Zodiac releases security incident report, ERC-1271 verification flaw previously allowed attackers to bypass module authentication
ChainCatcher reported that the Zodiac team has released an analysis report on a security incident affecting Zodiac Roles Modifier, disclosing that the root cause of the vulnerability lies in a flaw in the ERC-1271 transaction signature verification logic: the system determines signature validity solely based on the returned “magic value” without verifying whether the call itself was successful, which can result in failed verifications being disguised as valid signatures, thus bypassing the module’s authentication mechanism.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Salt Investments’ independent director Cheng Liang Chye to step down after Sept. 29 AGM
--Bluerock Homes Trust Keeps Quarterly Dividend at $0.125 a Share, Payable Oct. 5 to Holders of Record Sept. 25
UDR's 2026 FFO Estimate Lowered Amid Non-Recurring Expenses, Truist Says
Stellantis Shares Fall After Morgan Stanley Downgrade
