03:51
Bunni pointed out that the rounding error in smart contracts was the cause of the 8.4 million dollar Flash Loans vulnerability.
The decentralized exchange Bunni released a post-mortem report, revealing a loss of $8.4 million due to a vulnerability attack. The attacker exploited a rounding error in the withdrawal function of the smart contracts to manipulate the trading pool with Flash Loans, resulting in a significant decrease in Liquidity. Bunni has updated the code and paused certain functionalities, is tracking the funds, and is offering a bounty.
USDC-0.01%