asriloni
Legendary

Activity: 3850
Merit: 1155
Leading Crypto Sports Betting & Casino Platform
|
 |
September 01, 2026, 12:46:46 PM |
|
It's all rooted from the vulnerability on minting contract of ankrFLOW liquid token. The vulnerability let attacker to mint ankrFLOW, then he supply it as collateral to borrow wflow. It's just the same attack with the previous Kelpdao hack where the hackers were minting so many unbacked tokens just to supply it as a collateral to withdraw the funds pooled.
At this point, i can only come to the solution if the liquid token minting should have done manually through use some verifications. Using contract for minting purpose is a very risky decision. I hope the developers will think to change their mechanism. So there will be no more attack to the contract to mint the liquid token, then used it as a collateral attack to the vault.
Decentralization is good, but human can't rely upon the contract that might have undiscovered vulnerability. Do we need to wait until dozens of projects get hacked by the same method? I hope the developers aware of this serious problem.
They have to solved this if they care to the people's money.
|