[Subscribe Now] Track A-Level Transparency Project Biweekly Report and Discover the Top 1% of Projects
API Download the RootData App

Slow Fog: The core reason for the zkLend theft lies in the market contract using the safeMath library

Feb 12, 2025 21:13:35

Share to

ChainCatcher message, regarding today's zkLend theft of over 9 million dollars, SlowMist released an analysis stating that the core reason for this attack lies in the safeMath library used in the market contract. During division calculations, direct division was used, resulting in a rounding vulnerability when calculating the actual amount of zToken that needs to be burned during withdrawals. Attackers may exploit this vulnerability to gain illegal benefits.

Users are advised to closely monitor their asset status on zkLend and temporarily halt any deposit actions related to zkLend to avoid potential losses.

Related Projects

Latest News

Data: BTC breaks through 71,000 USD

ChainCatcher

Mar 23, 2026 21:37:23

Data: BTC falls below 70,000 USD

ChainCatcher

Mar 23, 2026 20:01:05

Data: BTC breaks through 71,000 USD

ChainCatcher

Mar 23, 2026 19:07:09

Data: BTC breaks through 70,000 USD

ChainCatcher

Mar 23, 2026 19:06:02

Data: BTC breaks through 69,000 USD

ChainCatcher

Mar 23, 2026 19:05:25

Recent Fundraising

More
$5M Mar 16

New Tokens

More

Latest Updates on 𝕏

More