Harvest Finance Vulnerability | $200k Bounty

We disclosed a critical bug to Harvest Finance. The contracts in scope held a total of $6.4M in Uniswap V3 positions. The attack was found by an automated analysis that attempted to generalize the elements of the OpenZeppelin UUPS uninitialized implementation vulnerability.

Read more

Related Posts

VIEW ALL
Tech Deep Dive

You Pay For What You Touch: Locality as Ethereum's Next Cost Model

This post is based on a talk given by Neville Grech at the Stateless Summit 2026, drawing on a 2021 …

10 April 2026
Understanding Reentrancy in Aptos Move: Evolution, Challenges, and Protections
Tech Deep Dive

Understanding Reentrancy in Aptos Move: Evolution, Challenges, and Protections

Introduction to Move The Move language is a next-generation smart contract programming language …

17 September 2025
The CPIMP Attack: an insanely far-reaching vulnerability, successfully mitigated
Tech Deep Dive

The CPIMP Attack: an insanely far-reaching vulnerability, successfully mitigated

[by the Dedaub team] A major attack on several prominent DeFi protocols over many blockchains was …

15 July 2025