Binance Square
0
0
Jelajahi berita kripto terbaru
⚡️ Ikuti diskusi terbaru di kripto
💬 Berinteraksilah dengan kreator favorit Anda
👍 Nikmati konten yang menarik minat Anda
Email/Nomor Ponsel

Kreator Terkait

白狐09
@monkist

Jelajahi Konten Lainnya dari Kreator

--
Ethereum Deposited into Tornado Cash Following Delegation Contract Exploit A new security incident has occurred within the Ethereum ecosystem after an attacker was identified depositing 95 ETH into the transaction-mixing service Tornado Cash. According to a report from CertiK Alert, the deposited funds were valued at approximately 280,000 US dollars based on prices at the time of the incident. This action took place shortly after the attacker successfully exploited a delegation contract related to EIP-7702. The exploit originated from a delegation contract that had not been properly initialized. This vulnerability allowed an external party to take over ownership rights of the contract. In this case, the attacker gained full control over the delegation contract, granting them authority to manage the assets associated with it. Once ownership was transferred, all funds stored in the delegation address were immediately withdrawn by the attacker without resistance. After withdrawing the funds, the attacker proceeded to deposit 95 ETH into Tornado Cash. The use of mixing services such as Tornado Cash is commonly intended to obscure on-chain transaction trails, making it more difficult to trace the subsequent movement of funds. This pattern frequently appears in smart contract exploitation cases, particularly when attackers attempt to distance stolen assets from their original source. This incident once again highlights the critical importance of proper contract initialization, especially in newer mechanisms such as EIP-7702 delegation. Contracts that are not correctly initialized can expose severe ownership vulnerabilities, enabling asset takeovers without the need to breach more complex security systems. For developers and auditors, this case serves as a reminder that even small oversights during the deployment stage can have significant consequences for fund security within the blockchain network. #ETH $ETH
--
Sitemap
Preferensi Cookie
S&K Platform