VERDICT —UNRATED
Verdict pending. Auto-ingested incidents are reviewed before a public verdict is rendered.
Root cause
Root-cause analysis not yet published. The incident description below contains all currently available signal — review the attack transaction directly for definitive forensics.
Forensic narrative
Weibo user “CryptoBlanker” broke the news: the refi.finance project party directly used the reserved setBoardroom() function to change the Boardroom address to the address it deployed. Light BAS was taken away 2,600, worth 111 ETH (about 144,000 US dollars). Attack method (per SlowMist): Rug Pull. Reported loss: 111 ETH.
Primary source
https://m.bitalk.com/flash/detail/448654413024858112 ↗Sourced from
slowmist
Technical record
- chain
- —
- protocol
- refi.finance
- bug_class
- rug
- date_occurred
- 2021-01-27
- loss_usd
- —
- source_id
- sm:refi-finance::2021-01-27
Related — same bug class· rug