According to SlowMist monitoring, the ONTR token contract suffered a loss of 49.4801 WETH, valued at approximately $98,000, due to an access control vulnerability in the onlyOwner modifier.
The attacker (0xe806...b760) exploited this vulnerability by passing the permission check when the owner was set to address(0). The attacker then called transferOwnership() to set the attacker's contract as the owner. Subsequently, desertJasper() was invoked to queue hidden balances, followed by glenFlash() to execute ashBud(), which directly increased an address's balance by 1e30 base units without incrementing totalSupply. The attacker transferred the inflated tokens to PancakePair (0xd46d...83fd) and exchanged them for WETH via swap().
Disclaimer:All content on this platform is sourced from the internet and is provided for informational purposes only. None of the content represents the views of this site, nor does it constitute investment advice. Please exercise caution when investing.
SlowMist: ONTR Token Contract Access Control Vulnerability Leads to ~$98,000 Loss
Disclaimer: This content reflects the author's personal views only and does not constitute investment advice. If you find any violations, please Click to Report
24H Trending
-
Iranian Foreign Ministry: Iran and the U.S. Reach Agreement
-
Gate's Stock Contracts Section Launches Trading for 8 Perpetual Contracts, Including ADSK (Autodesk) and BKNG (Booking.com Holdings)
-
Learn More About the ALTHEA Token (ALTH) and Its Decentralized Network
-
Binance Seven U-denominated perpetual contracts, including LRCX and KLAC, will be launched
-
After going long on crude oil with 10x leverage, the position is showing a paper loss of $1.33 million; a certain address holds CL long positions worth $37.77 million
-
The OKX DEX xStocks Trading Competition is currently underway, with a total prize pool of 300,000 USDC
-
Morgan Stanley Updates Ethereum and Solana ETF Filings, Proposing a 0.14% Fee
-
Iranian media report that Iran-U.S. negotiations have resulted in five key points
-
Record-High AI-Driven Leveraged Bets in Asia: SK Hynix’s 2x Long ETF in South Korea Reaches $13 Billion in Assets Under Management
-
A "smart money" investor bet $320,000 on Argentina to beat Austria in the World Cup group stage
Recommended Reading




