Skip to content

Latest commit

 

History

History
18 lines (10 loc) · 884 Bytes

File metadata and controls

18 lines (10 loc) · 884 Bytes

SumerMoney Exploit

  • Fund Loss: ~$350k

Root Cause

A reentrancy flaw in repayBorrowBehalf allowed the attacker to borrow all assets and manipulate the ETH:sdrETH exchange rate. This distortion enabled the redemption of tokens at an inflated value, resulting in unauthorized profit.

Contract State Before Exploit

image

Contract State After Exploit

image