A frontrun attack named CPIMP on BSC targeted a wallet, stealing approximately $300 through transaction manipulation.
Security & Exploits ·
A wallet on the Binance Smart Chain was targeted by a frontrun attack labeled "CPIMP," resulting in a loss of approximately $300. According to an onchain message, the attack manipulated transaction ordering to execute a theft before the victim's transaction could complete. The compromised victim proxy address and attacker address were identified in the alert, along with a specific transaction hash documenting the exploit.
Frontrun attacks on BSC typically exploit the mempool by observing pending transactions and inserting malicious transactions ahead of them to capture value or drain funds. The alert warns against reusing the targeted contract, though the precise mechanics of how CPIMP achieves this frontrun vector remain unclear from the available information. The scale of the loss—$300—suggests a relatively small target, though it underscores an ongoing vulnerability class affecting decentralized protocols on the network.
What is not yet established is whether this represents an isolated incident or part of a broader campaign, whether the contract in question has known vulnerabilities, or what steps the affected party has taken to recover funds or prevent future exploitation.