Transparency and security first
During the review of webdom smart contracts, a critical vulnerability was discovered in the auction logic.
👁 Here’s the scenario: after an auction ended, it could be spammed with transactions that drained the contract balance. In this case, the winner’s bid could be lost, and the domain would remain stuck inside the contract. The funds were not transferred to any wallet — they were simply consumed as gas.
Key points:
🔣 No user funds were lost.
🔣 The vulnerability was never exploited.
Measures taken:
🔣 We have compiled a list of all users with active auctions, contacted them directly and asked them to withdraw the domains from the auction. All the domainers responded promptly.
🔣 The code was fixed and the vulnerability closed.
🔣 A repeat verification was conducted.
🏁 All contracts are now fully secure. This case confirms the effectiveness of audits and reflects our position: only open handling of vulnerabilities builds trust and makes the product stronger.
Trading domains on webdom 🪙
CoinMarketCap | Community | Roadmap
Post #294
263
- 👍 6
- ❤🔥 4
- 🤯 1