Low | Medium | High | Critical | Total | |
---|---|---|---|---|---|
Not fixed | 5 | - | - | - | 5 |
Fixed | - | - | - | - | 0 |
Total | 5 | 0 | 0 | 0 | 5 |
Click to show description
The transaction behind the attack: https://bscscan.com/tx/0x7e2a6ec08464e8e0118368cb933dc64ed9ce36445ecf9c49cacb970ea78531d2 The hacker made a flash loan of 10,000 BNB and purchased 202 trillion SURGEs, next sell() 202 trillion SURGEs within reentrancy to purchase(), where the price is calculated before updating _totalSupply to a smaller one, thus gaining more SURGEs. The hacker exploited five times in five different transactions and gained 13,112 BNBs in total (with ~$5.57M). The funds were transferred to Ethereum via Binance Bridge.
# | Name | Auditor | Date | Chains | Issues |
---|---|---|---|---|---|
1 | Xsurge | SolidProof | 12/05/2022 | BNB Chain | No active critical issues |
2 | Xsurge | SolidProof | 06/05/2022 | BNB Chain | No active critical issues |
3 | XSURGE | SolidProof | 29/03/2022 | Off-Chain (Private) | No active critical issues |
4 | SurgeUseless | CertiK | 24/02/2022 | BNB Chain | No active critical issues |