Ethereum Alarm Clock's smart contract is being targeted by exploiters

CN
Theblock
关注
2年前

An exploited Ethereum Alarm Clock contract has allowed exploiters to receive more ETH-denominated refunds than intended.

Ethereum Alarm Clock is a protocol that allows users to schedule future Ethereum transactions. The transaction scheduling logic it uses occurs in smart contracts.

Blockchain security and analytics company Peckshield reported the ongoing exploit earlier this morning.

Under the exploit, the attacker first calls a cancel() function on the Ethereum Alarm Clock contract with an abnormally high transaction fee. The exploit occurs in the following step, where the transaction fee refund is calculated too high, paying out a higher value than intended.

The end result gives the exploiter a much higher ETH refund because of the higher transaction fee that they set. Under normal circumstances, the user calling the contract would receive back only slightly more than what their transaction fee was, according to The Block Research's Igor Igamberdiev.

This is a developing story.

© 2022 The Block Crypto, Inc. All Rights Reserved. This article is provided for informational purposes only. It is not offered or intended to be used as legal, tax, investment, financial, or other advice.

免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

上新快、福利猛!注册BitMart即享14,000+ USDT迎新奖!
广告
分享至:
APP下载

X

Telegram

Facebook

Reddit

复制链接