Three new queries approved.
@0xangky lags liquidation executed without health factor validation, allowing unsafe position closures.
@kodyvim_ flags contract logic that updates state via memory copy, creating silent data corruption risks.
@baptonic3 flags missing message origin validation in LayerZero V2 LZCompose, enabling cross-chain message spoofing.
Queries below:
@phil_uplc@bangjelkoski@injective It's quite laughable for a protocol to say the exploit would be rate limited with users funds at risk. It's shows that some of this protocols acts in bad faith and negligence.
@Manassacl5o@Inghams85@BorgFella420@WarMonitor3 Yes not to mention seizing Russian linked shadow fleet vessels which no other admin had the balls to do. Also asking Europe to tighten and enforce the sanctions and pressuring India to stop buying Russian oil. The list can go on. Don't know some ppl can be this ungrateful.
Found a vuln in a BSC voting contract
(0xC06e39FdC14DbBcdDdDB72cE5903f359D89b9813 โ HftVote)
Spotted using @xyz_remedyโs Glider during the contest.
Core flaw: live balance voting
flash loans = manipulated voting power
token transfers = double voting
๐
Glider tore through on-chain data in seconds and flagged it instantly.
Massive for spotting vulnerabilities across chain or deployments.
Huge props to the @xyz_remedy team for building such a powerful free tool for researchers.
@Haydar187 @AliB23476239 @Currentreport1 Am not underestimating Iranian missiles am just saying is not smooth sailing launching ballistic missiles from Iran to Ukraine. Would you take the risk of having a missile fly over your head before reaching your neighbor.
@mskategirl@hilalove_x@VividProwess@nypost Stop trying to be funny, iron dome have a success rate of over 90% not 100% if he said it intercepted almost all and did it's job perfectly. He's right.