BTC $84,749.21 -1.44%
ETH $2,679.51 -1.70%
BNB $776.01 -0.23%
XRP $1.49 -2.61%
SOL $119.46 -1.55%
TRX $0.3367 +0.53%
DOGE $0.0931 -3.08%
ADA $0.2458 -3.28%
BCH $311.52 -0.68%
LINK $13.91 -2.78%
HYPE $88.42 -1.80%
AAVE $179.95 -1.95%
SUI $1.17 -0.34%
XLM $0.2155 -3.59%
ZEC $1,297.29 -6.04%
AAPL $333.33 -0.09%
AMZN $251.78 -0.21%
GOOGL $342.87 -0.75%
MSFT $517.90 +0.18%
META $727.68 -0.81%
NVDA $234.52 -1.05%
TSLA $370.77 -0.79%
SNDK $1,715.63 -1.38%
INTC $117.99 -5.05%
SPCX $158.97 +0.86%
MU $1,069.88 -1.64%
AMD $631.78 -1.14%
BTC $84,749.21 -1.44%
ETH $2,679.51 -1.70%
BNB $776.01 -0.23%
XRP $1.49 -2.61%
SOL $119.46 -1.55%
TRX $0.3367 +0.53%
DOGE $0.0931 -3.08%
ADA $0.2458 -3.28%
BCH $311.52 -0.68%
LINK $13.91 -2.78%
HYPE $88.42 -1.80%
AAVE $179.95 -1.95%
SUI $1.17 -0.34%
XLM $0.2155 -3.59%
ZEC $1,297.29 -6.04%
AAPL $333.33 -0.09%
AMZN $251.78 -0.21%
GOOGL $342.87 -0.75%
MSFT $517.90 +0.18%
META $727.68 -0.81%
NVDA $234.52 -1.05%
TSLA $370.77 -0.79%
SNDK $1,715.63 -1.38%
INTC $117.99 -5.05%
SPCX $158.97 +0.86%
MU $1,069.88 -1.64%
AMD $631.78 -1.14%

prevent

All
Article
Flash

The Ethereum Foundation provides security funding to WEBCAT to assist in wallet verification front-end code to prevent phishing attacks

According to official news, the Ethereum Foundation's "Trillion Dollar Security" (1TS) has announced a special grant to the Freedom of the Press Foundation (FPF) to support the ongoing development of the open-source tool WEBCAT, aimed at addressing the long-standing front-end code verification security gap in Ethereum wallets and decentralized applications (DApps).WEBCAT (Web-based Code Assurance and Transparency) is an open-source tool designed to help browsers verify whether the code loaded by a website matches the version publicly released by the developer.This funding will promote the expansion of WEBCAT to Ethereum wallets and application scenarios, enabling users to verify whether the front-end pages they access have been tampered with.The Ethereum Foundation stated that while HTTPS can verify the website a user is connected to and encrypt communication, it cannot prove that the front-end code actually running on the website is the same version released by the developer. If an attacker controls the website's front-end code, they may modify the transaction receiving address without the user's knowledge or induce the user to sign transactions that do not match the content displayed on the page.The Ethereum Foundation noted that front-end attacks have become a significant security risk for blockchain infrastructure, with malicious modifications to web interfaces potentially leading to supply chain attacks, DNS hijacking subsequent attacks, and user interface deception.WEBCAT was initially developed by the Freedom of the Press Foundation to enhance the code credibility of secure communication systems like SecureDrop.With this expansion into the Ethereum ecosystem, it will complement security measures such as "Clear Signing" in the 1TS program: the former helps wallets confirm that the application front-end has not been tampered with, while the latter helps users understand the transaction content they are approving.

The new Ethereum EIP proposal targets the issue of staking inflation to prevent excessive growth in staking

The Ethereum community has submitted a new improvement proposal EIP "Tapered Issuance Burn," aimed at adjusting the ETH issuance mechanism to reduce the centralization and dilution risks brought about by excessively high staking ratios. The proposal points out that the ETH staking ratio exceeded one-third of the total supply in April 2026 and continues to grow.Under the current issuance curve, even if all ETH participates in staking, the staking yield will not be lower than approximately 1.5%, leading to a lack of a "closure mechanism" for staking incentives. This EIP proposes to destroy a portion of the theoretical rewards for validators in each epoch, with the destruction ratio increasing as the staking scale grows: when the staking rate reaches about 50%, the net staking yield will gradually drop to zero. The proposal believes that this mechanism can limit the continuous expansion of ETH supply, reduce the dilution pressure on holders, prevent excessive concentration of staking in custodial institutions and staking service providers, and maintain ETH's attributes as a neutral asset and a store of value.According to the design, under the tapered issuance mechanism, the ETH issuance will peak when the staking rate is around 20%, with an annual issuance rate of about 0.5%, and will drop to zero when the staking rate reaches 50%. Combined with the EIP-1559 and Blob fee destruction mechanisms, ETH supply may more frequently enter a deflationary state in the future. The authors of the proposal state that this plan is not aimed at individual stakers but rather corrects the long-term dilution issues brought about by the current issuance curve, allowing staking yields to ultimately be determined by market risk premiums rather than fixed algorithmic incentives.

CertiK: The losses from wrench attacks have surged nearly 12 times, making operational security the new core of prevention

Web3 security company CertiK released the "2026 First Half Wrench Attack Report." The report shows that in the first half of 2026, a total of 52 publicly verified wrench attack incidents were recorded globally, an increase of 33.3% year-on-year; related losses amounted to approximately $124 million, an increase of about 11.8 times compared to the same period last year.The report points out that attackers are shifting from exploiting technical vulnerabilities to targeting asset holders and their real-world relationship networks, with home invasion incidents rising from 1 in the first half of 2025 to 20, accounting for 41% of the total incidents during the same period. Europe has become a high-frequency attack region, with 33 incidents occurring in France, accounting for 63.5% of global cases.CertiK states that as real-world risks become a significant challenge for digital asset security, businesses and high-value individuals need to establish a more comprehensive protection system. CertiK has launched operational security services to help identify risks related to the exposure of information such as identity, home, residence, and travel trajectory; at the same time, through CertiK Security Workspace, it correlates off-chain intelligence, on-chain transactions, and AML risk signals to support institutions in tracking and analyzing cybercrime activities.In addition, CertiK is strengthening cooperation with international law enforcement agencies such as Interpol and Europol to provide technical support for cross-border attack investigations and security policy research.
app_icon
ChainCatcher Building the Web3 world with innovations.