ChainBleedv0.1 · open intel
← back to feed·APTREENTRANCY2023-06-15 · 2y ago
Incident · SLOWMIST

Move VM

Overflow Vulnerability
Estimated loss
VERDICT —UNRATED
Verdict pending. Auto-ingested incidents are reviewed before a public verdict is rendered.
▰ METHOD
REENTRANCY
REENTRANCYBYTECODE CATCHABLEAI SCANNABLE
Root cause

Root-cause analysis not yet published. The incident description below contains all currently available signal — review the attack transaction directly for definitive forensics.

Forensic narrative

Recently, a security firm discovered a stack overflow vulnerability in the Move VM that does not limit the depth of recursive calls, which can cause a total network shutdown, prevent new validator nodes from joining the network, and potentially even cause a hard fork. mainnet_v1.2.1, Aptos mainnet_v1.4.3 and earlier are all affected by this vulnerability. Suimainnet_v1.2.1, Aptosmainnet_v1.4.3, and Move-language versions after June 10, 2023 fix this vulnerability. Attack method (per SlowMist): Overflow Vulnerability. Reported loss: -.

Primary source
https://www.panewslab.com/zh/sqarticledetails/b678w3tm.html
Sourced from
slowmist
Technical record
chain
aptos
protocol
Move VM
bug_class
reentrancy
date_occurred
2023-06-15
loss_usd
source_id
sm:move-vm::2023-06-15
Related — same bug class· reentrancy
2026-04-28
1mo ago
ETH
BCB
Reentrancy — classic call-before-state-update
reentrancy
$39.8K
UNRATED
2026-03-06
3mo ago
BITCOI
Solv Protocol
Reentrancy Attack
reentrancy
$2.70M
UNRATED
2026-01-15
4mo ago
ARB
Futureswap (reentrancy)
Reentrancy during liquidity provision → excess LP mint → 3-day cooldown wait → burn for redemption
reentrancy
$74.0K
AUDIT-CATCHABLE
2026-01-14
4mo ago
ARB
FutureSwap
Reentrancy Attack
reentrancy
$74.0K
UNRATED
2025-07-15
11mo ago
BASE
Arcadia V2
Rebalancer contract reentrancy hack
reentrancy
$2.50M
UNRATED
2025-07-09
11mo ago
GMX
Contract Vulnerability
reentrancy
$42.00M
UNRATED
ChainBleed — live web3 threat intelligence