We disclosed a critical bug to Harvest Finance. The contracts in scope held a total of $6.4M in Uniswap V3 positions. The attack was found by an automated analysis that attempted to generalize the elements of the OpenZeppelin UUPS uninitialized implementation vulnerability.
1 min read
Harvest Finance Vulnerability | $200k Bounty
We disclosed a critical bug to Harvest Finance. The contracts in scope held a total of $6.4M in Uniswap V3 positions. The attack was found by an auto...
security
Related Articles
13 min read
“look Ma’, No Source!” Hacking a Defi Service With No Source Code Available
By the Dedaub team This story describes a cool hack, for over $300K (even nearly $600K, if done at …
5 min read
Ethainter: A Smart Contract Security Analyzer for Composite Vulnerabilities
Lexi Brent∗ Int’l Computer Science Institute Berkeley, CA, USA lexi@icsi.berkeley.edu Neville Grech …
7 min read
Rising Gas Prices Are Threatening Our Security (No, It’s Not the Saudi Attack)
Mr. Out of gas exception EIP 1884 is set to be implemented into the upcoming Ethereum ‘Istanbul’ …