Futures
Access hundreds of perpetual contracts
CFD
Gold
One platform for global traditional assets
Options
Hot
Trade European-style vanilla options
Unified Account
Maximize your capital efficiency
Demo Trading
Introduction to Futures Trading
Learn the basics of futures trading
Futures Events
Join events to earn rewards
Demo Trading
Use virtual funds to practice risk-free trading
CFD
Stock CFD Derivatives
US Stocks
Access real US stocks and ETFs
HK Stocks
Trade quality Hong Kong-listed stocks
Korean Stocks
SK Hynix
Real Korean stocks and top assets
Stock Futures
High leverage, 24/7 trading
Tokenized Stocks
Backed by real stock assets
IPO Access
Unlock full access to global stock IPOs
GUSD
3.8%
Mint GUSD for Treasury RWA yields
Stocks Activities
Trade Popular Stocks and Unlock Generous Airdrops
Launch
CandyDrop
Collect candies to earn airdrops
Launchpool
Quick staking, earn potential new tokens
HODLer Airdrop
Hold GT and get massive airdrops for free
Pre-IPOs
Unlock full access to global stock IPOs
Alpha Points
Trade on-chain assets and earn airdrops
Futures Points
Earn futures points and claim airdrop rewards
Promotions
AI
Gate AI
Your all-in-one conversational AI partner
Gate AI Bot
Use Gate AI directly in your social App
GateClaw
Gate Blue Lobster, ready to go
Gate for AI Agent
AI infrastructure, Gate MCP, Skills, and CLI
Gate Skills Hub
10K+ Skills
From office tasks to trading, the all-in-one skill hub makes AI even more useful.
Coinbase lost $300,000 due to an MEV attack and a wallet misconfiguration.
Coinbase lost about $300,000 due to incorrectly configured interaction with the exchange contract of the decentralized platform 0x. According to security researcher from Venn Network under the nickname deeberiroz, the exchange's corporate wallet approved token transfers to a contract not intended to receive such permissions.
The 0x exchange contract can be called without restrictions, making it a convenient target for bots tracking erroneous operations. According to the data, after issuing token approvals, including Amp, MyOneProtocol, DEXTools, and Swell Network, MEV bots withdrew funds from the exchange account intended for collecting fees.
Coinbase's Chief Security Officer Philip Martin confirmed the incident and stated that the loss of funds was related to a change in the configuration of the corporate wallet. He emphasized that customer funds were not affected and that the situation is an isolated incident.
The researcher noted that a similar scheme had previously led to incidents during the Zora airdrop on the Base network. At that time, bots exploited user errors to unauthorizedly withdraw coins.
Coinbase has already revoked permissions for problematic tokens and transferred assets to a new corporate wallet. This will help prevent similar attacks from happening again.
The incident, according to some experts, has once again drawn attention to the risks associated with automatic interactions of smart contracts and the vulnerability to MEV-bot attacks in the DeFi ecosystem.
Let us remind you that we wrote that Flashbots specialists called MEV bots a scaling problem for blockchains.