Taiko ERC20 Vault attacked, losses exceed $1 million

robot
Abstract generation in progress

BlockBeats news. On June 22, security company Blockaid said that it detected an attack on Taiko’s ERC20 Vault on Ethereum, with losses exceeding $1 million.

Initial analysis shows that the vulnerability stems from a flaw in Taiko’s cross-chain bridge source-signal proof verification mechanism. The message proofs constructed by the attackers were still accepted by the Ethereum mainnet even without corresponding legitimate MessageSent events on the Taiko chain, enabling them to register and extract forged cross-chain messages, ultimately resulting in unauthorized release of assets from the ERC20 Vault.

TAIKO-1.18%
ETH0.06%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned