Lunatic_Loner retweetledi

My bug bounty: not a vuln, requires all DVNs
Their deployment: removes the ‘all’ part
Hackers: collects $295M bounty instead

banteg@banteg
it's really crazy that layerzero doesn't have some redundant sanity check and allows to bridge 116,500 rseth from a chain with a supply of 49 anyway here is my investigation gist.github.com/banteg/705d028…
English























