Security Alert: DEX Protocol Ekubo EVM On-Chain Transaction Routing Contract Vulnerability
BlockBeats News, May 6th, the Starknet ecosystem DEX protocol Ekubo issued a security , pointing out a security vulnerability in its EVM chain's transaction routing contract. Liquidity providers and users on Starknet are not affected. The impact is currently under investigation. All users are advised to immediately revoke relevant contract authorizations.
In addition, the founder of SlowMist, Cai Yunge, stated that the Ekubo attacker, through the payCallback mechanism, designated users who had previously granted unlimited token approval to the contract as the payer. This allowed them to call the transferFrom function of WBTC to move the victim's assets. The attacker executed a total of 85 operations, each involving 0.2 WBTC. User 0x765DEC suffered a cumulative loss of 17 WBTC.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
UBS: ASML's capacity expansion targets may have room for upward adjustment
VECT names Lee Soo-yeon as CEO, replacing Yoo Chang-soo
Inventiva H1 Loss Narrows
