GoPlus: 402bridge Suspected of Theft, Over 200 Users Have USDC Stolen Due to Overauthorization
BlockBeats News, October 28th, the official GoPlus announcement on social media stated that the x402 cross-chain protocol 402bridge was suspected of being stolen. The contract creator transferred ownership to an address starting with 0x2b8F, and then the new contract owner called the transferUserToken method in the contract to transfer all remaining USDC authorized by users' wallets.
Reportedly, due to the need to authorize USDC to the 402bridge contract before minting, over 200 users had their remaining USDC transferred away due to authorizing an excessive amount. The address starting with 0x2b8F9 transferred a total of 17693 USDC from users and then swapped the USDC for ETH, which was subsequently transferred across multiple chains to Arbitrum.
GoPlus recommends that users who participated in the project promptly revoke (0xed1AFc4DCfb39b9ab9d67f3f7f7d02803cEA9FC5) the relevant authorizations. Before authorizing, check if the authorization address is the official address of the project. Only authorize the required amount and avoid unlimited authorizations. Regularly check authorizations and revoke those that are no longer needed.
You may also like

Pantera Capital: How has Crypto as a Service affected us?

Pantera Capital: What changes have we made when crypto is treated as a service?

Wall Street Shorts ETH: Vitalik is aware and has front-run, while Tom Lee remains oblivious

Social Capital CEO: How Equity Tokenization is Reshaping Capital Markets from US Stocks to SpaceX?

CoinGecko Report: Surge of 346% vs Dip of 20.8%, The Wild Rise of DEX

a16z: The Real Opportunity of Stablecoins Lies Not in Disruption but in Filling Gaps

Mining Exodus: Someone Holds $12.8 Billion AI Order

March 6 Market Key Intelligence, How Much Did You Miss?

a16z: The True Opportunity of Stablecoins is in Complementing, Not Disrupting
Predict LALIGA Matches, Shoot Daily & Win BTC, USDT and WXT on WEEX
The WEEX × LALIGA campaign brought together football excitement and crypto participation through a dynamic interactive experience. During the event, users predicted matches, completed trading tasks, and took daily shots to compete for rewards including BTC, USDT, WXT, and exclusive prizes.

Ray Dalio Dialogue: Why I'm Betting on Gold and Not Bitcoin

Who Took the Money in the AI Era? A Must-See Investment Checklist for HALO Asset Trading

Wall Street Bears Target Ethereum: Vitalik In the Know Takes Flight, Tom Lee Remains Bullish

Pump.fun Hacker Steals $2 Million, Receives 6-Year Prison Sentence, Opts for 'Self-Detonation'

6% Annual Percentage Yield as Musk Declares War on Traditional Banks

36 years, 4 wars, 1 script: How does capital price the world in conflict?

Mining Companies' Great Migration: Some Have Already Secured $12.8 Billion in AI Orders

What Is Vibe Coding? How AI Is Changing Web3 & Crypto Development
What is vibe coding? Learn how AI coding tools are lowering the barrier to Web3 development and enabling anyone to build crypto applications.