Zodiac releases security incident report, ERC-1271 verification flaw previously allowed attackers to bypass module authentication
ChainCatcher reported that the Zodiac team has released an analysis report on a security incident affecting Zodiac Roles Modifier, disclosing that the root cause of the vulnerability lies in a flaw in the ERC-1271 transaction signature verification logic: the system determines signature validity solely based on the returned “magic value” without verifying whether the call itself was successful, which can result in failed verifications being disguised as valid signatures, thus bypassing the module’s authentication mechanism.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Gold: Modest gains in risk-off backdrop – Deutsche Bank
Euro gains against Canadian Dollar ahead of Eurozone HICP data
Major European stock indices open collectively higher
Broadcom (AVGO.US) syndicate begins raising 60 billions USD to supply chip "ammunition" for companies like Anthropic
According to informed sources, Broadcom's Wall Street syndicate is initiating the raising of $60 billion in new financing to purchase artificial intelligence (AI) chips, with beneficiaries including Anthropic PBC and other companies.
