Post-exploit response score
Dolomite's assessment for RD-F-081 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
Post-exploit response scored across four sub-dimensions: (1) Compensation completeness = 5/5: 100% of 187 victims made whole by 2024-03-26 (90% recovered from exploiter, 10% from treasury). (2) Transparency = 4/5: post-mortem published 9 days post-exploit, named root cause, technical mechanism, victim count, and named author. (3) Root-cause depth = 4/5: specific code-level analysis of OrderHelper.check() gas-optimisation flaw and filledAmountS non-zero return value bypass; Loopring Trade Delegate interaction chain documented. (4) Operational recovery speed = 5/5: system suspended within less than 1 hour of notification. Composite average >= 4 = green.
Sources #
- URLLegacy Smart Contract Vulnerability: Post Mortem AnalysisDolomite post-mortem — full response analysis, compensation, root cause, timelineretrieved 2026-05-16
Methodology #
Curator-score (1–5) the most recent incident response on: compensation completeness, transparency of disclosure, root-cause analysis depth, and operational recovery speed.
See the full factor methodology and distribution across all protocols →