BTC $62,685.49 -1.47%
ETH $1,870.18 -0.83%
BNB $607.08 -0.65%
XRP $1.00 -0.88%
SOL $75.39 -0.71%
TRX $0.3333 -0.50%
DOGE $0.0694 -1.41%
ADA $0.1816 -1.97%
BCH $204.79 -4.69%
LINK $8.77 +0.90%
HYPE $56.44 -1.01%
AAVE $86.76 -2.45%
SUI $0.6768 -1.65%
XLM $0.1583 -1.36%
ZEC $486.34 -1.84%
BTC $62,685.49 -1.47%
ETH $1,870.18 -0.83%
BNB $607.08 -0.65%
XRP $1.00 -0.88%
SOL $75.39 -0.71%
TRX $0.3333 -0.50%
DOGE $0.0694 -1.41%
ADA $0.1816 -1.97%
BCH $204.79 -4.69%
LINK $8.77 +0.90%
HYPE $56.44 -1.01%
AAVE $86.76 -2.45%
SUI $0.6768 -1.65%
XLM $0.1583 -1.36%
ZEC $486.34 -1.84%

Zodiac released a security incident report, stating that the ERC-1271 verification flaw had previously allowed attackers to bypass module authentication

2026-06-20 11:27:42

The Zodiac team released a security incident analysis report regarding the impact on the Zodiac Roles Modifier, disclosing that the root cause of the vulnerability lies in a flaw in the ERC-1271 transaction signature verification logic: the system only determines the validity of the signature based on the returned "magic value" without verifying whether the call itself was successful, which may disguise a failed verification as a valid signature, bypassing the module authentication mechanism.

app_icon
ChainCatcher Building the Web3 world with innovations.