Back to overview
Withdraw Paused
Dec 05 at 04:03am UTC
Affected services
Telegram Bot
Resolved
Dec 05 at 04:03am UTC
We have identified a critical bug in the withdraw command of our system, where users can initiate multiple withdrawals against a single balance. This issue occurs due to a race condition that arises when the command is rapidly executed multiple times in a short period. Users exploiting this vulnerability can deplete funds beyond their account balance by issuing concurrent withdraw requests.
Affected services
Telegram Bot