Disclaimer:All content on this platform is sourced from the internet and is provided for informational purposes only. None of the content represents the views of this site, nor does it constitute investment advice. Please exercise caution when investing.
Zodiac Releases Security Incident Review: An ERC-1271 Validation Flaw Previously Allowed Attackers to Bypass Module Authentication
Svmuu News: The Zodiac team has released an analysis report on a security incident affecting the Zodiac Roles Modifier, revealing that the root cause of the vulnerability lies in a flaw in the ERC-1271 transaction signature verification logic: The system relied solely on the returned “magic value” to determine signature validity without verifying whether the call itself was successful. This could potentially mask a failed verification as a valid signature, thereby bypassing the module’s authentication mechanism. Zodiac clarified that this vulnerability can only be exploited under specific configurations; EOA role members and other deployments not using the relevant module are unaffected. Affected users have been notified, and a self-service detection and remediation tool has been launched. Meanwhile, in collaboration with white-hat teams, Zodiac has carried out asset recovery efforts; over 99% of potentially at-risk funds have been protected. The relevant contracts have been patched and passed an independent audit, and services have returned to normal.
Disclaimer: This content reflects the author's personal views only and does not constitute investment advice. If you find any violations, please Click to Report
24H Trending
-
Iranian Foreign Ministry: Iran and the U.S. Reach Agreement
-
Gate's Stock Contracts Section Launches Trading for 8 Perpetual Contracts, Including ADSK (Autodesk) and BKNG (Booking.com Holdings)
-
Binance Seven U-denominated perpetual contracts, including LRCX and KLAC, will be launched
-
Learn More About the ALTHEA Token (ALTH) and Its Decentralized Network
-
After going long on crude oil with 10x leverage, the position is showing a paper loss of $1.33 million; a certain address holds CL long positions worth $37.77 million
-
The OKX DEX xStocks Trading Competition is currently underway, with a total prize pool of 300,000 USDC
-
Morgan Stanley Updates Ethereum and Solana ETF Filings, Proposing a 0.14% Fee
-
Record-High AI-Driven Leveraged Bets in Asia: SK Hynix’s 2x Long ETF in South Korea Reaches $13 Billion in Assets Under Management
-
Iranian media report that Iran-U.S. negotiations have resulted in five key points
-
A "smart money" investor bet $320,000 on Argentina to beat Austria in the World Cup group stage
Recommended Reading




