Beosin: TempleDAO was hacked, involving an amount of approximately 2.36 million USD
ChainCatcher news, according to monitoring by the Beosin EagleEye Web3 security warning and monitoring platform, the TempleDAO project has been hacked. Due to the lack of permission verification in the migrateStake function of the StaxLPStaking contract, anyone can extract StaxLP from the contract through this function.
The Beosin security team analyzed and found that the attacker has exchanged all obtained StaxLP tokens for ETH, and the stolen funds have been transferred to the address 0x2B63d4A3b2DB8AcBb2671ea7B16993077F1DB5A0.
Attacker:
0x9c9fb3100a2a521985f0c47de3b4598dafd25b01
Attack contract:
0x2df9c154fe24d081cfe568645fb4075d725431e0
Attacked contract:
0xd2869042e12a3506100af1d192b5b04d65137941
Attack transaction:
0x8c3f442fc6d640a6ff3ea0b12be64f1d4609ea94edd2966f42c01cd9bdcf04b5