DIP Token Contract Attacked, Suffering $110,000 in Losses Due to Missing Return Statement

CAKE-0.76%
According to Foresight News and Slow Mist monitoring, DIP token contract was attacked, resulting in approximately $110,000 in losses. The vulnerability stemmed from a missing return statement in the _transfer() function's routing branch. When the from or to address matched the PancakeSwap router contract, the same transaction was executed twice, allowing attackers to manipulate the liquidity pool price. The attacker's contract has been verified and publicly disclosed on BscScan.
Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
No comments