The Nimble Nerd white logo

Raydium CP Swap: The Unchecked Account Comedy of Errors 🎭

Raydium CP Swap’s “unchecked account” flaw lets hackers hijack creator fees like an unexpected holiday bonus—just without the festive spirit. ImmuneFi called it “out of scope,” so now it’s out in the open. Remember, folks, sharing is caring, unless it’s your fees being shared!

Pro Dashboard

Hot Take:

Raydium CP Swap has a creator fee hijacking issue so big, it could probably steal the show at a cybersecurity circus! Who knew unchecked accounts could be so hospitable to a potential parade of penny-pinching hackers? Time to check those accounts before they wreck your main account!

Key Points:

  • Vulnerabilities in Raydium CP Swap allow for theft of creator fees.
  • The issue was initially reported but dismissed as “out of scope.”
  • UncheckedAccount validation gap is the main culprit.
  • Potential for uncapped fee rates leading to user exploitation.
  • Public disclosure includes a proof of concept (PoC) for the exploit.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?