Foresight News reports that Pavel Shabarkin (@shabarkin) revealed on X a security vulnerability in Scroll, which allows Scroll L2 to indefinitely reorganize, causing the chain to stop operating and affecting over 100 million USD in TVL. Scroll has failed to effectively address this issue.
He stated that he first reported the critical security vulnerability of Scroll L2 on February 17, but Scroll downplayed the severity of the problem and classified it as a known issue. Shabarkin requested investigation and intervention from Immunefi, but Scroll's handling of the issue was insufficient.
Ultimately, Shabarkin publicly disclosed the problem to highlight Scroll's poor security management, unfair resolution process, and inadequate attitude towards white hats.