Snow::changeCollector can only be called by the collector, the admin cannot do any emergency change to the collector role if the collector address are compromised
Likelihood:
Low: the possibility of this to happened is certainly low, as it only happened when the collector role get hacked
Impact:
High: all the fee of the protocol would be stolen
Giving permission of changing collector role to the owner, reducing loss even if the collector get hacked.
The contest is live. Earn rewards by submitting a finding.
Submissions are being reviewed by our AI judge. Results will be available in a few minutes.
View all submissionsThe contest is complete and the rewards are being distributed.