Express

DeFi Asset Management Platform Zapper Reveals Vulnerabilities in the Old "Polygon Bridge" Contract

Amy Liu

Summary: DeFi asset management platform Zapper tweeted that a vulnerability was found in the old "Polygon Bridge" smart contract that would allow an attacker to steal funds that had unlimited approvals. Zapper exploited the vulnerability ourselves and all the funds have been rescued. A post-mortem will follow soon. Zapper reminds users that if you previously had ...

DeFi asset management platform Zapper tweeted that a vulnerability was found in the old "Polygon Bridge" smart contract that would allow an attacker to steal funds that had unlimited approvals. Zapper exploited the vulnerability ourselves and all the funds have been rescued. A post-mortem will follow soon.

Zapper reminds users that if you previously had an infinite approval for the bridge contract, you will see a prompt on Zapper to revoke.If you don't see anything, you were not affected by the vulnerability. The current Zapper polygon bridge contract does not have this vulnerability.

By Amy Liu

  • The Road to 2026: Where Is the Web3 Ecosystem Heading Next? 10 days ago
  • Vishwa Advances Agentic Infrastructure Research Through Contribution to Emerging Framew... 26 days ago
  • BitMart US Launches Operations with 49-State Licensing and Zero-Fee Program November 17, 2025
  • Global Financial Giants Enter Stablecoin Arena in Pivotal Shift October 30, 2025
  • CRYPTO'S NEW PLAY: 24/7 STOCK TRADING October 29, 2025
  • You need to login to comment.