GoPlus: Several x402 ecosystem projects have been found to have risks, including over-licensing and signature replay issues.

PANews reported on November 17 that, according to official sources, the GoPlus Security Research Institute conducted a detailed security risk scan of more than 30 x402 projects and risky projects warned by the community in Binance Wallet and OKX Wallet, and found that the following projects have risks of over-authorization, signature replay, HonyPot (Pixiu token), and unlimited issuance.

  • FLOCK(0x5ab3): The transferERC20 function owner can extract any number of any tokens from the contract.
  • x420 (0x68e2): The crosschainMint function can mint tokens without limit.
  • U402 (0xd2b3): The mintByBond function can mint an unlimited number of coins.
  • MRDN (0xe57e): The withdrawToken function allows the owner to withdraw any number of any tokens from the contract.
  • PENG (0x4444ee, 0x444450, 0x444428): The manualSwap function owner can withdraw ETH from the contract, and the transferFrom function can bypass the allowance check for special accounts.
  • x402Token(0x40ff): The transferFrom function allows special accounts to bypass the allowance check.
  • x402b (0xd8af5f): The manualSwap function owner can withdraw ETH from the contract, and the transferFrom function can bypass the allowance check for special accounts.
  • x402MO (0x3c47df): The manualSwap function owner can withdraw ETH from the contract, and the transferFrom function can bypass the allowance check for special accounts.
Share to:

Author: PA一线

This content is for informational purposes only and does not constitute investment advice.

Follow PANews official accounts, navigate bull and bear markets together
Recommended Reading
2025-12-31 15:10
2025-12-31 12:25
2025-12-31 11:36
2025-12-31 05:31
2025-12-30 12:56
2025-12-30 07:33

Popular Articles

Industry News
Market Trends
Curated Readings

Curated Series

App内阅读