Bullish
DEX Atomic Loses 30k USDC via Signature Replay Vulnerability
2026-08-08 18:56
Atomic DEX suffers $29,984 USDC loss after signature replay exploit allowed unauthorized LP liquidations via flash loans, bypassing safety checks.
Woofun AI reports that the Atomic decentralized exchange protocol suffered an attack exploiting a signature replay vulnerability, resulting in a loss of approximately 29,984 USDC. The security flaw originated from contract 0xa806010f, which failed to bind position ID, position manager, caller, nonce, deadline, and chain ID within the signature digest.
This omission permitted attackers to replay signatures from the same manager across 21 distinct position IDs. Consequently, unauthorized full liquidations of liquidity providers were executed under flash loan price manipulation, operating without TWAP or slippage protections.
WOOFUN AI
Impact Assessment · Quick Read
The exploit highlights critical risks in smart contract signature verification, particularly regarding missing binding parameters. Losses of nearly $30k USDC indicate successful bypass of standard safety mechanisms like TWAP checks. This incident may prompt audits of similar protocols relying on unbound signature digests to prevent replay attacks.
Generated by WOOFUN AI · For reference only, not investment advice
Comments
No comments yet.