Aman Dhesi
@aman
It's a common misconception that just simulating transactions will keep you safe from losing your crypto! Simulation only works for transactions, not for signatures. Most attacks these days are happening through Seaport signatures and it will only get worse with Uniswap permit2.
5 replies
0 recast
0 reaction
arta
@arta
I think wallets should definitely be keeping tabs on signatures and displaying active ones to users to mitigate this
1 reply
0 recast
0 reaction
Aman Dhesi
@aman
what do you mean by active ones?
1 reply
0 recast
0 reaction
arta
@arta
for example, if you sign a seaport signature the wallet itself also logs that somewhere and displays it to the user as “active” along with other ones they may have signed. Now when the signature gets invalidated etc the user can clear it from the list. I’m sure on some level it can be automated though.
1 reply
0 recast
0 reaction
Aman Dhesi
@aman
Yep it's a good idea to log signed signatures. There are ways to invalidate seaport signatures but you'd have to do it before the attacker submits it. It requires a signature so can't be totally automated
1 reply
0 recast
0 reaction