#sushi vulnerability

1 messages · Page 1 of 1 (latest)

acoustic bluff
#

Revoke sushi from treasury wallets until further info is known.

keen ibex
#

Good idea but, looks like main treasury has no allowance right now.

acoustic bluff
#

Oh tight - didnt know you could check other wallets

keen ibex
#

Actually I was wrong, looking at this from my phone. Ilv still unlimited with sushi. I don’t think this contract is actually known to be vulnerable but I still wonder if regularly revoking any allowances would be a good idea?

acoustic bluff
#

Yeah - I heard it only affects recent use of the contract but idk what we used to swap from usdc to usdt. We could look

Either way yeah - we should revoke access to almost everything that is in cold storage.

#

That wallet should only send to and from and have no contract interaction.

#

Safest thing would be to sweep to a new address and have strict procedure around usage. But not sure if it's necessary with a multi sig