019b3836-59c6-7320-a93e-393e28d8ed5c
Open this run to answer one question: is this real attacker-relevant behavior with real impact, or just normal contract plumbing?
| ID | Type | Status | Attempts | Heartbeat |
|---|---|---|---|---|
| 8827 | artifact.fetch | complete | 1 / 3 | 3 months ago |
| 8828 | tool.cast_disasm | complete | 1 / 3 | 3 months ago |
| 98326 | analysis.bundle | complete | 1 / 3 | 1 week ago |
| 98327 | capability.graph | complete | 1 / 3 | 1 week ago |
| 98328 | detector.run | complete | 1 / 3 | 1 week ago |
| 98329 | validation.fork | complete | 1 / 3 | 1 week ago |
No slither job recorded yet.
No codex job recorded yet.
00000000: PUSH1 0x60 00000002: PUSH1 0x40 00000004: MSTORE 00000005: CALLDATASIZE 00000006: ISZERO 00000007: PUSH2 0x0029 0000000a: JUMPI 0000000b: PUSH1 0xe0 0000000d: PUSH1 0x02 0000000f: EXP 00000010: PUSH1 0x00 00000012: CALLDATALOAD 00000013: DIV 00000014: PUSH3 0xf714ce 00000018: DUP2 00000019: EQ 0000001a: PUSH2 0x0071 0000001d: JUMPI 0000001e: DUP1 0000001f: PUSH4 0x8da5cb5b 00000024: EQ 00000025: PUSH2 0x00fc 00000028: JUMPI 00000029: JUMPDEST 0000002a: PUSH2 0x010e 0000002d: PUSH1 0x00 0000002f: CALLVALUE 00000030: GT 00000031: ISZERO 00000032: PUSH2 0x006f 00000035: JUMPI 00000036: PUSH1 0x01 00000038: PUSH1 0xa0 0000003a: PUSH1 0x02 0000003c: EXP 0000003d: SUB 0000003e: CALLER 0000003f: AND 00000040: PUSH1 0x60 00000042: SWAP1 00000043: DUP2 00000044: MSTORE 00000045: CALLVALUE 00000046: PUSH1 0x80 00000048: MSTORE 00000049: PUSH32 0xd15c9547ea5c06670c0010ce19bc32d54682a4b3801ece7f3ab0c3f17106b4bb 0000006a: SWAP1 0000006b: PUSH1 0x40 0000006d: SWAP1 0000006e: LOG1 0000006f: JUMPDEST 00000070: JUMP 00000071: JUMPDEST 00000072: PUSH2 0x010e 00000075: PUSH1 0x04 00000077: CALLDATALOAD 00000078: PUSH1 0x24 0000007a: CALLDATALOAD 0000007b: PUSH1 0x00 0000007d: SLOAD 0000007e: PUSH1 0x01 00000080: PUSH1 0xa0 00000082: PUSH1 0x02 00000084: EXP 00000085: SUB 00000086: SWAP1 00000087: DUP2 00000088: AND 00000089: CALLER 0000008a: SWAP2 0000008b: SWAP1 0000008c: SWAP2 0000008d: AND 0000008e: EQ 0000008f: ISZERO 00000090: PUSH2 0x00f8 00000093: JUMPI 00000094: PUSH1 0x01 00000096: PUSH1 0xa0 00000098: PUSH1 0x02 0000009a: EXP 0000009b: SUB 0000009c: DUP2 0000009d: AND 0000009e: PUSH1 0x00 000000a0: DUP4 000000a1: PUSH1 0x60 000000a3: DUP3 000000a4: DUP2 000000a5: DUP2 000000a6: DUP2 000000a7: DUP6 000000a8: DUP9 000000a9: DUP4 000000aa: CALL 000000ab: SWAP4 000000ac: POP 000000ad: POP 000000ae: POP 000000af: POP 000000b0: ISZERO 000000b1: PUSH2 0x011a 000000b4: JUMPI 000000b5: PUSH1 0x40 000000b7: DUP1 000000b8: MLOAD 000000b9: PUSH1 0x01 000000bb: PUSH1 0xa0 000000bd: PUSH1 0x02 000000bf: EXP 000000c0: SUB 000000c1: CALLER 000000c2: AND 000000c3: DUP2 000000c4: MSTORE 000000c5: CALLVALUE 000000c6: PUSH1 0x20 000000c8: DUP3 000000c9: ADD 000000ca: MSTORE 000000cb: DUP2 000000cc: MLOAD 000000cd: PUSH32 0xbc158bb64f05d6383aea69bbb0b20c1bbf4b7a18f63359c5649b7c39e29d3884 000000ee: SWAP3 000000ef: SWAP2 000000f0: DUP2 000000f1: SWAP1 000000f2: SUB 000000f3: SWAP1 000000f4: SWAP2 000000f5: ADD 000000f6: SWAP1 000000f7: LOG1 000000f8: JUMPDEST 000000f9: POP 000000fa: POP 000000fb: JUMP 000000fc: JUMPDEST 000000fd: PUSH2 0x0110 00000100: PUSH1 0x00 00000102: SLOAD 00000103: PUSH1 0x01 00000105: PUSH1 0xa0 00000107: PUSH1 0x02 00000109: EXP 0000010a: SUB 0000010b: AND 0000010c: DUP2 0000010d: JUMP 0000010e: JUMPDEST 0000010f: STOP 00000110: JUMPDEST 00000111: PUSH1 0x60 00000113: SWAP1 00000114: DUP2 00000115: MSTORE 00000116: PUSH1 0x20 00000118: SWAP1 00000119: RETURN 0000011a: JUMPDEST 0000011b: PUSH2 0x0002 0000011e: JUMP
Warning: This is a nightly build of Foundry. It is recommended to use the latest stable version. To mute this warning set `FOUNDRY_DISABLE_NIGHTLY_WARNING` in your environment.
| Severity | Category | Tool | Title | Confidence | Validated | Confirmed | Details |
|---|---|---|---|---|---|---|---|
| high | other | detector | Untrusted CALL target/value reachable | 60 | no | no |
viewtrace_id: 0x35e73be5b6fda75d3ad72230ba76d646db8527edd6d8adc0e4c562ba8dbf303b
call_targets:
0x575cc77b630783fff3abd3b0f26ff0681b0bca9e
target_varies:
no
classification:
constant_target
validation_json{
"sink": "CALL",
"errors": 0,
"status": "sink_reached",
"attempts": 1,
"trace_id": "0x35e73be5b6fda75d3ad72230ba76d646db8527edd6d8adc0e4c562ba8dbf303b",
"confirmed": false,
"trace_mode": "callTracer",
"call_targets": [
"0x575cc77b630783fff3abd3b0f26ff0681b0bca9e"
],
"matched_probe": null,
"target_varies": false,
"classification": "constant_target"
}
witness_json{
"notes": "heuristic witness; entrypoints are best-effort selectors with zeroed calldata",
"constraints": [],
"entrypoints": [
{
"calldata": "0x8da5cb5b",
"selector": "0x8da5cb5b",
"calldata_variants": [
"0x8da5cb5b",
"0x8da5cb5b0000000000000000000000000000000000000000000000000000000000000000"
]
}
]
}
evidence_json{
"examples": [
{
"pc": 170,
"opcode": "CALL",
"returndata_checked": null,
"value_expression_category": "computed",
"target_expression_category": "computed"
}
],
"call_count": 1,
"guards_detected": [],
"untrusted_call_count": 1
}
|
| high | other | detector | ETH value transfer possible | 55 | no | no |
viewtrace_id: 0x35e73be5b6fda75d3ad72230ba76d646db8527edd6d8adc0e4c562ba8dbf303b
call_targets:
0x575cc77b630783fff3abd3b0f26ff0681b0bca9e
target_varies:
no
classification:
constant_target
validation_json{
"sink": "CALL",
"errors": 0,
"status": "sink_reached",
"attempts": 1,
"trace_id": "0x35e73be5b6fda75d3ad72230ba76d646db8527edd6d8adc0e4c562ba8dbf303b",
"confirmed": false,
"trace_mode": "callTracer",
"call_targets": [
"0x575cc77b630783fff3abd3b0f26ff0681b0bca9e"
],
"matched_probe": null,
"target_varies": false,
"classification": "constant_target"
}
witness_json{
"notes": "heuristic witness; entrypoints are best-effort selectors with zeroed calldata",
"constraints": [],
"entrypoints": [
{
"calldata": "0x8da5cb5b",
"selector": "0x8da5cb5b",
"calldata_variants": [
"0x8da5cb5b",
"0x8da5cb5b0000000000000000000000000000000000000000000000000000000000000000"
]
}
]
}
evidence_json{
"examples": [
{
"pc": 170,
"opcode": "CALL",
"returndata_checked": null,
"value_expression_category": "computed",
"target_expression_category": "computed"
}
],
"eth_value_calls": 1,
"guards_detected": []
}
|