VERDICT —UNRATED
Verdict pending. Auto-ingested incidents are reviewed before a public verdict is rendered.
Root cause
Root-cause analysis not yet published. The incident description below contains all currently available signal — review the attack transaction directly for definitive forensics.
Forensic narrative
The Arbitrum ecological project Jimbos Protocol was attacked, and about 4,090 ETH were stolen (about $7.5 million). This attack was due to the lack of slippage control on the liquidity transfer operation, which resulted in the protocol owned liquidity being invested in a skewed/imbalanced price range, which was used in reverse swaps for profit. Attack method (per SlowMist): Contract Vulnerability. Reported loss: $ 7,500,000.
Primary source
https://www.odaily.news/newsflash/324820?source=share ↗Sourced from
slowmist
Technical record
- chain
- arbitrum
- protocol
- Jimbos Protocol
- bug_class
- logic
- date_occurred
- 2023-05-28
- loss_usd
- $7,500,000
- source_id
- sm:jimbos-protocol::2023-05-28
Related — same bug class· logic