OceanAltOceanAlt

Security incident · 2024-02-15

DualPools

According to the public DefiLlama incident dataset, DualPools (BSC) suffered a security incident on 2024-02-15, with about $41K reported lost.

Date2024-02-15
Reported loss$41K
ChainBSC
Target typeDeFi Protocol
Technique classToken & Share Accounting
TechniqueRounding Error
Bridge incidentNo
Within 2024#174 by loss that year, 0.0% of all reported losses that year

How this kind of attack works

The contract's bookkeeping was wrong, for example the conversion between shares and assets, so the attacker redeemed far more than they put in.

Would a pre-payment check have helped

Needs other controls

Accounting and share-math bugs are contract-layer problems for code audits.

Other incidents with the same technique

Sources

This page restates public reports and is not OceanAlt's judgment of any party. To report an error, email business@oceanalt.com; we review within 48 hours.

← Back to incidents