precompiled-contracts

1 article
sort: new top best
clear filter
0 7/10
vulnerability

A critical infinite spend vulnerability in Aurora's Rainbow Bridge allowed attackers to withdraw unlimited ETH by exploiting DELEGATECALL context confusion, potentially exposing 70k ETH and $200m in assets. The bug was responsibly disclosed for a $6 million bounty payout.

Aurora Rainbow Bridge Immunefi pwning.eth NEAR Ethereum ExitToNear ExitToEthereum
medium.com · pwning.eth · 23 hours ago · details