Paddle: Ankr aBNBc token contract has an infinite minting vulnerability

2022-12-02 11:00:39
Collection

ChainCatcher news, according to PeckShield analysis, the Ankr aBNBc token contract has an infinite minting vulnerability. Although the mint() function is protected by the onlyMinter modifier, there is another function (with the 0x3b3a5522 func.signature) that can completely bypass caller verification to achieve infinite minting.

In addition, the Ankr attacker created a token called Fuck BNB and provided 15 ETH to establish a liquidity pool for it on Uniswap V2. (source link)

ChainCatcher reminds readers to view blockchain rationally, enhance risk awareness, and be cautious of various virtual token issuances and speculations. All content on this site is solely market information or related party opinions, and does not constitute any form of investment advice. If you find sensitive information in the content, please click "Report", and we will handle it promptly.
ChainCatcher Building the Web3 world with innovators