๊ฐ€์ž… ํ›„ ์ดˆ๋Œ€ ๋งํฌ๋ฅผ ๊ณต์œ ํ•˜๋ฉด ๋™์˜์ƒ ์žฌ์ƒ ๋ฐ ์ดˆ๋Œ€ ๋ณด์ƒ์„ ๋ฐ›์„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

SlowMist
@SlowMist_Team
SlowMist is a Blockchain security firm established in 2018, providing services such as security audits, security consultants, red teaming, and more.
๊ฐ€์ž… April 2018
408 ํŒ”๋กœ์ž‰ ์ค‘    88.8K ํŒฌ
โœ๏ธ Technical Analysis Published: Analysis of the $2.19M Asset Theft from Aztec Connect A deprecated Aztec Connect RollupProcessor contract was exploited through a settlement boundary bypass vulnerability, enabling attackers to create an L1/L2 state discrepancy and drain approximately $2.19M from the protocol. The attack abused a mismatch between numRealTxs and decoded_slots, allowing forged deposits to be committed by the ZK proof while remaining invisible to the L1 settlement verification process. Our report provides a complete reconstruction of: ๐Ÿ”น Vulnerability root cause ๐Ÿ”น ZK commitment vs settlement boundary mismatch ๐Ÿ”น Dual-path state divergence model ๐Ÿ”น Atomic exploit execution ๐Ÿ”น On-chain fund tracing This case highlights a critical security principle for Rollup systems: settlement boundaries must always be strictly aligned with the commitment scope of ZK public inputs. Read the full analysis below ๐Ÿ‘‡
๋” ๋ณด๊ธฐ