🎉 #Gate Alpha 3rd Points Carnival & ES Launchpool# Joint Promotion Task is Now Live!
Total Prize Pool: 1,250 $ES
This campaign aims to promote the Eclipse ($ES) Launchpool and Alpha Phase 11: $ES Special Event.
📄 For details, please refer to:
Launchpool Announcement: https://www.gate.com/zh/announcements/article/46134
Alpha Phase 11 Announcement: https://www.gate.com/zh/announcements/article/46137
🧩 [Task Details]
Create content around the Launchpool and Alpha Phase 11 campaign and include a screenshot of your participation.
📸 [How to Participate]
1️⃣ Post with the hashtag #Gate Alpha 3rd
OpenZeppelin, a company specializing in blockchain network security, revealed a critical vulnerability in the integration of ERC-2771 and Multicall standards on Ethereum. The issue put many users and projects at risk, and even allowed the theft of funds in ether (ETH) and the stablecoin USD Coin (USDC).
The "problematic integration" of ERC-2771 and Multicall that OpenZeppelin describes in its statement affects a wide range of smart contracts, including those that support ERC-20 tokens (which use stablecoins, for example) and ERC-721 (that of non-fungible tokens, or NFTs).
This vulnerability generated a potential "address spoofing" attack. Sure enough, there were attacks that led to the theft of 87 ETH (approximately USD 205,000, according to the CriptoNoticias price index) and 17,394 USDC.
Notably, the vulnerability was detected on November 20. Open Zeppelin had received a warning about the vulnerability from the team at ThirdWeb, a company that provides technological solutions for projects in the so-called web3. The issue was made public two weeks later so that we could work on a solution before announcing it, as is often the case in these cases.