todayonchain.com

‘We don’t know who deployed this’: Squid distances itself from $3.2 million third-party module exploit

The Block
Cross-chain protocol Squid clarified that a $3.2 million Gnosis Safe module exploit involved a third-party contract, not its own infrastructure.

Summary

A third-party Gnosis Safe module named “SquidRouterModule” was exploited, leading to the theft of approximately $3.2 million from 86 user accounts across Ethereum and Base. The cross-chain protocol Squid confirmed it had no involvement in creating or deploying the vulnerable contract, stating that the exploit was unrelated to its core router. Security firms Blockaid and PeckShield identified that the attacker used unauthorized access to execute arbitrary swaps through Uniswap V3 pools, eventually consolidating the stolen assets into 3.07 million DAI.

(Source:The Block)