Hiring: Business Development, Join us! 【View Details】
API Download the RootData App

BlockSec releases a major vulnerability analysis of closed-source contracts: SwapNet and Aperture Finance suffered an attack due to insufficient input validation, resulting in a loss of 17 million dollars

Jan 28, 2026 16:11:54

Share to

BlockSec released a significant vulnerability analysis of a closed-source contract, detecting a series of suspicious transactions targeting victim contracts deployed on Ethereum, Arbitrum, Base, and BSC for SwapNet and Aperture Finance, with total losses exceeding $17 million.

Fundamentally, the root cause of both incidents is quite simple: the victim contracts have arbitrary call vulnerabilities due to insufficient input validation, allowing attackers to exploit this vulnerability to misuse existing token allowances and perform transferFrom to steal assets.

Although the SwapNet and Aperture Finance incidents affected different protocols and blockchains, the fundamental issues in both cases are not complex: user-controlled underlying calls and insufficient input validation in contracts holding token allowances.

Latest News

Data: ETH breaks through 2300 USD

ChainCatcher

2월 02, 2026 02:35:27

Data: BTC breaks through 78000 USD

ChainCatcher

2월 02, 2026 02:02:51

Data: ETH falls below 2300 USD

ChainCatcher

2월 02, 2026 01:35:26

Data: ETH breaks through 2300 USD

ChainCatcher

2월 02, 2026 00:31:07

Data: BTC breaks through 77,000 USD

ChainCatcher

2월 02, 2026 00:27:03

Recent Fundraising

More
-- 1월 30
$50M 1월 29
$25M 1월 29

New Tokens

More
1월 30
1월 30
1월 28

Latest Updates on 𝕏

More
1월 31
1월 31
1월 31