GoPlus: 402bridge suspected of being hacked, over 200 users lost USDC due to excessive authorization.

robot
Abstract generation in progress

On October 28, GoPlus officially announced on social media that the x402 cross-chain protocol 402bridge is suspected to have been hacked. The contract creator transferred ownership to an address starting with 0x2b8F, and then the new contract owner called the transferUserToken method in the contract to transfer the remaining USDC from all authorized user wallets. It is reported that, due to the need to authorize USDC to the 402bridge contract before Minting, over 200 users had their remaining USDC transferred away because of excessive authorization. The address starting with 0x2b8F9 transferred a total of 17,693 USDC from users, and then converted the USDC into ETH, which was subsequently moved across multiple cross-chain transactions to Arbitrum. GoPlus advises users who have participated in this project to revoke the related authorization (0xed1AFc4DCfb39b9ab9d67f3f7f7d02803cEA9FC5) as soon as possible. Before granting authorization, check whether the authorization address is the official address of the interactive project, only authorize the necessary amount, and do not grant unlimited authorization. Regularly check authorizations and revoke unnecessary ones.

USDC0.01%
ETH-3.54%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
0/400
No comments
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
English
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)