Zodiac releases security incident report, ERC-1271 verification flaw previously allowed attackers to bypass module authentication
ChainCatcher reported that the Zodiac team has released an analysis report on a security incident affecting Zodiac Roles Modifier, disclosing that the root cause of the vulnerability lies in a flaw in the ERC-1271 transaction signature verification logic: the system determines signature validity solely based on the returned “magic value” without verifying whether the call itself was successful, which can result in failed verifications being disguised as valid signatures, thus bypassing the module’s authentication mechanism.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
PUMP defends 50-day MA – Is Pump.fun’s bullish trend still intact?

Saylor outlines ‘bill of digital rights’ to help build prosperity in future economy
Weekly token unlock: CARDS unlocks tokens worth tens of millions of dollars

