- CORE0%
- SAFE0%
- GNO0%
- ETH0%
BlockBeats News, May 25th. Cross-chain protocol Squid issued a statement in response to a security incident, indicating that the attack did not occur in the Squid core protocol or Router contract. Instead, it was a third-party Gnosis Safe module named "SquidRouterModule" that had a severe vulnerability, leading to the theft of around $3.2 million in assets from Base and Ethereum.
Squid stated that this module was not developed, deployed, or operated by the official team but was merely an integration of Squid's functionality into a third-party smart wallet product. The attacker was able to bypass validation by inputting a public string, enabling them to execute arbitrary calls to steal funds. The affected wallet had previously designated this module as a trusted Safe Module, allowing asset transfers without the need for a signature.
Squid emphasized that its official Router contract, user funds, authorizations, and integrations were not affected and no further action is required.
免責聲明:當前內容均來自第三方觀點或由AI直接翻譯第三方觀點,CoinEx不保證內容的真實性、準確性和原創性,不構成CoinEx相關的任何投資建議。數字資產價格波動劇烈,請注意潛在風險。
- 幣種價格24H漲跌