SlowMist|Jan 12, 2026 11:05
🚨SlowMist: Analysis of Truebit Protocol Incident🚨
On Jan 8, @Truebitprotocol was exploited via an integer overflow vulnerability in its Purchase contract, allowing the attacker to mint TRU at near-zero cost and drain 8,535 ETH (~$26.44M) 💰
🔍 Root cause: Missing overflow protection in an integer addition led to incorrect price calculation. The stolen funds were later funneled into Tornado Cash 🌪️
🛡️ Recommendation: For contracts compiled with Solidity < 0.8.0, always use SafeMath to protect all arithmetic operations and prevent overflow-related logic flaws.
📄 Full analysis 👇
🔗 https://slowmist.medium.com/26-44-million-stolen-truebit-protocol-smart-contract-vulnerability-analysis-e44fe7becd8a(SlowMist)
Share To
Timeline
HotFlash
APP
X
Telegram
CopyLink