mythril

Warn

Audited by Socket on Aug 4, 2026

1 alert found:

Security
SecurityMEDIUM
examples/analyze-contract/README.md

The contract is highly insecure due to two clear issues: (1) reentrancy in withdraw() caused by updating user balance after an external call (CEI violation), enabling repeated withdrawals, and (2) an unprotected emergencyWithdraw(address) that lets any caller drain the entire contract balance to an arbitrary address. No evidence of obfuscated or stealthy malware behavior is present; the danger stems from straightforward exploitable logic flaws.

Confidence: 88%Severity: 90%
Audit Metadata
Analyzed At
Aug 4, 2026, 12:37 AM
Package URL
pkg:socket/skills-sh/JustaName-id%2Fcryptoskills%2Fmythril%2F@60c73b5b07ecac4a2dd3e682f7f18b6f553c1057f2c702cebd068dd18c3518cf
Security Audit — socket — mythril