According to Cointelegraph, Ethereum layer-2 platform Abstract is currently investigating a security issue involving wallet drains after several users reported compromised accounts. This incident follows a significant milestone for the project, which recently deployed one million Abstract Global Wallets (AGW).
Abstract Chain developer 0xBeans announced on February 18 that some users had experienced account compromises. The developer clarified that the issue is not widespread across AGW but is isolated to a specific application, suggesting a potential breach in the Abstract-based game Cardex. Users have been advised to avoid interacting with Cardex until further notice.
The security concern emerged shortly after another team member, 0xCygaar, reported the deployment of one million AGW wallets on February 17. Highlighting the project's achievements, 0xCygaar stated that Abstract has made significant strides in advancing smart wallet technology, emphasizing that the team is just beginning its journey.
In response to the wallet drain issue, 0xCygaar reiterated that the problem is linked to Cardex and urged users to revoke any active sessions. He assured that the issue does not stem from AGW's contracts, which have undergone multiple audits. The problem appears to be related to session key management negligence within the application. The team plans to release audit reports soon to provide further transparency.
This situation is still unfolding, and additional updates will be provided as new information becomes available.