performance-fee

1 article
Sort: New Top Best
clear filter
0
vulnerability

Brahma.Fi's collectFees() function incorrectly charges performance fees without accounting for previous losses, causing users to permanently lose funds as fees are collected on unrealized gains. The vulnerability was rejected by Immunefi despite being a critical accounting flaw that will systematically drain user deposits over time due to market volatility.

Brahma.Fi 0x3c4Fe0db16c9b521480c43856ba3196A9fa50E08 Enso Finance Immunefi
trust-security.xyz · Trust · 4 hours ago · details