• bitcoinBitcoin (BTC) $ 80,247.00
  • ethereumEthereum (ETH) $ 2,285.57
  • tetherTether (USDT) $ 0.999597
  • bnbBNB (BNB) $ 674.16
  • xrpXRP (XRP) $ 1.44
  • usd-coinUSDC (USDC) $ 1.00
  • solanaSolana (SOL) $ 93.34
  • tronTRON (TRX) $ 0.350493
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.04
  • dogecoinDogecoin (DOGE) $ 0.112211
  • whitebitWhiteBIT Coin (WBT) $ 59.00
  • usdsUSDS (USDS) $ 0.999672
  • cardanoCardano (ADA) $ 0.268620
  • hyperliquidHyperliquid (HYPE) $ 39.38
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • leo-tokenLEO Token (LEO) $ 10.02
  • zcashZcash (ZEC) $ 553.01
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • bitcoin-cashBitcoin Cash (BCH) $ 436.54
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • chainlinkChainlink (LINK) $ 10.36
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • moneroMonero (XMR) $ 406.32
  • canton-networkCanton (CC) $ 0.153201
  • the-open-networkToncoin (TON) $ 2.18
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • stellarStellar (XLM) $ 0.161735
  • suiSui (SUI) $ 1.23
  • susdssUSDS (SUSDS) $ 1.08
  • litecoinLitecoin (LTC) $ 57.83
  • usd1-wlfiUSD1 (USD1) $ 0.999343
  • daiDai (DAI) $ 0.999704
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • avalanche-2Avalanche (AVAX) $ 9.89
  • memecoreMemeCore (M) $ 3.18
  • hedera-hashgraphHedera (HBAR) $ 0.092780
  • wethWETH (WETH) $ 2,268.37
  • ethena-usdeEthena USDe (USDE) $ 0.999393
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • rainRain (RAIN) $ 0.007530
  • usdt0USDT0 (USDT0) $ 0.998824
  • global-dollarGlobal Dollar (USDG) $ 0.999748
  • paypal-usdPayPal USD (PYUSD) $ 0.999774
  • crypto-com-chainCronos (CRO) $ 0.078007
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • bittensorBittensor (TAO) $ 300.78
  • tether-goldTether Gold (XAUT) $ 4,681.67
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • uniswapUniswap (UNI) $ 3.70
  • polkadotPolkadot (DOT) $ 1.37
  • pax-goldPAX Gold (PAXG) $ 4,680.26
  • mantleMantle (MNT) $ 0.662797
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.066773
  • nearNEAR Protocol (NEAR) $ 1.60
  • ondo-financeOndo (ONDO) $ 0.391128
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.13
  • pi-networkPi Network (PI) $ 0.171216
  • okbOKB (OKB) $ 85.14
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • falcon-financeFalcon USD (USDF) $ 0.999304
  • htx-daoHTX DAO (HTX) $ 0.000002
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • internet-computerInternet Computer (ICP) $ 3.17
  • skySky (SKY) $ 0.074957
  • pepePepe (PEPE) $ 0.000004
  • aster-2Aster (ASTER) $ 0.669834
  • ripple-usdRipple USD (RLUSD) $ 0.999935
  • usddUSDD (USDD) $ 0.999725
  • aaveAave (AAVE) $ 96.79
  • ethereum-classicEthereum Classic (ETC) $ 9.36
  • bitget-tokenBitget Token (BGB) $ 2.06
  • bfusdBFUSD (BFUSD) $ 0.999200
  • morphoMorpho (MORPHO) $ 2.06
  • kucoin-sharesKuCoin (KCS) $ 8.32
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • ethenaEthena (ENA) $ 0.119417
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • algorandAlgorand (ALGO) $ 0.119370
  • cosmosCosmos Hub (ATOM) $ 2.08
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.099343
  • quant-networkQuant (QNT) $ 72.61
  • kaspaKaspa (KAS) $ 0.037812
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • united-stablesUnited Stables (U) $ 0.999638
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.08
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.23
  • render-tokenRender (RENDER) $ 1.89
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • blockchain-capitalBlockchain Capital (BCAP) $ 105.87
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • nexoNEXO (NEXO) $ 0.907972
  • worldcoin-wldWorldcoin (WLD) $ 0.269833
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • aptosAptos (APT) $ 1.08
  • siren-2Siren (SIREN) $ 1.21
  • wbnbWrapped BNB (WBNB) $ 759.61
  • stable-2​​Stable (STABLE) $ 0.038576
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • arbitrumArbitrum (ARB) $ 0.136062
  • filecoinFilecoin (FIL) $ 1.07
  • gatechain-tokenGate (GT) $ 7.28
  • justJUST (JST) $ 0.090820
  • jupiter-exchange-solanaJupiter (JUP) $ 0.228174
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • flare-networksFlare (FLR) $ 0.008706
  • build-onBUILDon (B) $ 0.717959
  • pump-funPump.fun (PUMP) $ 0.001951
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • venice-tokenVenice Token (VVV) $ 14.64
  • vechainVeChain (VET) $ 0.007469
  • xdce-crowd-saleXDC Network (XDC) $ 0.032048
  • usdtbUSDtb (USDTB) $ 0.999271
  • beldexBeldex (BDX) $ 0.079880
  • bonkBonk (BONK) $ 0.000007
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • dexeDeXe (DEXE) $ 13.03
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • ousgOUSG (OUSG) $ 115.22
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • ghoGHO (GHO) $ 0.999426
  • injective-protocolInjective (INJ) $ 5.85
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.009213
  • clbtcclBTC (CLBTC) $ 76,920.00
  • dashDash (DASH) $ 44.84
  • official-trumpOfficial Trump (TRUMP) $ 2.36
  • usual-usdUsual USD (USD0) $ 0.998031
  • hash-2Provenance Blockchain (HASH) $ 0.010500
  • midnight-3Midnight (NIGHT) $ 0.033077
  • yldsYLDS (YLDS) $ 0.999809
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.797539
  • blockstackStacks (STX) $ 0.282202
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • a7a5A7A5 (A7A5) $ 0.012987
  • tbtctBTC (TBTC) $ 70,942.00
  • skyaiSkyAI (SKYAI) $ 0.499598
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.54
  • unibaseUnibase (UB) $ 0.202084
  • true-usdTrueUSD (TUSD) $ 0.999785
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000089
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.219705
  • billions-networkBillions Network (BILL) $ 0.195089
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • labLAB (LAB) $ 6.21
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • edgexedgeX (EDGE) $ 1.35
  • kite-2Kite (KITE) $ 0.208428
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • sei-networkSei (SEI) $ 0.068396
  • euro-coinEURC (EURC) $ 1.17
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • cocaCOCA (COCA) $ 1.30
  • aerodrome-financeAerodrome Finance (AERO) $ 0.481241
  • chilizChiliz (CHZ) $ 0.043228
  • celestiaCelestia (TIA) $ 0.478999
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • humanityHumanity (H) $ 0.237205
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • adi-tokenADI (ADI) $ 4.03
  • usdgoUSDGO (USDGO) $ 0.999687
  • spx6900SPX6900 (SPX) $ 0.449153
  • tezosTezos (XTZ) $ 0.381372
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • curve-dao-tokenCurve DAO (CRV) $ 0.273518
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.03
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • spiko-amundi-overnight-swap-fund-eurSpiko Amundi Overnight Swap Fund (EUR) (EURSAFO) $ 1.18
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.997520
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • bianrensheng币安人生 (BinanceLife) (币安人生) $ 0.408202
  • apxusdapxUSD (APXUSD) $ 0.999841
  • sun-tokenSun Token (SUN) $ 0.020084
  • usxUSX (USX) $ 0.999802
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • ether-fiEther.fi (ETHFI) $ 0.451731
  • layerzeroLayerZero (ZRO) $ 1.47
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • conflux-tokenConflux (CFX) $ 0.069838
  • doublezeroDoubleZero (2Z) $ 0.103885
  • noonNoon (NOON) $ 0.751949
  • monadMonad (MON) $ 0.030166
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • kinesis-goldKinesis Gold (KAU) $ 148.91
  • pendlePendle (PENDLE) $ 2.02
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • lido-daoLido DAO (LDO) $ 0.401714
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • flokiFLOKI (FLOKI) $ 0.000035
  • gnosisGnosis (GNO) $ 129.01
  • zebec-networkZebec Network (ZBCN) $ 0.003452
  • bitcoin-svBitcoin SV (BSV) $ 16.71
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06

402bridge hack leads to over 200 users drained of USDC

0 4


GoPlus has detected unusual authorizations linked to 402bridge, leading to more than 200 users losing USDC in excessive authorizations made by the protocol.

Summary
  • The x402bridge protocol suffered a breach caused by a leaked admin private key, allowing an attacker to steal about $17,693 in USDC from over 200 users.
  • The hack reveals vulnerabilities related to the x402 mechanism which relies on private keys stored on a server to enable admin privileges to on-chain addresses that may distribute and authorize transactions excessively.

On Oct. 28, the web3 security company GoPlus Security’s Chinese social media account alerted users of a suspected security breach involving the x402 cross-layer protocol, x402bridge. The hack occurred just days after the protocol was launched on-chain.

Before minting USDC (USDC), the action must first be authorized by the Owner contract. In this case, excessive authorizations led to more than 200 users losing their remaining stablecoins in a series of transfers.

GoPlus (GPS) noted that the creator of the contract beginning with 0xed1A made an ownership transfer to the address 0x2b8F, granting the new address special administrative privileges held by x402bridge team, such as the ability to modify key settings and move assets.

Shortly after gaining control, the new owner address executed a function called “transferUserToken.” This function allowed the address to drain all remaining USD Coins from wallets that had previously granted authorization to the contract.

402bridge suffered a breach that led to the hacker draining USDC from user wallets | Source: GoPlus Security

402bridge suffered a breach that led to the hacker draining USDC from user wallets | Source: GoPlus Security
You might also like: x402 tokens surpass $800m value after BNB launch

In total, the 0x2b8F address drained about $17,693 worth of USDC from users before exchanging the stolen funds into ETH. The newly-converted ETH was later transferred to Arbitrum through multiple cross-chain transactions.

As a result of the breach, GoPlus Security recommended users who hold wallets on the protocol to cancel any ongoing authorizations as soon as possible. The security firm also reminded users to check whether the authorized address is the official address of the project before approving any transfers.

In addition, users are encouraged to only authorize the necessary amount and never grant unlimited authorizations to contracts. Overall, they are urged to regularly check authorizations and revoke unnecessary ones.

The hack occurs just a a few days after x402 transactions began seeing a boom in usage. On Oct. 27, the market value of x402 tokens surpassed $800 million for the first time. Meanwhile, Coinbase’s x402 protocol recorded 500,000 transactions in a single week, indicating a 10,780% increase compared to the previous month.

The x402 protocol enables both humans and AI agents to make transactions using HTTP 402 Payment Required status code to enable instant, programmatic payments for APIs and digital content. This means that they can make instant stablecoin payments over HTTP.

What caused the alleged hack on 402bridge?

On-chain sleuths and blockchain security firms like SlowMist have concluded that the breach was most likely caused by a private key leak. However, they did not rule out the possibility of insider involvement. Due to the breach, the project has halted all activity and its website is now offline.

The official account for 402bridge has since addressed the exploit, confirming that it was indeed caused by a private key leak which led to more than a dozen team test wallets and main wallets on the protocol getting compromised in the process. The team is currently investigating the incident and has reported it to the authorities.

“We have promptly reported the incident to law enforcement authorities and will keep the community informed with timely updates as the investigation progresses,” said 402bridge.

In a separate post that was shared earlier, the protocol explained how the x402 mechanism works. It requires users to sign or approve transactions via the web interface. The authorization is then sent to a back-end server that extracts the funds and mints the tokens.

“When we onboard to x402scan.com, we need to store the private key on the server in order to call contract methods,” said the protocol.

“This step may expose admin privileges because the admin private key is connected to the internet at this stage, potentially leading to a leak of permissions,” the team continued.

As a result, if the private key is stolen by a hacker, then they are able to take over all admin privileges and reassign user funds to the hacker’s contract.

You might also like: Coinbase x402 protocol logs 50,000 transactions—up 10,000%



Source link

Leave A Reply

Your email address will not be published.