fee-on-transfer

1 article
sort: new top best
clear filter
0 3/10
bug-bounty

A researcher earned $10,000 from DFX Finance for identifying two related vulnerabilities: unsupported fee-on-transfer (FoT) token handling that can drain liquidity provider funds, and risks from using upgradable USDC as the protocol's bridge asset. The submission included functional POC and recommendations based on Uniswap's approach to handling FoT tokens.

DFX Finance Immunefi Code4Arena Trail of Bits USDC Uniswap PAXG USDT Beirao
beirao.xyz · Beirao · 3 hours ago · details