Yesterday's tweet unexpectedly received help from many friends and teachers, and as a classic EIP-7702 fishing use case, I will share it with you again.
For technical novices on the chain, a wrong authorization can still bring a lot of losses, which may also be an impossible triangle between decentralization and centralization.
At the same time, I highly recommend Mr. Yu Xian's "Blockchain Dark Forest Self-Rescue Manual", hoping to help more people improve their security awareness and avoid similar safety accidents.




Classic EIP-7702 phishing exploit. First, your friend's private key was leaked, and the phishing gang (possibly more than one) has set up the EIP-7702 exploit mechanism for your friend's wallet address. This mechanism will automatically transfer any gas you input when you try to transfer the remaining tokens, such as the $WLFI that were thrown into the Lockbox contract...
The front-running strategy is feasible: input gas, cancel or replace the ambushed EIP-7702 with your own, and transfer the valuable tokens. These three actions can be bundled and sent in one block using flashbots... But Slow Mist does not engage in front-running services. If needed, try contacting @0xAA_Science @BoxMrChen.
Note: First, the private key was leaked.
70.39K
18
The content on this page is provided by third parties. Unless otherwise stated, OKX TR is not the author of the cited article(s) and does not claim any copyright in the materials. The content is provided for informational purposes only and does not represent the views of OKX TR. It is not intended to be an endorsement of any kind and should not be considered investment advice or a solicitation to buy or sell digital assets. To the extent generative AI is utilized to provide summaries or other information, such AI generated content may be inaccurate or inconsistent. Please read the linked article for more details and information. OKX TR is not responsible for content hosted on third party sites. Digital asset holdings, including stablecoins and NFTs, involve a high degree of risk and can fluctuate greatly. You should carefully consider whether trading or holding digital assets is suitable for you in light of your financial condition.