Beosin Trace: TIME token was attacked, hackers made about $188,000
Beosin EagleEye security risk monitoring, warning and blocking platform under Beosin detected an attack on the TIME token, with hackers profiting about $188,000. Beosin security team analyzed that the hacker exploited a contract vulnerability to destroy the TIME token in the TIME-ETH trading pair, thereby profiting. The reason for this is that the _msgSender() of the TIME token returns not msg.sender, but is selected based on the caller. If the caller is the Forwarder contract, then the specified address of the caller is returned. At the same time, the Forwarder contract has arbitrary external call function, and the attacker calls the TIME contract's burn function through the Forwarder contract, passing in the pair address, and finally destroying the TIME token in the pair.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Bitdeer Reports a 3% Drop In Self-Mined Bitcoin Production
US Senator Vows to Reverse Harm SEC’s Gary Gensler Inflicted on Crypto
Job Seekers Beware: Fraudulent Offers Conceal Dangerous Crypto Malware
Bitcoin Heads to $90K as Crypto Selloff Gathers Steam