SlowMist: EOA Account Controlled by Fusion Project Team Attacked Due to EIP-7702 Authorization Contract Vulnerability
2026-01-07 04:07
Odaily reported that SlowMist posted on the X platform, stating that MistEye detected potential suspicious activity related to Fusion. The root cause is that the base contract delegated by the EOA account controlled by the project team via EIP-7702 had a vulnerability. This vulnerability allowed arbitrary external calls, enabling attackers to create and configure malicious burn contracts for PlasmaVault, thereby extracting funds from the contract.
