Skip to content

bug: tracker bridges: Verify the BridgeEvent emitter address #1751

Description

@joanestebanr

For any successful transaction containing a log with this signature, the source accepts the log without checking l.Address against the canonical bridge contract for the requested network. An unrelated or malicious contract can emit the same ABI-compatible event and be reported as a real bridge, after which the tracker queries GER and claim state using attacker-controlled destination and deposit values; resolve the network's bridge address and reject logs emitted elsewhere.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions