GetChain News
中简 中繁 EN
GetChain News
Toggle sidebar
Safe

Safe

Safe
Active

Multi-signature wallet provider

News Heat Trend

Project Overview

Safe is a leading provider of multi-signature wallets and a digital asset management platform. Its smart contract wallets enable businesses to manage funds through predefined access-control schemes with multiple private keys (multisig) and other access modules.

Hundreds of Millions of Dollars in Bitcoin Transferred to IRGC, US Treasury Sanctions Iranian Exchange BitBank

Odaily News: The U.S. Department of the Treasury's Office of Foreign Assets Control (OFAC) has announced sanctions against Tehran-based crypto exchange BitBank, alleging that the platform transferred hundreds of millions of dollars in Bitcoin to Iran's Islamic Revolutionary Guard Corps (IRGC). According to OFAC, BitBank is controlled by Iranian financier Babak Zanjani, who was designated in January of this year, and who used the platform to complete transfers between June and July. The designation was made pursuant to Executive Order 13902. The sanctions also cover three executives of BitBank's software developer Pishtaz Simorgh and its parent company Dot One. U.S. Treasury Secretary Bessent stated that using cryptocurrency to finance the Iranian regime does not fall outside OFAC's jurisdiction. OFAC also alleged that Hormuz Safe, a Tehran-based institution that sells safe passage through the Strait of Hormuz, has been transferring payments it received through BitBank since June; the institution was sanctioned in July. OFAC did not disclose the relevant wallet addresses.

SEC Proposes New Crypto Rules: Establishing a Token Investment Contract Safe Harbor with Offering Cap of Up to $75 Million

Odaily News: The U.S. Securities and Exchange Commission (SEC) has proposed rules related to crypto assets, aiming to establish a clear framework for eligible investment contracts and provide a targeted securities offering regime for token issuances, enabling related entities to raise funds while retaining investor protection measures. The proposed rules would allow crypto companies to issue up to $5 million in tokens over four years, or up to $75 million in tokens within 12 months, and provide a safe harbor to prevent cryptocurrencies from being deemed "investment contracts." Issuers would be required to disclose financial statements and provide ongoing reporting. The SEC did not include the previously anticipated "innovation exemption" for crypto stocks. The proposal comes just days after the U.S. Senate failed to advance the Digital Asset Market Clarity (CLARITY) Act; the public will have 60 days to submit comments after the proposal is published in the Federal Register. SEC Chair Paul Atkins stated that congressional legislation remains essential for establishing rules that can be applied over the long term, and the SEC will continue to support Congress in advancing the CLARITY Act to President Trump. The Commodity Futures Trading Commission (CFTC) plans to discuss cryptocurrency, AI, and prediction market regulation on Thursday. (Cointelegraph)

Early Safe investor Greenfield Capital files complaint with Swiss regulator over foundation governance

Odaily reports: Greenfield Capital, an early investor in Safe, has published an open letter stating that it has filed a regulatory complaint with the Swiss Federal Foundation Supervisory Authority (ESA) regarding the Safe Ecosystem Foundation. Greenfield Capital stated that it has never sold any SAFE tokens since investing in Safe in 2022, but the total assets held in Safe accounts have declined from approximately $6.6 billion at the beginning of 2024 to about $3 billion. Over the same period, total DeFi TVL grew by roughly 40% and stablecoin supply increased by 135%, while stablecoins within Safe grew by only 11%. The firm believes that Safe's share of the self-custody market is declining.Greenfield Capital stated that about a year ago, it was unable to form a reliable judgment based solely on information provided by the Safe team, so it conducted an independent review together with former employees, major users, ecosystem developers, and other investors, and concluded that the issues identified all ultimately related to governance. The firm had previously requested refreshing the foundation's board of directors with experienced and independent members, restructuring management and bringing in operators with experience scaling infrastructure businesses, and having the board lead a review of strategy, product, organizational structure, and tokenomics while setting quantifiable key performance indicators. Greenfield Capital said that since late 2025, it has made these requests to the foundation both directly and through legal counsel, but the foundation only established a strategy committee without decision-making authority and appointed people from existing circles to fill board vacancies, which ultimately led to the filing of the regulatory complaint with ESA. The firm emphasized that this action is not a lawsuit against individuals and that it does not intend to take over Safe; its concerns are limited solely to foundation governance and board composition. It remains positive about the work of the Safe Labs operating team and will continue to cooperate as an ecosystem participant and Safenet validator.

Safe early investor Greenfield has filed a complaint with Swiss regulators, alleging that a foundation director used tokens to threaten and exert pressure.

Greenfield Capital has filed a complaint with the Swiss federal foundation regulator ESA regarding governance issues at the Safe Ecosystem Foundation, alleging that Safe Foundation directors instructed personnel to hand over a substantial amount of SAFE tokens following the Bybit hack, and threatened to force Gnosis to sell its holdings—which account for approximately 10% of the total SAFE supply—and sever ties with Safe.

Hester Peirce Ends Over 8-Year SEC Commissioner Term, Previously Advocated for Token Safe Harbor and Led Crypto Task Force

Odaily News: U.S. Securities and Exchange Commission (SEC) Commissioner Hester Peirce ended her term today. She served at the agency for more than 8 years, repeatedly dissenting when the commission chose to take enforcement action rather than formulate rules for the industry to follow, and earlier proposed a token safe harbor plan.Hester Peirce previously led the Crypto Task Force and stated that the SEC's duty to protect investors includes using its regulatory authority to provide regulatory boundaries for the rapidly expanding digital asset industry. (CoinDesk)

SEC Proposes New Crypto Rules: Establishing a Token Investment Contract Safe Harbor with Offering Cap of Up to $75 Million

Odaily News: The U.S. Securities and Exchange Commission (SEC) has proposed rules related to crypto assets, aiming to establish a clear framework for eligible investment contracts and provide a targeted securities offering regime for token issuances, enabling related entities to raise funds while retaining investor protection measures. The proposed rules would allow crypto companies to issue up to $5 million in tokens over four years, or up to $75 million in tokens within 12 months, and provide a safe harbor to prevent cryptocurrencies from being deemed "investment contracts." Issuers would be required to disclose financial statements and provide ongoing reporting. The SEC did not include the previously anticipated "innovation exemption" for crypto stocks. The proposal comes just days after the U.S. Senate failed to advance the Digital Asset Market Clarity (CLARITY) Act; the public will have 60 days to submit comments after the proposal is published in the Federal Register. SEC Chair Paul Atkins stated that congressional legislation remains essential for establishing rules that can be applied over the long term, and the SEC will continue to support Congress in advancing the CLARITY Act to President Trump. The Commodity Futures Trading Commission (CFTC) plans to discuss cryptocurrency, AI, and prediction market regulation on Thursday. (Cointelegraph)

Humanity Says It Is Formulating a Victim Recovery Plan

Humanity released a post-mortem report on the H token security incident that occurred between June 8 and 9, stating that the incident was not caused by a smart contract vulnerability, but rather by a malware intrusion into a developer's device, which led to the leakage of private keys. Humanity stated that the attacker still holds the ProxyAdmin permissions for the ETH bridge and the BNB Chain token. Preliminary investigations confirmed that a colleague's device was infected with malware, which the attacker used to obtain the hot wallet private key of the administrator and the private keys for signing on 6 Gnosis Safe wallets. The team has hired an external security agency to conduct a forensic investigation and stated that they are formulating a recovery plan for affected users.

Humanity releases incident update: affecting both Ethereum and BSC blockchains; stolen amount confirmed to exceed $36 million

Humanity released an incident update stating that its H token was subject to a coordinated attack on Ethereum and BSC on the evening of June 8, resulting in approximately $36 million worth of tokens stolen and dumped across both chains. The project disclosed that the attack originated from a compromised employee laptop, which led to the leakage of multiple owner keys for the Gnosis Safe controlling the Hyperlane bridge ProxyAdmin. On Ethereum, the attacker seized ownership of the ProxyAdmin and upgraded the contract to a malicious implementation, transferring approximately 141.2 million H tokens in a single transaction. On BSC, after similarly gaining control of the ProxyAdmin, the attacker deployed a malicious implementation with infinite minting capabilities, minting 200 million H tokens in two transactions and continuously dumping them. Humanity has suspended deposits and withdrawals on the affected cross-chain bridge and is cooperating with exchanges and law enforcement to investigate the incident and seek partial recovery of the stolen funds.

Over $6 Million in Assets Stolen from Base Anonymous Multisig Vault, 7 Signer Identities Unknown

A crypto asset vault on Base had approximately 1,783 wstETH transferred out on October 4, resulting in losses exceeding $6 million. On-chain records show that the vault is controlled by a 3-of-7 Safe, and the identities of the seven signers have not yet been made public.Security firms stated that the attacker borrowed aBaswstETH from the vault and swapped it for wstETH through Aave. Neither the Base chain itself nor Aave's core contracts have been identified as being exploited, and the specific authorization vulnerability remains unconfirmed. (Bitcoin.com News)

Gnosis Safe Wallet Hacked, $7.8M Worth of rsETH Stolen

According to CoinDesk, a Gnosis Safe wallet on Ethereum was attacked, with approximately 2,900 rsETH (valued at around $7.8 million) transferred. Security firms BlockSec, Blockaid, and SlowMist pointed out that the root cause of the attack lies in an authorization check flaw within the wallet-approved Multicall contract—the contract is intended to verify caller permissions, but the vulnerability allows anyone to bypass validation simply by targeting the contract itself. The attacker subsequently moved the rsETH into a liquidity pool based on the valueless token "Permissionless Attacker Token." An automated bot named "yoink" paid approximately $47,000 to frontrun the transaction, transferring 2,882 rsETH to a separate address. rsETH issuer Kelp DAO stated that its smart contracts are secure and rsETH is fully collateralized, and has implemented a 24-hour pause measure on the relevant addresses.

LAPTON Airdrop Profits Exceed $647,000; Address Possibly Linked to Safe Architect Florent

On-chain analyst Ai Yi (@ai_9684xtpa) monitored that two addresses each claimed 4,276 $LAPTOP tokens from the Hunter Biden Substack subscriber airdrop contract, subsequently selling them for profits of $404,000 and $243,000 respectively, totaling over $647,000. The two addresses exhibit overlapping ETH transactions, and address 0x8DA…4A18d has transferred the earned USDC to @FloB_Safe (Safe architect)'s publicly tagged address, indicating a suspected insider connection.

Analysis: Decoupling of U.S. Treasury Yields and USD Exchange Rates May Shift Forex Market Logic and Drive Up Bitcoin Safe-Haven Demand

According to CoinDesk, as the yield on the U.S. 10-year Treasury note climbed 58 basis points year-to-date to 4.81%, the U.S. Dollar Index rose merely 0.9% to 99.22, signaling the breakdown of the traditional "higher yields drive a stronger dollar" logic. Japan's government bond yields surged 90 basis points this year, yet the yen fell to a 40-year low, and Germany's 10-year yield rose 45 basis points concurrently without the euro showing significant strength. Analysts note that markets may have begun interpreting rising yields as a signal of fiscal strain rather than fiscal robustness. This logical shift poses a potential tailwind for Bitcoin — amidst expectations of government debt monetization and currency devaluation, hard assets with inelastic supply, such as Bitcoin and gold, may attract safe-haven capital inflows.

Suspected Ethena team wallet transfers approximately $14.09 million in ENA to FalconX

According to Onchain Lens monitoring, a wallet suspected to be associated with the Ethena team deposited 170 million ENA into FalconX 1 hour ago, valued at approximately $14.09 million, possibly for an OTC sale. This wallet previously received ENA from Ethena's Gnosis Safe last year.

某钱包将 28.98 万枚 LINK 转入自有 Gnosis Safe 多签地址

据 The Data Nerd 监测,数小时前,某钱包将 289,760 枚 LINK(约合 274 万美元)转入其自有 Gnosis Safe 多签地址。此前一个月,该钱包持续从 Binance 提取 LINK。The Data Nerd 表示,转入自有多签地址或表明其有长期持有意图,预计其建仓成本约在 8.5 至 9 美元区间。

Over $6 Million in Assets Stolen from Base Anonymous Multisig Vault, 7 Signer Identities Unknown

A crypto asset vault on Base had approximately 1,783 wstETH transferred out on October 4, resulting in losses exceeding $6 million. On-chain records show that the vault is controlled by a 3-of-7 Safe, and the identities of the seven signers have not yet been made public.Security firms stated that the attacker borrowed aBaswstETH from the vault and swapped it for wstETH through Aave. Neither the Base chain itself nor Aave's core contracts have been identified as being exploited, and the specific authorization vulnerability remains unconfirmed. (Bitcoin.com News)

Safe early investor Greenfield has filed a complaint with Swiss regulators, alleging that a foundation director used tokens to threaten and exert pressure.

Greenfield Capital has filed a complaint with the Swiss federal foundation regulator ESA regarding governance issues at the Safe Ecosystem Foundation, alleging that Safe Foundation directors instructed personnel to hand over a substantial amount of SAFE tokens following the Bybit hack, and threatened to force Gnosis to sell its holdings—which account for approximately 10% of the total SAFE supply—and sever ties with Safe.

Aave v3 contracts unaffected, founder responds to exploit incident

according to monitoring by Stani Kulechov, Aave founder Stani Kulechov stated that what was exploited was a third-party external adapter built on top of Aave v3, and the Aave v3 contracts themselves were not affected. The FlashLoopAdapter in the Aave v3 Loop Safe module involved had access control vulnerabilities in its open() and close() functions. The attacker forged Safe authentication and arbitrary module execution to steal approximately 114.09 ETH from two Safe multisig addresses, and repaid approximately 1,300 WETH in debt to unlock collateral.

SlowMist: Approximately 114.09 ETH Stolen, Aave v3 Loop Safe Module Vulnerability Affects Two Safe Multisig Wallets

SlowMist has issued a security alert stating that a vulnerability has been discovered in the Aave V3 Loop Safe Module. Attackers exploited forged Safe authentication and arbitrary Module execution to steal approximately 114.09 ETH from two Safe multisig wallets.The attackers bypassed authentication by forging a Safe that always returns true, and leveraged an arbitrarily controllable router and calldata to execute module transactions, transferring weETH and Aave collateral. The attackers repaid approximately 1,300 WETH in debt to unlock the collateral.

Quit: NFTs Are Safe Claim Portal Officially Launched, Affected Users Can Reclaim Preserved Assets

Yuga Labs blockchain vice president Quit posted on X that the NFT theft incident asset claim website nftsaresafu.xyz has officially launched. Affected users whose NFTs were successfully preserved can now proceed with claims, but must first revoke authorization to PaymentProcessor.Quit stated that approximately $6 million worth of NFTs were successfully rescued this time, but some assets could not be preserved. Additionally, some NFT collections cannot be claimed at present due to Transfer Validator restrictions, and coordination with the relevant project teams will be handled in the coming days. The claim process involves EIP-7702 delegated wallets, which may cause transaction simulation anomalies or risk warnings on wallets such as Rabby.

Bitget Wallet Responds to Security Incident: Wallet Unaffected and Operates Independently, User Assets Safe

Bitget Wallet stated on X that it operates independently from the Bitget exchange and is a self-custodial wallet. User assets always remain on-chain and are controlled by users themselves, isolated from the custodial infrastructure of the Bitget exchange.In response to the recent security incident at Bitget, Bitget Wallet has conducted preventive checks on its internal systems and found no security impact from the incident on Bitget Wallet's systems or users' self-custodied assets. Bitget Wallet is currently operating normally, and users are reminded to be vigilant against phishing and impersonation attempts and to obtain the latest information through official channels.

Early Safe investor Greenfield Capital files complaint with Swiss regulator over foundation governance

Odaily reports: Greenfield Capital, an early investor in Safe, has published an open letter stating that it has filed a regulatory complaint with the Swiss Federal Foundation Supervisory Authority (ESA) regarding the Safe Ecosystem Foundation. Greenfield Capital stated that it has never sold any SAFE tokens since investing in Safe in 2022, but the total assets held in Safe accounts have declined from approximately $6.6 billion at the beginning of 2024 to about $3 billion. Over the same period, total DeFi TVL grew by roughly 40% and stablecoin supply increased by 135%, while stablecoins within Safe grew by only 11%. The firm believes that Safe's share of the self-custody market is declining.Greenfield Capital stated that about a year ago, it was unable to form a reliable judgment based solely on information provided by the Safe team, so it conducted an independent review together with former employees, major users, ecosystem developers, and other investors, and concluded that the issues identified all ultimately related to governance. The firm had previously requested refreshing the foundation's board of directors with experienced and independent members, restructuring management and bringing in operators with experience scaling infrastructure businesses, and having the board lead a review of strategy, product, organizational structure, and tokenomics while setting quantifiable key performance indicators. Greenfield Capital said that since late 2025, it has made these requests to the foundation both directly and through legal counsel, but the foundation only established a strategy committee without decision-making authority and appointed people from existing circles to fill board vacancies, which ultimately led to the filing of the regulatory complaint with ESA. The firm emphasized that this action is not a lawsuit against individuals and that it does not intend to take over Safe; its concerns are limited solely to foundation governance and board composition. It remains positive about the work of the Safe Labs operating team and will continue to cooperate as an ecosystem participant and Safenet validator.

SlowMist: Approximately 114.09 ETH Stolen, Aave v3 Loop Safe Module Vulnerability Affects Two Safe Multisig Wallets

SlowMist has issued a security alert stating that a vulnerability has been discovered in the Aave V3 Loop Safe Module. Attackers exploited forged Safe authentication and arbitrary Module execution to steal approximately 114.09 ETH from two Safe multisig wallets.The attackers bypassed authentication by forging a Safe that always returns true, and leveraged an arbitrarily controllable router and calldata to execute module transactions, transferring weETH and Aave collateral. The attackers repaid approximately 1,300 WETH in debt to unlock the collateral.

Quit: NFTs Are Safe Claim Portal Officially Launched, Affected Users Can Reclaim Preserved Assets

Yuga Labs blockchain vice president Quit posted on X that the NFT theft incident asset claim website nftsaresafu.xyz has officially launched. Affected users whose NFTs were successfully preserved can now proceed with claims, but must first revoke authorization to PaymentProcessor.Quit stated that approximately $6 million worth of NFTs were successfully rescued this time, but some assets could not be preserved. Additionally, some NFT collections cannot be claimed at present due to Transfer Validator restrictions, and coordination with the relevant project teams will be handled in the coming days. The claim process involves EIP-7702 delegated wallets, which may cause transaction simulation anomalies or risk warnings on wallets such as Rabby.

Vitalik: Recursive STARK Memory Pool Can Reduce Costs of Quantum-Safe Signatures and Privacy Transactions

Odaily News, Vitalik posted on the X platform, expressing his hope to include the recursive STARK memory pool proposal EIP-8288 in the Ethereum I-star upgrade, stating that it can be seen as the next step after Frames. This solution can place quantum-safe signature data off-chain, reducing signature costs; the fuel cost of quantum-safe privacy transactions is also expected to drop from approximately 10 million to tens of thousands. The solution aggregates transaction dependencies through frames and recursive STARKs, with nodes sending one STARK of about 100 to 300KB per time cycle; the on-chain overhead is one STARK and 96 bytes per statement to be proven.

Starkware completes quantum-resistant transaction on Bitcoin mainnet without soft fork

: Blockchain technology company Starkware stated that on August 26, a transaction using researcher Avihu Levy's Quantum-Safe Bitcoin (QSB) scheme was mined on the Bitcoin mainnet, without requiring a soft fork, hard fork, or modification of consensus rules.The transaction consumed 10,000 sats and was processed through MARA Foundation's Slipstream service, as the non-standard format typically cannot propagate through Bitcoin's public mempool. The test consumed several hours of GPU computation, costing approximately $150 to $200.QSB employs hash-based quantum-resistant spending conditions and reduces quantum attack risks through signature trial mining, but still requires users to proactively migrate funds and cannot protect assets whose public keys have already been exposed. Starkware CEO Eli Ben-Sasson still supports introducing a protocol-level solution via a soft fork. (Bitcoin.com News)

SEC Proposes New Crypto Rules: Establishing a Token Investment Contract Safe Harbor with Offering Cap of Up to $75 Million

Odaily News: The U.S. Securities and Exchange Commission (SEC) has proposed rules related to crypto assets, aiming to establish a clear framework for eligible investment contracts and provide a targeted securities offering regime for token issuances, enabling related entities to raise funds while retaining investor protection measures. The proposed rules would allow crypto companies to issue up to $5 million in tokens over four years, or up to $75 million in tokens within 12 months, and provide a safe harbor to prevent cryptocurrencies from being deemed "investment contracts." Issuers would be required to disclose financial statements and provide ongoing reporting. The SEC did not include the previously anticipated "innovation exemption" for crypto stocks. The proposal comes just days after the U.S. Senate failed to advance the Digital Asset Market Clarity (CLARITY) Act; the public will have 60 days to submit comments after the proposal is published in the Federal Register. SEC Chair Paul Atkins stated that congressional legislation remains essential for establishing rules that can be applied over the long term, and the SEC will continue to support Congress in advancing the CLARITY Act to President Trump. The Commodity Futures Trading Commission (CFTC) plans to discuss cryptocurrency, AI, and prediction market regulation on Thursday. (Cointelegraph)

Related news

Within 9 hours, an Ethena-related Gnosis Safe withdrew 117.58 million ENA worth $27.96 million from Bybit

According to Onchain Lens monitoring, an Ethena-related Gnosis Safe withdrew 62.58 million ENA worth $14.86 million from Bybit 37 minutes ago. Over the past 9 hours, this wallet has withdrawn 117.58 million ENA worth $27.96 million from Bybit.

Over $6 Million in Assets Stolen from Base Anonymous Multisig Vault, 7 Signer Identities Unknown

A crypto asset vault on Base had approximately 1,783 wstETH transferred out on October 4, resulting in losses exceeding $6 million. On-chain records show that the vault is controlled by a 3-of-7 Safe, and the identities of the seven signers have not yet been made public.Security firms stated that the attacker borrowed aBaswstETH from the vault and swapped it for wstETH through Aave. Neither the Base chain itself nor Aave's core contracts have been identified as being exploited, and the specific authorization vulnerability remains unconfirmed. (Bitcoin.com News)

Early Safe investor Greenfield Capital files complaint with Swiss regulator over foundation governance

Odaily reports: Greenfield Capital, an early investor in Safe, has published an open letter stating that it has filed a regulatory complaint with the Swiss Federal Foundation Supervisory Authority (ESA) regarding the Safe Ecosystem Foundation. Greenfield Capital stated that it has never sold any SAFE tokens since investing in Safe in 2022, but the total assets held in Safe accounts have declined from approximately $6.6 billion at the beginning of 2024 to about $3 billion. Over the same period, total DeFi TVL grew by roughly 40% and stablecoin supply increased by 135%, while stablecoins within Safe grew by only 11%. The firm believes that Safe's share of the self-custody market is declining.Greenfield Capital stated that about a year ago, it was unable to form a reliable judgment based solely on information provided by the Safe team, so it conducted an independent review together with former employees, major users, ecosystem developers, and other investors, and concluded that the issues identified all ultimately related to governance. The firm had previously requested refreshing the foundation's board of directors with experienced and independent members, restructuring management and bringing in operators with experience scaling infrastructure businesses, and having the board lead a review of strategy, product, organizational structure, and tokenomics while setting quantifiable key performance indicators. Greenfield Capital said that since late 2025, it has made these requests to the foundation both directly and through legal counsel, but the foundation only established a strategy committee without decision-making authority and appointed people from existing circles to fill board vacancies, which ultimately led to the filing of the regulatory complaint with ESA. The firm emphasized that this action is not a lawsuit against individuals and that it does not intend to take over Safe; its concerns are limited solely to foundation governance and board composition. It remains positive about the work of the Safe Labs operating team and will continue to cooperate as an ecosystem participant and Safenet validator.

Safe early investor Greenfield has filed a complaint with Swiss regulators, alleging that a foundation director used tokens to threaten and exert pressure.

Greenfield Capital has filed a complaint with the Swiss federal foundation regulator ESA regarding governance issues at the Safe Ecosystem Foundation, alleging that Safe Foundation directors instructed personnel to hand over a substantial amount of SAFE tokens following the Bybit hack, and threatened to force Gnosis to sell its holdings—which account for approximately 10% of the total SAFE supply—and sever ties with Safe.

Hester Peirce Ends Over 8-Year SEC Commissioner Term, Previously Advocated for Token Safe Harbor and Led Crypto Task Force

Odaily News: U.S. Securities and Exchange Commission (SEC) Commissioner Hester Peirce ended her term today. She served at the agency for more than 8 years, repeatedly dissenting when the commission chose to take enforcement action rather than formulate rules for the industry to follow, and earlier proposed a token safe harbor plan.Hester Peirce previously led the Crypto Task Force and stated that the SEC's duty to protect investors includes using its regulatory authority to provide regulatory boundaries for the rapidly expanding digital asset industry. (CoinDesk)

Aave v3 contracts unaffected, founder responds to exploit incident

according to monitoring by Stani Kulechov, Aave founder Stani Kulechov stated that what was exploited was a third-party external adapter built on top of Aave v3, and the Aave v3 contracts themselves were not affected. The FlashLoopAdapter in the Aave v3 Loop Safe module involved had access control vulnerabilities in its open() and close() functions. The attacker forged Safe authentication and arbitrary module execution to steal approximately 114.09 ETH from two Safe multisig addresses, and repaid approximately 1,300 WETH in debt to unlock collateral.