An attack on Request Finance's platform on September 10 compromised a single user by exploiting the frontend system. Attackers injected authorization commands into a contract that mimicked the legitimate one in name, address, and partial ABI interface. During a payment transaction, the victim inadvertently authorized the malicious contract to consume unlimited USDC. In response, Request Finance has enhanced its security measures and monitoring protocols to prevent future incidents.