đš $BONFIRE Router Drained ~$50k from 41 Wallets
Attacker exploited missing access control in BonfireSwap router's transfer function. No msg.sender check = anyone could set victim as 'from' and drain their tokens via pre-approved allowance.
Biggest victim: 0xefF2...096 lost 5289.1 $TOKEN
Vulnerable contract: 0x17e8...03d3
Attacker: 0x2b5b...731a
If you approved this router, revoke NOW. Classic allowance exploitâcheck your approvals regularly or get rekt.
Tx: bscscan.com/tx/0x9f79...
Attacker exploited missing access control in BonfireSwap router's transfer function. No msg.sender check = anyone could set victim as 'from' and drain their tokens via pre-approved allowance.
Biggest victim: 0xefF2...096 lost 5289.1 $TOKEN
Vulnerable contract: 0x17e8...03d3
Attacker: 0x2b5b...731a
If you approved this router, revoke NOW. Classic allowance exploitâcheck your approvals regularly or get rekt.
Tx: bscscan.com/tx/0x9f79...