Skip to content

Opensea exploit in migration contract allowing users to grab any NFT from others

twitter.com
14 pointsrburhum2 comments
On HN

Comments

The code is written using a dynamically typed language with no security guarantees so stuff like this is inevitable. Are there projects that leverage static typing to allow the creation of provably secure contracts?

It was a phishing campaign. People clicked the wrong link and allowed a rogue smart contract to drain their wallets. Open sea has given an update on Twitter.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.