• bitcoinBitcoin (BTC) $ 113,593.00
  • ethereumEthereum (ETH) $ 4,168.89
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 2.86
  • bnbBNB (BNB) $ 1,010.77
  • solanaSolana (SOL) $ 208.77
  • usd-coinUSDC (USDC) $ 0.999643
  • staked-etherLido Staked Ether (STETH) $ 4,168.77
  • dogecoinDogecoin (DOGE) $ 0.230634
  • tronTRON (TRX) $ 0.334605
  • cardanoCardano (ADA) $ 0.794053
  • wrapped-stethWrapped stETH (WSTETH) $ 5,066.51
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 4,497.49
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • chainlinkChainlink (LINK) $ 21.41
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 113,328.00
  • figure-helocFigure Heloc (FIGR_HELOC) $ 0.997298
  • avalanche-2Avalanche (AVAX) $ 29.35
  • hyperliquidHyperliquid (HYPE) $ 45.10
  • stellarStellar (XLM) $ 0.364213
  • suiSui (SUI) $ 3.23
  • bitcoin-cashBitcoin Cash (BCH) $ 553.93
  • wrapped-eethWrapped eETH (WEETH) $ 4,494.74
  • wethWETH (WETH) $ 4,173.66
  • hedera-hashgraphHedera (HBAR) $ 0.214040
  • leo-tokenLEO Token (LEO) $ 9.60
  • litecoinLitecoin (LTC) $ 105.64
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • usdsUSDS (USDS) $ 0.999726
  • usdt0USDT0 (USDT0) $ 0.999945
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 113,420.00
  • shiba-inuShiba Inu (SHIB) $ 0.000012
  • crypto-com-chainCronos (CRO) $ 0.197545
  • the-open-networkToncoin (TON) $ 2.65
  • whitebitWhiteBIT Coin (WBT) $ 41.85
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • polkadotPolkadot (DOT) $ 3.90
  • mantleMantle (MNT) $ 1.80
  • moneroMonero (XMR) $ 293.21
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.198203
  • daiDai (DAI) $ 0.999512
  • uniswapUniswap (UNI) $ 7.58
  • aaveAave (AAVE) $ 271.63
  • memecoreMemeCore (M) $ 2.34
  • okbOKB (OKB) $ 187.78
  • pepePepe (PEPE) $ 0.000009
  • ethenaEthena (ENA) $ 0.551252
  • bitget-tokenBitget Token (BGB) $ 5.21
  • nearNEAR Protocol (NEAR) $ 2.63
  • jito-staked-solJito Staked SOL (JITOSOL) $ 257.57
  • myx-financeMYX Finance (MYX) $ 16.07
  • aptosAptos (APT) $ 4.28
  • bittensorBittensor (TAO) $ 305.19
  • aster-2Aster (ASTER) $ 1.76
  • ethereum-classicEthereum Classic (ETC) $ 18.44
  • ondo-financeOndo (ONDO) $ 0.889090
  • usd1-wlfiUSD1 (USD1) $ 0.999688
  • story-2Story (IP) $ 8.55
  • binance-staked-solBinance Staked SOL (BNSOL) $ 225.09
  • worldcoin-wldWorldcoin (WLD) $ 1.24
  • binance-peg-wethBinance-Peg WETH (WETH) $ 4,167.44
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • paypal-usdPayPal USD (PYUSD) $ 0.999989
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.225710
  • internet-computerInternet Computer (ICP) $ 4.16
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 5.59
  • arbitrumArbitrum (ARB) $ 0.411663
  • pi-networkPi Network (PI) $ 0.261886
  • susdssUSDS (SUSDS) $ 1.07
  • kaspaKaspa (KAS) $ 0.075370
  • falcon-financeFalcon USD (USDF) $ 0.998034
  • pump-funPump.fun (PUMP) $ 0.005640
  • kucoin-sharesKuCoin (KCS) $ 15.41
  • plasmaPlasma (XPL) $ 1.09
  • gatechain-tokenGate (GT) $ 16.20
  • cosmosCosmos Hub (ATOM) $ 4.05
  • flare-networksFlare (FLR) $ 0.025558
  • rocket-pool-ethRocket Pool ETH (RETH) $ 4,772.34
  • vechainVeChain (VET) $ 0.021753
  • usdtbUSDtb (USDTB) $ 0.999740
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 4,399.97
  • algorandAlgorand (ALGO) $ 0.205194
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 45.42
  • hash-2Provenance Blockchain (HASH) $ 0.035244
  • render-tokenRender (RENDER) $ 3.35
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.027360
  • bfusdBFUSD (BFUSD) $ 0.999067
  • sei-networkSei (SEI) $ 0.273820
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 4,391.90
  • skySky (SKY) $ 0.066248
  • filecoinFilecoin (FIL) $ 2.18
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 4,510.38
  • quant-networkQuant (QNT) $ 102.48
  • official-trumpOfficial Trump (TRUMP) $ 7.35
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.560088
  • bonkBonk (BONK) $ 0.000019
  • tether-goldTether Gold (XAUT) $ 3,822.37
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 113,263.00
  • immutable-xImmutable (IMX) $ 0.695057
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 4,420.32
  • jupiter-exchange-solanaJupiter (JUP) $ 0.424030
  • xdce-crowd-saleXDC Network (XDC) $ 0.073938
  • wbnbWrapped BNB (WBNB) $ 1,010.98
  • nexoNEXO (NEXO) $ 1.24
  • optimismOptimism (OP) $ 0.665380
  • injective-protocolInjective (INJ) $ 11.78
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.13
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 113,501.00
  • pax-goldPAX Gold (PAXG) $ 3,835.10
  • celestiaCelestia (TIA) $ 1.38
  • zcashZcash (ZEC) $ 66.37
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 238.49
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.998862
  • mantle-staked-etherMantle Staked Ether (METH) $ 4,492.85
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999100
  • blockstackStacks (STX) $ 0.570498
  • lido-daoLido DAO (LDO) $ 1.12
  • sonic-3Sonic (S) $ 0.249858
  • curve-dao-tokenCurve DAO (CRV) $ 0.669748
  • msolMarinade Staked SOL (MSOL) $ 277.67
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 113,673.00
  • aerodrome-financeAerodrome Finance (AERO) $ 1.02
  • fasttokenFasttoken (FTN) $ 2.05
  • spx6900SPX6900 (SPX) $ 0.960069
  • clbtcclBTC (CLBTC) $ 114,092.00
  • kaiaKaia (KAIA) $ 0.150745
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.51
  • saros-financeSaros (SAROS) $ 0.330328
  • the-graphThe Graph (GRT) $ 0.080017
  • pyth-networkPyth Network (PYTH) $ 0.144743
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 3,980.80
  • ripple-usdRipple USD (RLUSD) $ 0.999487
  • pendlePendle (PENDLE) $ 4.63
  • flokiFLOKI (FLOKI) $ 0.000080
  • ether-fiEther.fi (ETHFI) $ 1.43
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 4,170.71
  • conflux-tokenConflux (CFX) $ 0.142552
  • global-dollarGlobal Dollar (USDG) $ 0.999649
  • ousgOUSG (OUSG) $ 112.75
  • tbtctBTC (TBTC) $ 113,130.00
  • dogwifcoindogwifhat (WIF) $ 0.707076
  • tezosTezos (XTZ) $ 0.661853
  • raydiumRaydium (RAY) $ 2.61
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.998273
  • theta-tokenTheta Network (THETA) $ 0.682343
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.07
  • iotaIOTA (IOTA) $ 0.164953
  • newton-projectAB (AB) $ 0.008299
  • galaGALA (GALA) $ 0.014313
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.01
  • ethereum-name-serviceEthereum Name Service (ENS) $ 19.82
  • beldexBeldex (BDX) $ 0.088902
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 4,167.14
  • the-sandboxThe Sandbox (SAND) $ 0.262554
  • gtethGTETH (GTETH) $ 4,163.45
  • stader-ethxStader ETHx (ETHX) $ 4,466.69
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 4,173.70
  • vaultaVaulta (A) $ 0.393528
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.84
  • jito-governance-tokenJito (JTO) $ 1.57
  • fartcoinFartcoin (FARTCOIN) $ 0.602571
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.230696
  • aethirAethir (ATH) $ 0.047400
  • bittorrentBitTorrent (BTT) $ 0.00000059
  • jasmycoinJasmyCoin (JASMY) $ 0.012039
  • swissborgSwissBorg (BORG) $ 0.582016
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 4,486.65
  • flowFlow (FLOW) $ 0.347029
  • morphoMorpho (MORPHO) $ 1.69
  • walrus-2Walrus (WAL) $ 0.386278
  • usual-usdUsual USD (USD0) $ 0.998656
  • swethSwell Ethereum (SWETH) $ 4,573.76
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 4,593.83
  • starknetStarknet (STRK) $ 0.135076
  • decentralandDecentraland (MANA) $ 0.285798
  • zero-gravity0G (0G) $ 2.50
  • dexeDeXe (DEXE) $ 9.45
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.27
  • arbitrum-bridged-wrapped-eethArbitrum Bridged Wrapped eETH (Arbitrum) (WEETH) $ 4,486.95
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 113,356.00
  • benqi-liquid-staked-avaxBENQI Liquid Staked AVAX (SAVAX) $ 36.02
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 1.00
  • eigenlayerEigenCloud (prev. EigenLayer) (EIGEN) $ 1.50
  • true-usdTrueUSD (TUSD) $ 0.999642
  • sun-tokenSun Token (SUN) $ 0.025355
  • loaded-lionsLoaded Lions (LION) $ 0.015877
  • bitcoin-svBitcoin SV (BSV) $ 23.85
  • usddUSDD (USDD) $ 1.00
  • wormholeWormhole (W) $ 0.101099
  • kinetiq-earn-vaultKinetiq Earn Vault (VKHYPE) $ 45.22
  • wrapped-avaxWrapped AVAX (WAVAX) $ 29.35
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 4,172.78
  • frax-etherFrax Ether (FRXETH) $ 4,157.82
  • dydx-chaindYdX (DYDX) $ 0.591375
  • usdaiUSDai (USDAI) $ 1.03
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.10
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999892
  • bybit-staked-solBybit Staked SOL (BBSOL) $ 231.19
  • falcon-finance-ffFalcon Finance (FF) $ 0.188368
  • vision-3Vision (VSN) $ 0.131331

Ethereum smart wallet mode panic, unpacked

0 51

Ethereum smart wallet mode panic, unpacked

This is a segment from the 0xResearch newsletter. To read full editions, subscribe.

A Solidity developer friend of mine reached out on Signal the other day in a tizzy. “I can’t believe this,” he wrote. “How did Ethereum developers let this happen?”

He was referring to a recent article worrying about Ethereum’s Pectra upgrade — specifically EIP-7702 — and its supposed ability to let hackers “drain wallets with just an offchain signature.” The piece has been bandied about on X/Twitter, it seems, though not by people I follow. Fears were clearly being stoked in some circles that a new transaction type quietly enabled attackers to seize control of wallets without an onchain transaction or even a user’s knowledge.

But like many things in crypto, the reality is both more nuanced — and less dramatic.

Ethereum’s recent Pectra upgrade, activated on May 7, introduced a powerful mechanism that enables externally owned accounts (EOAs) to temporarily act like smart accounts. But the rollout has been accompanied by breathless claims that it exposes users to some insane new risk.

Those headlines are misleading. While EIP-7702 could introduce a new attack surface for phishing, it doesn’t bypass wallet signatures or allow unauthorized access per se. Instead, it signs a special message for the temporary superpowers. But if that message falls into the wrong hands, someone else could take control — as if handing over a private key to your wallet for a single session.

Sounds dangerous, and it can be, but only if a user is tricked into signing a malicious delegation. It’s not a protocol failure, but something for wallet software publishers to take account of.

Security researchers and wallets responded proactively to 7702. For example, alongside support for the feature, Ambire and Trust Wallet released patches or warnings. Wallets that don’t yet support 7702 are not suddenly made insecure. But confusion spread with viral tweets claiming EIP-7702 made hardware wallets “no longer safe,” for example.

Will Hennessy, a product manager at Alchemy, strongly pushed back on that narrative:

“It’s a non-issue for end users,” he told Blockworks. “No wallet supports signing arbitrary delegations, nor is there a wallet RPC for a dapp to request an arbitrary delegation signature.”

He’s right…today. Mainstream wallets like MetaMask and Ledger don’t expose a method for signing EIP-7702 authorization tuples — the term for the one-time-use permission slip, signed by the wallet owner.

But that’s beginning to change. Embedded wallet SDKs — including Alchemy’s own Account Kit — already include a method called signAuthorization that creates valid EIP-7702 signatures. These products can bypass the EIP-1193 standard entirely by bundling their own provider. As wallets begin to natively support smart accounts, this functionality will likely spread.

“The article describes signing a message with a wallet from a malicious website,” Hennessy added, “but it is not possible for any website to request an EIP-7702 delegation signature from an external wallet.”

Ethereum smart wallet mode panic, unpacked

Source

Leave A Reply

Your email address will not be published.