@rangashree
In the recent @hackenclub's $HAI hack, an attacker managed to mint 900 million tokens and pocket over $250,000 thanks to a single smart contract bug.
What was the mistake? A crucial mint function became accessible to the public due to an oversight in the ownership check, and the exploit spread rapidly.
Here I detail the flaw, the attacker's process, and the takeaways for Web3 auditors and developers.
Read the in-depth hack analysis here-
https://medium.com/@rangashree.rangaraja/900-000-000-tokens-minted-over-250k-stolen-91f9a00b4814