Low | Medium | High | Critical | Total | |
---|---|---|---|---|---|
Not fixed | - | 1 | 1 | - | 2 |
Fixed | - | - | - | - | 0 |
Total | 0 | 1 | 1 | 0 | 2 |
Click to show description
Quick Summary Melody project was exploited for 2225 $BNB. The hacker was able to withdraw $SNS tokens using an off-chain vulnerability. Details of the Exploit Melody is a GameFi and SocialFi project providing passive income opportunities to creative people. The project's signature check function was exploited by the attacker, which gained $SNS tokens and swapped them for 2225 $BNB. All the stolen amount was sent to another EOA address. Block Data Reference Attacker addresses: https://bscscan.com/address/0xa3793ccb57fddaedd4edcbd4ca515876057e43a0 https://bscscan.com/address/0x7ce402b6753589965ae152971f7d7010bf25408a https://bscscan.com/address/0x1e091ae02f932be50088cc2e6ac9ca841ecebdb7 Malicious transactions: https://bscscan.com/tx/0x7fd61155cc33cf52e107980f31c1e198766709d8fa75f6e48230af82ec9dea8f https://bscscan.com/tx/0xe10c76cb5da111ea71a085cb08775d9b1824eeafa96fcf4a20aaa7c3c4b59e83