A crypto wallet breach allowed an attacker to withdraw approximately 2,900 rsETH, valued at about US$7.8 million, from a Gnosis Safe wallet on the Ethereum network. The incident occurred on Tuesday and drew the attention of several blockchain security-focused companies.

Despite the involvement of a Safe wallet, initial analyses rule out a vulnerability in the platform's main contracts. According to the companies that investigated the case, the issue arose in an auxiliary contract authorized by the wallet owner himself.

Companies BlockSec, Blockaid, and SlowMist monitored the activity and identified the source of the vulnerability. In addition, an automated bot known as “yoink” anticipated the malicious transaction and managed to capture the assets before the original attacker.

The wallet owner had allowed an auxiliary contract to move funds on their behalf. This kind of setup is common in operations involving automated strategies, the execution of multiple transactions, and position management in decentralized protocols.

#Criptomoedas #Technology