OMNI404 Flash Loan Attack Exposes Critical NFT Minting Flaw
A recent flash loan attack on OMNI404 has exposed a critical flaw in its NFT minting process, draining 2.4 WETH from the project's liquidity pool.
The attacker exploited a vulnerability in the contract's _transfer() function, which mishandled NFT minting logic and allowed them to manipulate the process for their own gain.
The attack was carried out using a specific Uniswap V3 transaction method, allowing the attacker to execute the exploit without risking their own capital. The project's trading activity has since come to a standstill, with its price remaining flat despite the loss.