Nemo Finance Hack
What happened
The contract owner could disable the transfer function, which restricted users in selling their tokens.
The contract deployer added initial liquidity at:
https://etherscan.io/tx/0xda2135fc…7fc09a
The contract deployer used hidden minting functionality under the addWork() function to generate new tokens onto his wallet at:
https://etherscan.io/tx/0xfb014977…9bacba
The minted tokens were sold by the contract deployer:
https://etherscan.io/tx/0x74f351d3…690dd0
https://etherscan.io/tx/0x579aacf1…e533ea
https://etherscan.io/tx/0x230f8d19…e12178
https://etherscan.io/tx/0x95fb7e01…5df5bc
The stolen funds were transferred to the external wallet:
https://etherscan.io/tx/0x6989211c…862122
Case & protocol details
Evidence & learning
Sources and on-chain records
- report Report twitter.com
Practice this exploit pattern safely
Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.