Security agency: SynapLogic contract attacked, resulting in losses of approximately $186,000.

PANews reported on January 20th that, according to a BlockSec alert, the SynapLogic contract lacked critical parameter validation in the `swapExactTokensForETHSupportingFeeOnTransferTokens` function, allowing attackers to manipulate the "whitelist" logic and specify arbitrary payout addresses. Furthermore, the contract failed to verify whether the total amount of native tokens distributed exceeded the actual payments, enabling attackers to withdraw excessive amounts of native tokens while simultaneously obtaining newly minted SYP, resulting in a loss of approximately $186,000.

Share to:

Author: PA一线

This content is for market information only and is not investment advice.

Follow PANews official accounts, navigate bull and bear markets together