扫码下载
BTC $61,940.74 +3.28%
ETH $1,606.57 +5.33%
BNB $583.89 +3.66%
XRP $1.12 +5.66%
SOL $64.02 +5.12%
TRX $0.3246 +1.90%
DOGE $0.0837 +6.60%
ADA $0.1612 +7.74%
BCH $223.89 +10.53%
LINK $7.60 +7.28%
HYPE $59.51 +2.57%
AAVE $62.20 +6.56%
SUI $0.7524 +12.54%
XLM $0.2113 +11.23%
ZEC $378.47 +4.67%
BTC $61,940.74 +3.28%
ETH $1,606.57 +5.33%
BNB $583.89 +3.66%
XRP $1.12 +5.66%
SOL $64.02 +5.12%
TRX $0.3246 +1.90%
DOGE $0.0837 +6.60%
ADA $0.1612 +7.74%
BCH $223.89 +10.53%
LINK $7.60 +7.28%
HYPE $59.51 +2.57%
AAVE $62.20 +6.56%
SUI $0.7524 +12.54%
XLM $0.2113 +11.23%
ZEC $378.47 +4.67%

GoPlus:402bridge 疑似被盗,超 200 位用户因授权过量导致被盗 USDC

2025-10-28 11:46:59
收藏

ChainCatcher 消息,GoPlus 中文社区发出安全警报,x402 跨链协议 @402bridge 疑似被盗,0xed1A 开头合约的 Creator 把 Owner 转给了 0x2b8F 地址,然后新 Owner 调用合约中 transferUserToken 方法转移所有已授权用户钱包剩余的 USDC。

Mint 前要先授权 USDC 给 @402bridge 合约,导致二百多用户因授权过多数量导致剩余 USDC 被转走,0x2b8F 地址共转移用户 17,693 枚 USDC,随后将 USDC 换成 ETH 后经过多次跨链交易跨到了 Arbitrum。建议参与过该项目的用户,请尽快取消相关授权;提醒用户在授权前检查授权地址是否为交互项目官方地址,仅授权所需数量,切勿无限授权;并注意定期检查授权,取消无用授权。

app_icon
ChainCatcher 与创新者共建Web3世界