TIL
@til
To learn: sign a message and your fund will be lost. How does it work? revoke.cash
1 reply
0 recast
0 reaction
TIL
@til
签名操作可以把代币控制权交给 spender。 盗用可能: - 钓鱼网站要你签名 - 官方 dapp 漏洞 Tips: - 仔细检查签名内容,多方验证是否是官方 spender - 不要无限授权 - 避免永久授权 ref: https://openprompt.co/conversations/4788
1 reply
0 recast
0 reaction
TIL
@til
相关资料: https://github.com/slowmist/Blockchain-dark-forest-selfguard-handbook/blob/main/README_CN.md - 黑暗森林自救指南 https://neptunemutual.com/blog/understanding-erc-20-permit-and-associated-risks/ - EIP-2612
0 reply
0 recast
0 reaction