.@TokensoftInc just doxed the KYC of about 5k users - full names, wallet addresses, and IRL addresses - because they believe they are "bad actors" gaming airdrops.
Even if they are gaming airdrops, you should never dox your users. wtf is wrong with these guys?
cc @tier10k
ah yes initOwner(me), woah no error this must be exploitable. thatโs right there isnโt a fallback function you just need to keep trying diff selectors ๐