MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Font ResizerAa
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Reading: 402bridge loses over 17,000 USDC | ForkLog
Share
Font ResizerAa
MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Search
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Have an existing account? Sign In
Follow US
© Market Alert News. All Rights Reserved.
  • bitcoinBitcoin(BTC)$67,853.001.60%
  • ethereumEthereum(ETH)$2,073.573.69%
  • tetherTether(USDT)$1.000.00%
  • binancecoinBNB(BNB)$619.141.12%
  • rippleXRP(XRP)$1.351.30%
  • usd-coinUSDC(USDC)$1.00-0.01%
  • solanaSolana(SOL)$84.452.52%
  • tronTRON(TRX)$0.318856-0.22%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.020.00%
  • dogecoinDogecoin(DOGE)$0.0928932.25%
Layer 2 Solutions

402bridge loses over 17,000 USDC | ForkLog

Last updated: October 28, 2025 11:30 pm
Published: 5 months ago
Share

On October 27, an unknown hacker attacked the cross-chain bridge 402bridge, stealing tokens worth 17,693 USDC. A private-key leak compromised more than a dozen of the team’s test and main wallets.

According to GoPlus security experts, the incident was caused by “excessive authorisation” before minting. The attacker changed the owner of the compromised smart contract and, using the transferUserToken method, transferred remaining authorised USDC from the wallets of more than 200 users. He then stole the stablecoins, converted them into 4.2 ETH and moved the funds to the Arbitrum network.

Experts recommended that all affected users revoke approvals on smart contract 0xed1AFc4DCfb39b9ab9d67f3f7f7d02803cEA9FC5.

As 402bridge explained, the x402 mechanism requires users to sign or approve transactions via the web interface, which are then sent to a backend server. The backend server extracts the funds and performs the minting, before returning a result to the user.

“When connecting to the site, we need to store the private key on the server to call contract methods. This step may expose administrator privileges, since at this stage the key is connected to the internet. If a leak occurs, a hacker will be able to obtain these privileges and reroute the user’s funds to carry out an attack,” the team of the affected project explained.

The developers have notified law-enforcement authorities and are conducting an internal investigation.

SlowMist experts suggested the breach may have been an inside job.

The hack is the first public case of theft linked to the protocol’s x402 service. The latter is a tool for online payments designed for stablecoin transactions. It also allows AI agents to execute autonomous deals.

Coinbase unveiled the project in May. The solution is based on the HyperText Transfer Protocol (HTTP), which is used for data exchange between web browsers and servers.

Within a month, on-chain activity in x402 grew more than tenfold.

Two days before the 402bridge incident, crypto researcher Gabriel Shapiro and Solana co-founder Anatoly Yakovenko debated the security of layer-2 solutions.

Shapiro argued that L2s do not have to be decentralised, since they are secured by the Ethereum blockchain: users can force their transactions to be included in blocks, and the risks of centralised control are offset by L1 mechanisms.

According to Yakovenko, the vulnerability of current L2s lies in their reliance on multisigs, which can change bridge contracts without notice and directly control funds. He contrasted this with validators in Solana, who have no ability to interfere with the network’s state.

Shapiro noted that modern multisigs, for example in ZKsync, are backed by legal and governance guarantees, not just code. Yakovenko, however, argued that legal constructs do not eliminate the technical risk of centralised control.

In the thread’s finale, the Solana co-founder said that L2s do not inherit Ethereum’s security but replicate the vulnerabilities of cross-chain bridges such as Wormhole.

Shapiro, for his part, sees L2s as a distinct layer of trust trade-offs that, he says, will become more reliable with advances in zero-knowledge proofs.

According to experts at Global Ledger, the crypto industry’s main problem has become the speed of fund withdrawals by attackers after hacks. Cross-chain bridges are the primary tool for laundering stolen money.

Read more on ForkLog

This news is powered by ForkLog ForkLog

Share this:

  • Share on X (Opens in new window) X
  • Share on Facebook (Opens in new window) Facebook

Like this:

Like Loading...

Related

Ethereum Burns $32 Million in ETH as Network Hits Record 24,192 TPS
November 2025 Outlook: Blazpay Dominates the Crypto AI Market – The Next Big Presale ICO with Unified Services and Multi-Chain Power
Ethereum based meme coin PEPETO raises above $5.5M in presale
From $310,000 to over $4.3 billion: the “million ETH” reactivates. And now? The impact of ETF flows and staking
Best Crypto to Buy Now: Analysts Predict 100x Potential for This Bitcoin Layer-2

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Email Copy Link Print
Previous Article MDSO: Man dead after shooting at smoke shop in NW Miami-Dade – WSVN 7News | Miami News, Weather, Sports | Fort Lauderdale
Next Article 402bridge protocol loses more than 17,000 USDC | ForkLog
© Market Alert News. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Prove your humanity


Lost your password?

%d