Svmuu News: The Zodiac team has released an analysis report on a security incident affecting the Zodiac Roles Modifier, revealing that the root cause of the vulnerability lies in a flaw in the ERC-1271 transaction signature verification logic: The system relied solely on the returned “magic value” to determine signature validity without verifying whether the call itself was successful. This could potentially mask a failed verification as a valid signature, thereby bypassing the module’s authentication mechanism. Zodiac clarified that this vulnerability can only be exploited under specific configurations; EOA role members and other deployments not using the relevant module are unaffected. Affected users have been notified, and a self-service detection and remediation tool has been launched. Meanwhile, in collaboration with white-hat teams, Zodiac has carried out asset recovery efforts; over 99% of potentially at-risk funds have been protected. The relevant contracts have been patched and passed an independent audit, and services have returned to normal.