OceanAltOceanAlt

Security incident · 2022-09-02

Bad Guys by RPF

According to the public DefiLlama incident dataset, Bad Guys by RPF (Ethereum) suffered a security incident on 2022-09-02, with about — reported lost.

Date2022-09-02
Reported loss—
ChainEthereum
Target typeNFTfi
Technique classToken & Share Accounting
TechniqueIncorrect Share Accounting
Bridge incidentNo
Within 2022#176 by loss that year, 0.0% of all reported losses that year

How this kind of attack works

The contract's bookkeeping was wrong, for example the conversion between shares and assets, so the attacker redeemed far more than they put in.

Would a pre-payment check have helped

Needs other controls

Accounting and share-math bugs are contract-layer problems for code audits.

Other incidents with the same technique

Sources

This page restates public reports and is not OceanAlt's judgment of any party. To report an error, email business@oceanalt.com; we review within 48 hours.

← Back to incidents