Aave Repay Adapter contract hacked

There was vulnerability in repay adapter contract. In swapAndRepay function, it approves tokens to Paraswap router. But if swap is not performed using approved token, allowance is not decreased. Using this hacker let victim contract approve tokens to paraswap router, and then moved those tokens to himself. If you want more detail, dm me or ask in group.


Posted

in

by

Tags:

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *