OceanAltOceanAlt

Security incident · 2024-01-16

Bungee

According to the public DefiLlama incident dataset, Bungee (Ethereum) suffered a security incident on 2024-01-16, with about $3.3M reported lost.

Date2024-01-16
Reported loss$3.3M
ChainEthereum
Target typeDeFi Protocol
Technique classInput Validation
TechniqueMissing Input Validation
Bridge incidentYes
Within 2024#54 by loss that year, 0.2% of all reported losses that year

How this kind of attack works

The contract did not check the parameters it received, and the attacker passed crafted data that made it do something it should not.

Would a pre-payment check have helped

Needs other controls

Missing input validation is a contract code defect for code audits.

Other incidents with the same technique

Sources

This page restates public reports and is not OceanAlt's judgment of any party. To report an error, email business@oceanalt.com; we review within 48 hours.

← Back to incidents