Taiko ERC20 Vault was attacked, resulting in losses exceeding 1 million dollars
According to monitoring by Blockaid, Taiko's ERC20 Vault on Ethereum was attacked, resulting in losses exceeding 1 million dollars. The root of the vulnerability lies in the flawed verification of source signal proofs in Taiko's cross-chain bridge, where the constructed message proof was accepted as valid on Ethereum L1 without the corresponding legitimate MessageSent event on Taiko's source chain, allowing attackers to register and extract fraudulent cross-chain messages, thereby unauthorizedly releasing assets from the ERC20 Vault.
Related tags






