On-chain alert: proxy contract on BSC detected with suspicious controller capable of upgrading implementation, overwriting storage, and draining assets.
Security & Exploits ·
An on-chain security alert flagged a proxy contract at address 0x5eF850919739772622ae6968C9d05fCBD326BD12 on the Binance Smart Chain, warning that it may have been compromised by a suspicious controller contract (0xb648Ef46F790e17533a126E2469C70f7e729eD4f). The alert was broadcast via on-chain message from address 0xc97bbeee2839c1b1dbe054c797f2d285e97abf54 and cited a specific transaction as evidence of the suspicious activity.
According to the warning, the controller contract may be capable of upgrading the proxy's implementation logic, overwriting storage variables, executing arbitrary delegatecalls, or draining assets held by the proxy. The alert suggested immediate mitigation steps, including pausing the affected protocol, revoking relevant permissions, inspecting the implementation and admin storage slots, migrating funds to safety, and rotating ownership or admin keys.
The alert did not specify which project or token the proxy contract serves, the scope of potential asset exposure, whether the suspicious controller has already executed any harmful actions, or what steps the affected protocol operators may have already taken in response.