PANews reported on January 20th that, according to a BlockSec alert, the SynapLogic contract lacked critical parameter validation in the `swapExactTokensForETHSupportingFeeOnTransferTokens` function, allowing attackers to manipulate the "whitelist" logic and specify arbitrary payout addresses. Furthermore, the contract failed to verify whether the total amount of native tokens distributed exceeded the actual payments, enabling attackers to withdraw excessive amounts of native tokens while simultaneously obtaining newly minted SYP, resulting in a loss of approximately $186,000.
Security agency: SynapLogic contract attacked, resulting in losses of approximately $186,000.
Share to:
Author: PA一线
This content is for informational purposes only and does not constitute investment advice.
Follow PANews official accounts, navigate bull and bear markets together
Recommended Reading
