Skip to content

Latest commit

 

History

History
18 lines (10 loc) · 729 Bytes

File metadata and controls

18 lines (10 loc) · 729 Bytes

XBridge Exploit

  • Fund Loss: ~$1.44M

Root Cause

The listToken function lacks verification when base and corresponding tokens match, allowing any caller to bypass checks and arbitrarily claim ownership of the token.

Contract State Before Exploit

image

Contract State After Exploit

  • N/A