Gate Square “Creator Certification Incentive Program” — Recruiting Outstanding Creators!
Join now, share quality content, and compete for over $10,000 in monthly rewards.
How to Apply:
1️⃣ Open the App → Tap [Square] at the bottom → Click your [avatar] in the top right.
2️⃣ Tap [Get Certified], submit your application, and wait for approval.
Apply Now: https://www.gate.com/questionnaire/7159
Token rewards, exclusive Gate merch, and traffic exposure await you!
Details: https://www.gate.com/announcements/article/47889
GoPlus: Multiple early x402 projects have high-risk vulnerabilities, including excessive authorization, signature replay, honeypot traps, and unlimited minting.
According to Deep Tide TechFlow news, on November 17, a report by GoPlus Security revealed that the agency conducted security risk scans on over 30 x402 ecological projects and found multiple projects with serious security vulnerabilities.
The scan results indicate that the main risk types include excessive authorization, signature replay, honeypot traps, and infinite minting, among others. Specifically, the transferERC20 function of the FLOCK project allows the owner to withdraw any amount of tokens from the contract; the crosschainMint function of the x420 project allows for unlimited minting; and the manualSwap function of the PENG project permits the owner to withdraw ETH from the contract.
Several security incidents have occurred previously, including an excessive authorization vulnerability attack on @402bridge on October 28, resulting in the malicious transfer of USDC from over 200 user accounts; on November 12, Hello402 faced infinite minting and liquidity issues.