FEI and TRIBE Redemption contest - Mohandes's results

A new DeFi primitive that allows any token to become productive and provide FEI liquidity at no cost to the markets that need it most.

General Information

Platform: Code4rena

Start Date: 09/09/2022

Pot Size: $42,000 USDC

Total HM: 2

Participants: 101

Period: 3 days

Judge: hickuphh3

Total Solo HM: 2

Id: 161

League: ETH

Tribe

Findings Distribution

Researcher Performance

Rank: 83/101

Findings: 1

Award: $33.58

🌟 Selected for report: 0

🚀 Solo Findings: 0

  1. There is an undocumented assumption that msg.sender has given allowance on redeemedToken tokens to TribeRedeemer contract.
  2. There is no way to take Ether out of the TribeRedeemer contract in case if it receives any accidently via selfdestruct
  3. If redeemedToken address is added to the tokensReceived array by mistake, there will be no way to fully redeem all tokens, as every time part of redeemedToken will be sent back to the user.
AuditHub

A portfolio for auditors, a security profile for protocols, a hub for web3 security.

Built bymalatrax © 2024

Auditors

Browse

Contests

Browse

Get in touch

ContactTwitter