星球日报|Sep 08, 2026 03:11
[SlowMist: Approximately 62.28 BNB lost, BNB Chain Router attacked]
Odaily Planet Daily News - According to monitoring by SlowMist, a certain Router contract was attacked due to security vulnerabilities in the Swap entry and uniswapV3SwapCallback. Currently, approximately 62.28 BNB has been lost. The Router failed to verify whether the caller was a legitimate V3 Pool and did not bind the payer in the callback to the original transaction context. The attacker forged a V3 Pool/adapter and injected the victim's address as the payer, leveraging the ERC-20 authorization previously granted by users to the Router to execute transferFrom() and transfer assets. Users who had previously provided sufficient token authorization to the Router may have their authorized assets transferred even without further interaction.
Share To
Timeline
HotFlash
APP
X
Telegram
CopyLink