Web Analytics
Coinpaper
2026-05-26 08:30:00

Squid Clarifies Role After $3.2M Gnosis Safe Exploit

The project clarified that the vulnerable contract was not built, deployed, or operated by Squid, despite early reports linking the exploit to its protocol. According to the team, the compromised module independently integrated with Squid among other protocols, while Squid’s core router infrastructure was unaffected throughout the attack. Gnosis Safe Exploit Drains $3.2M A third-party module connected to the Gnosis Safe ecosystem was exploited across the Ethereum and Base networks, which resulted in approximately $3.2 million being drained from 86 different Safes in a matter of two hours. Blockchain security firms Blockaid and PeckShield were among the first to report details surrounding the incident. The vulnerable contract was verified on Basescan under the name “SquidRouterModule,” which initially led to confusion due to its association with Squid. However, Squid quickly clarified that the contract was not built, deployed, or operated by the project itself. Pseudonymous Squid co-founder Fig stated in a post on X that the compromised module was unrelated to Squid’s core infrastructure. According to the team, the protocol’s main router architecture stayed completely separate and was not affected by the exploit at all. The attack was reportedly made possible because the module accepted a caller-supplied constant string as proof that a transaction message was secure. By passing this value, attackers were allegedly able to bypass signature verification mechanisms and execute arbitrary call data from victim wallets. Squid explained that this flaw effectively gave attackers the ability to spend tokens held in affected Safes without requiring legitimate wallet approvals. Security researchers said the exploit relied on Foundry-based exploit contracts that targeted the module’s DelegateBundler execution path. According to Blockaid , the attackers impersonated authorized delegates tied to each Safe and initiated arbitrary token swaps through Uniswap V3 liquidity pools. The stolen assets were converted into an attacker-created worthless token known as “u” through specially seeded liquidity pools controlled by the exploiter. After routing the assets through these pools, the attacker reportedly removed liquidity and consolidated the proceeds into approximately 3.07 million DAI. PeckShield stated that the funds are currently being held in a wallet beginning with “0xa447...54859.” Squid criticized early public reporting that incorrectly connected the exploit directly to its protocol. The team explained that the vulnerable contract merely shared the Squid name and independently integrated with several protocols, including Squid, without direct involvement from the project itself.

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.