Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feat: add Benstalk Governance attack #2

Open
nine-december opened this issue Nov 18, 2022 · 2 comments
Open

Feat: add Benstalk Governance attack #2

nine-december opened this issue Nov 18, 2022 · 2 comments
Labels
to-reproduce Attacks pending to be reproduced

Comments

@nine-december
Copy link
Collaborator

On Apr 16, 2022 an attacker stole $76MM from Skyward Finance.

Attack Overview
Total Lost: $76MM

Key Info Sources
Writeup: https://rekt.news/beanstalk-rekt/
Twitter: https://twitter.com/kelvinfichter/status/1515735717305008138
Twitter: https://twitter.com/peckshield/status/1515692144190648322

Principle: Business Logic - Governance Malicious Proposal with Flashloan

@nine-december nine-december added the to-reproduce Attacks pending to be reproduced label Nov 18, 2022
@nine-december
Copy link
Collaborator Author

Status Update: Added the exploit but the execution is stopping upon approvals and does not continue. I suspect that there's something with the Foundry VM.

@joaquinlpereyra
Copy link
Collaborator

proposal: remove this contract until we dig up what is wrong / how to reproduce.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
to-reproduce Attacks pending to be reproduced
Projects
None yet
Development

No branches or pull requests

2 participants