ID:
yfvalue-482
100 pts
Platform:
Type:
Category:
Method:
Data Sources:
Ethereum
Protocol
Dexes
Contract Vulnerabilities
Extended Method:
Logic error, reset the YFV timer in the pledge.
Days in Operation:
0





100 pts each
The DeFi project ValueDefi (YFV) officially released an announcement stating that the team found a loophole in the YFV pledge pool yesterday, and malicious participants used the vulnerability to reset the YFV timer in the pledge separately. There is a risk of being locked in $170 million in funds. Currently, a malicious participant is trying to blackmail the team using this vulnerability.The YFV Team has identified this malicious actor as a resentful farmer who had, despite our repeated announcements and reminders from the community, neglected to remove his funds from Pool 0 before its close at 7:52AM UTC today. Upon hearing that the team decided to leave the decision of whether to rescue his funds up to the community, he decided to resort to threats and extortion.
DISCLAIMER: While web3rekt has used the best efforts in aggregating and maintaining this database, this web site makes no representations or warranties with respect to the accuracy or completeness of its information and data herein, and specifically disclaim any implied warranties of merchantability or fitness for any particular purpose.
​
Under no circumstances, shall web3rekt be liable for any loss of profit or funds, any regulatory or governmental penalties, any legal costs, or any other commercial and non-commercial damages, including but not limited to special, incidental, consequential, or other damages from any or all usage of the data and information derived from this database.