BIZNESS on base was hacked, root cause is reentrancy.
Locker contract has “splitLock” function that splits lock position.
data:image/s3,"s3://crabby-images/32326/323268b884ebd1edc98a8473324984616737aef8" alt=""
In this function, “_feeHandler()” function is used for sending fees to treasury and remaining to user.
data:image/s3,"s3://crabby-images/9a64a/9a64a5a80f7435c2b4566d20afa75cb7dd813fbc" alt=""
There’s no reentrancy check in “splitLock” function, and locked amount is decreased after “_feeHandler()” is called. This can be used for reentrancy attack. Hacker was able to call “withdrawLock()” function and get locked tokens as locked amount is not decreased when function is called.
data:image/s3,"s3://crabby-images/2680f/2680f2a2a0435cf62229b7fee7e05cbe6cf6ff39" alt=""
Total loss is about $16k. Developers need to be care of reentrance.
Leave a Reply