Slow Fog: The core reason for the zkLend attack incident is that the market contract uses the safeMath library
Regarding the incident where zkLend was attacked and over 9 million US dollars were stolen, SlowMist published an analysis on platform X stating that the core reason for this attack lies in the safeMath library used by the market contract. When performing division calculations, it uses direct division, which leads to a rounding down flaw when calculating the actual number of zTokens that need to be destroyed during withdrawal operations. Attackers may exploit this vulnerability to illegally gain profits. SlowMist reminds users to closely monitor their asset status on zkLend and temporarily stop any recharge actions related to zkLend to avoid possible losses.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
20,000 ETH transferred out from a certain exchange, worth $61.21 million
The probability of "OpenSea launching a token this year" rises to 52% on Polymarket
An exchange accidentally leaked details of OpenSea's $150 millions ICO

A certain exchange once posted "Opensea public sale next week," but later deleted it.
