GoPlus Warns of Suspected Theft via 402bridge Cross-Chain Protocol

GoPlus Security identified abnormal authorizations in 402bridge, resulting in over 200 users losing USDC, highlighting ongoing risks in cross-chain protocol operations.

ETH
USDC
ARB

Summary

GoPlus Security reported that unusual authorizations in the 402bridge cross-chain protocol led to losses of USDC from more than 200 user wallets. This incident followed a transfer of contract ownership to address 0x2b8F, after which 17,693 USDC was withdrawn, converted to ETH, and moved to Arbitrum. The web3 security firm has urged users to revoke excessive token approvals to mitigate potential exploitation risks.

Terms & Concepts
  • Cross-Chain Protocol: A blockchain technology enabling asset transfers between different networks, often using smart contracts and bridges.
  • USDC: A stablecoin pegged to the U.S. dollar, commonly used for transactions in the cryptocurrency market.
  • Arbitrum: A layer-2 Ethereum scaling solution using roll-ups to enable faster and cheaper transactions while maintaining security.