Low | Medium | High | Critical | Total | |
---|---|---|---|---|---|
Not fixed | 1 | - | - | - | 1 |
Fixed | 4 | - | - | - | 4 |
Total | 5 | 0 | 0 | 0 | 5 |
Click to show description
Quick Summary FTX was exploited due to gas limit vulnerability which caused mint of $XEN tokens at zero cost. Details of the Exploit FTX is a centralized crypto exchange. FTX provides an opportunity for performing fee-free withdrawals. The hacker deployed a smart contract with unverified source code to exploit the vulnerability and was able to mint $XEN tokens with zero cost 17,000 times. FTX lost roughly 81 $ETH due to gas stealing, and 61 $ETH worth of $XEN tokens were minted and swapped through UniSwap. The price of the $XEN token dropped by 33% after an incident. Block Data Reference Attacker address: https://etherscan.io/address/0x6b01f9f457a0fd978d69cf317987e81c86b9b831 Malicious contracts: https://etherscan.io/address/0x6438162e69037c452e8af5d6ae70db1515324a3d https://etherscan.io/address/0x56af41c4b3bdf6aeafcb9872e8ca31fd093dcf45 Malicious transaction: https://etherscan.io/tx/0xfb1a7b359d439548c120d006d535e6fde6578489f4da78acc60e3a1711e3107d
# | Name | Auditor | Date | Chains | Issues |
---|---|---|---|---|---|
1 | XEN Crypto - Audit | CertiK | 2022/10/03 | Off-Chain (Private) | No active critical issues |