should be chain-specific
Issue: Signature hash excludes chain ID, making signatures valid on all EVM chains
Likelihood:
Exploitable when protocol deploys to multiple chains
Attackers can use mainnet signatures on testnets/L2s
Impact:
NFT supply drain through cross-chain replays
Unauthorized free minting of valuable assets
Explanation: Signatures remain valid across chains due to missing chain ID in hash.
Explanation: Incorporates chain ID into signature hash to prevent cross-chain replays.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.