PANews reported on February 22 that the multi-signature wallet protocol Safe tweeted that according to ByBit, the transaction information displayed by the Safe{Wallet} UI was correct, but a malicious transaction with all valid signatures was executed on the chain. Safe's investigation so far shows:

  • No codebase vulnerabilities found: The Safe codebase was thoroughly examined and no vulnerabilities or evidence of modification were found.
  • No malicious dependencies found: There is no indication of malicious dependencies in the Safe codebase that could affect transaction flow (i.e., supply chain attacks).
  • No unauthorized access to the infrastructure was detected in the logs.
  • No other Safe addresses were affected

As previously announced, Safe has temporarily suspended Safe{Wallet} functionality to ensure the absolute security of the platform. While the investigation found no evidence that the Safe{Wallet} frontend itself was compromised, a thorough review is ongoing.