Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Security Research Institute: Several x402 ecosystem projects have been found to have risks, including over-authorization and signature replay issues.

Security Research Institute: Several x402 ecosystem projects have been found to have risks, including over-authorization and signature replay issues.

CointimeCointime2025/11/17 12:06
By:Cointime

On November 17, GoPlus Security Research Institute conducted a detailed security risk scan on more than 30 x402 projects and community warning risk projects in Binance Wallet and OKX Wallet, finding that the following projects have risks of excessive authorization, signature replay, HonyPot (Pixiu token), and unlimited minting.

FLOCK (0x5ab3): The transferERC20 function allows the owner to withdraw any amount of any token from the contract.

x420 (0x68e2): The crosschainMint function can mint tokens without restriction.

U402 (0xd2b3): The mintByBond function allows unlimited token minting by bond.

MRDN (0xe57e): The withdrawToken function allows the owner to withdraw any amount of any token from the contract.

PENG (0x4444ee, 0x444450, 0x444428): The manualSwap function allows the owner to withdraw ETH from the contract, and the transferFrom function bypasses allowance checks for special accounts.

x402Token (0x40ff): The transferFrom function bypasses allowance checks for special accounts.

x402b (0xd8af5f): The manualSwap function allows the owner to withdraw ETH from the contract, and the transferFrom function bypasses allowance checks for special accounts.

x402MO (0x3c47df): The manualSwap function allows the owner to withdraw ETH from the contract, and the transferFrom function bypasses allowance checks for special accounts.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

South Korea's Cryptocurrency Reform: Will New Regulations Enhance Confidence While Preserving Innovation?

- South Korea's National Assembly plans to enforce strict VASP regulations requiring criminal record checks for all major shareholders, including foreign investors. - The law mandates re-evaluation of existing VASPs, creating compliance challenges for smaller firms with complex ownership structures. - By extending oversight to global criminal records, the reform sets a potential international precedent and could reshape cross-border crypto investments. - While critics warn of stifled innovation, proponents

Bitget-RWA2025/11/27 02:27
South Korea's Cryptocurrency Reform: Will New Regulations Enhance Confidence While Preserving Innovation?

Bitcoin News Update: Tether’s Risky Asset Holdings Challenge Stablecoin Reliability

- S&P Global downgrades Tether's USDT to "5 (weak)" due to high-risk reserves and transparency gaps. - Tether's 5.6% Bitcoin exposure exceeds S&P's 3.9% overcollateralization threshold, risking undercollateralization if prices fall. - Tether defends practices with quarterly audits and $10B 2025 profit, dismissing the downgrade as outdated. - Recent crypto market turmoil and past stablecoin collapses highlight risks in opaque reserve management. - Tether's resilience amid crises contrasts with S&P's warning

Bitget-RWA2025/11/27 02:27
Bitcoin News Update: Tether’s Risky Asset Holdings Challenge Stablecoin Reliability