A forged cross-chain message bypassed state proof validation on the bridge contract, granting admin control over the bridged DOT token and allowing the attacker to mint and dump the entire supply for ...
Stolen session cookies bypass MFA because tokens remain valid for hours or days, enabling silent account takeovers without ...