The daily claim counter reset mechanism is fundamentally flawed in its execution order. The reset occurs in the middle of the claim processing, after initial checks but before state updates and token transfers. This creates a window where the daily limit can be bypassed, especially when multiple claims occur near the daily boundary.
Impact:
Daily Limit Bypass: Users can exceed daily claim limits by timing transactions around reset boundaries
Economic Exploitation: More tokens than intended can be distributed daily
Unfair Distribution: Early claimers near reset boundaries get preferential access
Contract Drainage: Accelerated token distribution beyond designed limits
Proof of Concept:
Recommended Mitigation:
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.