Dx Protocol: Repeated Withdrawals via unlockToken() Timing Bug (BSC 0xeb3a…e449)
Decompilation of an unverified contract revealed a logic flaw allowing repeated withdrawals before unlockTime; ~ $5.2M exposure.
Guides, tutorials, and research for EVM decompilation and smart contract security.
Decompilation of an unverified contract revealed a logic flaw allowing repeated withdrawals before unlockTime; ~ $5.2M exposure.
Reverse-engineering exposed two fatal flaws: unchecked value transfer and token transfers to msg.sender without authorization.
Decompiled walletOfOwner reconstructs loop bounds, array allocation, and owner checks cleanly for auditability.