On October 1st 2024, the FIRE token exploited which involved an attacker manipulating the token's deflationary mechanism to drain its Uniswap liquidity pool. By taking out a flash loan of 20 ETH and using a malicious smart contract, the attacker repeatedly swapped FIRE tokens, burning them with each transaction to artificially increase their price.
This process was repeated multiple times, allowing the attacker to withdraw $22,000 worth of ETH from the pool.
FireToken
introduces the first-ever ultra-hyper-deflationary token on the Ethereum Blockchain with zero buy and sell taxes. Every time a sell occurs, 100% of the tokens sold are automatically transferred from the liquidity pool to the dead wallet, permanently removing them from circulation.
FireToken Contract Address: 0x18775475f50557b96C63E8bbf7D75bFeB412082D
Attacker Address: 0x81F48A87Ec44208c691f870b9d400D9c13111e2E
Attack Transaction: https://etherscan.io/tx/0xd20b3b31a682322eb0698ecd67a6d8a040ccea653ba429ec73e3584fa176ff2b
Ready to secure your smart contracts? Take the first step towards a safer blockchain journey. Request an Audit with QuillAudits today & ensure your contracts are robust and secure!
The root cause of the FireToken exploit was the flawed burning mechanism in its smart contract, which allowed direct manipulation of the Uniswap liquidity pool's token balance. When FireTokens were transferred to the pool, the _transfer() function burned tokens and immediately called sync(), updating the pool's reserves. This reduction in FireToken reserves artificially increased the token's price according to Uniswap's constant product formula. The attacker exploited this vulnerability by repeatedly burning tokens and swapping them for ETH at manipulated prices, draining the pool of liquidity.
Here is the Flow of Funds
of the Fire token exploit.
Choosing a reputable audit firm like QuillAudits ensures that your protocol undergoes rigorous scrutiny
from experienced security professionals. QuillAudits specializes in uncovering critical vulnerabilities and providing actionable remediation strategies. Our expertise helps safeguard your project from attacks, ensuring that security issues are addressed proactively.
Get Pure Alpha Straight to Your Inbox. Miss this, and you’re missing out.
Insider Secrets - Delivered Right to You. Subscribe now.