Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
DeFi Faces Trust Issues: User Access Enables Latest Base Blockchain Vulnerability

DeFi Faces Trust Issues: User Access Enables Latest Base Blockchain Vulnerability

Bitget-RWA2025/10/30 04:20
By:Bitget-RWA

- CertiK reported a Base blockchain exploit draining 55 WETH via an unverified contract, highlighting DeFi's persistent smart contract risks. - Unverified contracts remain a critical vulnerability, as attackers exploit user-authorized permissions to drain funds. - Mutuum Finance (MUTM), despite a 90/100 CertiK audit score, underscores the need for continuous monitoring amid DeFi's security challenges. - The incident reinforces calls for rigorous contract verification, user due diligence, and proactive risk

CertiK, a prominent name in blockchain security, has disclosed that an unverified contract on the Base blockchain was exploited, causing users who had previously granted permissions to lose 55 Wrapped Ether (WETH), as detailed in a

. This event draws attention to persistent security gaps in decentralized finance (DeFi), where smart contract vulnerabilities continue to pose significant risks for both investors and developers.

The breach involved an unverified contract—an immediate warning sign within DeFi, where transparency and thorough auditing are standard expectations. CertiK’s investigation found that users had already authorized the compromised contract, which allowed the attacker to exploit these permissions and siphon off funds. Although the precise method of the attack is still being examined, the incident emphasizes the necessity of comprehensive smart contract reviews and careful user practices, according to the GlobeNewswire announcement.

DeFi Faces Trust Issues: User Access Enables Latest Base Blockchain Vulnerability image 0

This Base network exploit is part of a larger pattern of DeFi security incidents, where unverified contracts and improper permission management are frequent attack vectors. CertiK’s findings highlight that even well-audited projects can be at risk if users engage with unverified or inadequately managed contracts. The company has called on developers to focus on contract verification and ongoing oversight, while users should be diligent in checking their authorization settings, as noted in the GlobeNewswire announcement.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!