
SlowMist Warns of Copycat BSC Exploit Using Notional Pattern

SlowMist Warns of Copycat BSC Exploit Using Notional Pattern
WEEX View
- The main variable now is timing. SlowMist said the malicious positions are waiting for expiration, which means affected protocols may still have a limited window to block settlement or prevent withdrawals before losses are realized.
- Market participants should watch for emergency actions from BSC-based lending or structured-yield protocols that use similar position logic, especially any pause, settlement restriction, or risk-control update tied to fCash-like products.
- The warning also puts attention on exploit replication risk. When attackers can reuse a known vulnerability pattern across chains or protocols, security exposure can spread faster than disclosures or patching cycles.
SlowMist warned that two attackers on BSC have replicated a vulnerability pattern associated with Notional Finance and have already created malicious fCash positions, setting up a potential exploit that has not yet been fully executed.
According to SlowMist, the attackers have completed preliminary preparations and used the same vulnerability pattern to create malicious fCash positions on BSC. The security firm said the attack sequence is not complete yet because the positions are still awaiting expiration.
SlowMist said the risk comes after expiration, when the attackers may be able to settle the positions and withdraw assets from the affected protocol. The warning did not name the targeted project or disclose the size of any potential loss. It also did not provide a public expiration time for the positions.
The alert matters because it is a pre-execution warning rather than a post-incident report. That leaves room for defensive action, but it also means the final outcome remains uncertain until the positions either expire and are settled or the affected systems are patched and secured.
SlowMist urged affected projects to take immediate mitigation measures before the positions expire. With limited public technical detail so far, the focus is on whether protocols using similar accounting or settlement mechanics can identify exposure and close it before attackers reach the withdrawal stage.
Why It Matters
This is the kind of security event that can test how quickly DeFi projects respond when exploit preparation is visible on-chain before funds are removed. For users and operators, the issue is not only the possible loss itself but whether protocols have effective controls to pause, patch, or isolate risk during the narrow period between detection and execution.
The warning also highlights a broader structural issue in crypto security: once an exploit method is known, it can be adapted to other environments that share similar contract design or settlement logic. That can turn a single vulnerability pattern into a wider cross-protocol risk, especially on chains with active DeFi deployment.
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
About WEEX View
WEEX View is a crypto analysis and intelligence hub, covering the latest in Web3, AI, and global markets. Get independent research and in-depth insights to stay ahead of market trends and trading opportunities.
Latest articles
MoreChina to Enforce Online Financial Marketing Rules on Sept. 30, 2026
China’s Financial Product Online Marketing Management Measures will take effect on September 30, 2026, requiring financial product marketing to run through approved platforms and limiting marketers to authorized, qualified personnel at financial institutions.
Rocket Halts Services After Perpetual Market Manipulation Loss
Rocket suspended deposits, withdrawals and trading after an attacker manipulated a dormant perpetual market and withdrew about $287,000 in positive PnL, prompting a recovery effort and coordination with security firms, law enforcement and other platforms.
Nvidia-Linked Tokens Lead Robinhood Chain’s Stock-Token Activity
Nvidia is the most referenced stock on Robinhood Chain, with more than 2,000 linked tokens, mostly memecoins, tied to its stock token as criticism grows over the platform’s unregistered stock-token model and U.S. access limits.
Malaysia Weighs Huawei Chips for RM2 Billion AI Project
Malaysia is evaluating Huawei AI chips as a core component of a RM2 billion sovereign AI initiative aimed at strengthening control over national data, though procurement details remain unclear and the plan faces opposition from the U.S. government.



