• Home
  • Live Rates
  • Privacy Policy
  • Shop
  • Terms of Service
Wednesday, April 29, 2026
  • Home
  • Crypto News
  • Bitcoin
  • Ethereum
  • NFT
  • DeFi
  • Blockchain
  • Metaverse
  • Altcoin
  • Tether
  • Solana
    • Dogecoin
  • Live Rates
  • Shop
No Result
View All Result
XXL24
Ledger - Crypto Beginners Pack
  • Home
  • Crypto News
  • Bitcoin
  • Ethereum
  • NFT
  • DeFi
  • Blockchain
  • Metaverse
  • Altcoin
  • Tether
  • Solana
    • Dogecoin
  • Live Rates
  • Shop
No Result
View All Result
XXL24
No Result
View All Result

Ethereum’s EIP-3074 ‘upgrade’ could let wallet makers steal your money

April 15, 2024
in Ethereum
0

With momentum carried over from the relatively smooth hard fork upgrades Shapella (Shanghai+Capella) and Dencun (Deneb+Cancun), Ethereum’s next hard fork was supposed to be a breeze. Nevertheless, several analysts are waving red flags about one of its code changes, EIP-3074.

Through EIP-3074, Pectra will introduce codes that permit users to delegate all of their Ethereum assets to so-called Invokers — externally owned accounts (EOA) that users must trust to not steal their money.

Following the naming convention of ‘star + city portmanteau,’ the upcoming hard fork Pectra (Electra+Prague) will introduce two new operation codes: AUTH and AUTHCALL. Together, these codes make up Ethereum Improvement Proposal number 3074 (EIP-3074).

The two codes are easy to understand. AUTH delegates power to an Invoker to conduct transactions while AUTHCALL calls that prior authorization to conduct subsequent transactions using that authorization.

Incredibly — and for the first time in Ethereum’s history — these two codes allow a third-party entity to send or transact Ethereum assets, including NFTs and ERC-20 tokens like USDC, inside your wallet forever. Unless developers modify the EIP before Ethereum hard forks later this year, the delegated powers remain with the Invoker permanently.

Read more: Ethereum Foundation ditches ‘warrant canary’

EIP-3074 gives wallet makers even more power

Although further details of the AUTH and AUTHCALL codes are quite technical, a final item of general importance to most crypto participants is EIP-3074’s entrusting of unprecedented powers to wallet makers.

Because Ethereum developers realize the expansive and permanent power of AUTH instructions to the Ethereum Virtual Machine (EVM), they have decided to limit the EOAs to which users may delegate their assets. Specifically, they have proposed limiting EOAs to a whitelist maintained by pre-approved wallet providers like MetaMask.

The solution to this blockchain problem? Trusted third-parties.

EIP-3074: Trust us, bro.

ChainArgos CEO Jonathan Reiter explained Invokers’ newfound powers in EIP-3074 even more explicitly, saying, “I delegate authority over my account to an Invoker — something that can now call code over my assets — and that thing now has the ability to do stuff with my assets. And there’s no way to revoke that delegation… The problem here is, because you can’t revoke it, if I delegate to a contract — even if I think that contract is okay today — if it’s upgradeable, they can steal my tokens in the future.”

Security researchers and auditors have raised similar concerns. Indeed, it’s not enough for the user to simply ensure that they delegate only to presently trustworthy EOAs. If those EOAs are upgradeable smart contracts, the owner of those EOAs’ private keys could swap honest code for malicious code in the future. 

Worse, even if an EOA is immutable, if that EOA interacts with additional smart contracts and those third-party smart contracts are upgradeable, EIP-3074 could expose users’ assets to theft via malicious, third-party code upgrades in the future.

Read more: Blast L2 hack prompts debate over centralization of Ethereum rollups

Why are we further empowering the most powerful?

Given all of these risks, what exactly is the point of EIP-3074 in the first place? Mostly, in the opinion of co-author Matt Garnett, the code will save users time and money — assuming Invokers stay honest. Consider a first-timer’s experience using Uniswap. First they must manually sign to authorize Uniswap. Then they need to pay to activate ETH on Uniswap before signing up and paying gas to activate USDC. Then they sign and pay gas to swap ETH for USDC and if more assets are involved, each one must also be activated with a separate signature and gas fee.

In the post-Pectra hard fork world, many of these signatures and gas payments could consolidate. For the user, they would only sign once to AUTH an Invoker with permission to perpetually trade their ETH or USDC on their behalf — without subsequent signatures. 

In summary, EIP-3074 adds more trust and power with centralized and already quite powerful corporations like MetaMask by Consensys. Unless developers rethink this software change, the upgrade will entice users to entrust perpetual authority with third-party Invokers. These entities may now control users’ wallets and might, by way of their own or third-party smart contract upgrades, change the rules of the game in the future to simply steal users’ money.

Got a tip? Send us an email or ProtonMail. For more informed news, follow us on X, Instagram, Bluesky, and Google News, or subscribe to our YouTube channel.



This news is republished from another source.


Previous Post

Biggest NFT Lending Protocol on Solana, Sharky, Announces Token Generation Event

Next Post

Bitcoin sees record fees in 2024 as halving approaches – CryptoSlate

Next Post

Bitcoin sees record fees in 2024 as halving approaches – CryptoSlate

Name Price
Kinza Babylon Staked BTC
Kinza Babylon Staked BTC (KBTC)
$83,270.00
Steakhouse EURCV Morpho Vault
Steakhouse EURCV Morpho Vault (STEAKEURCV)
$0.000000
Eureka Bridged PAX Gold (Terra)
Eureka Bridged PAX Gold (Terra) (PAXG)
$4,182.54
Vested XOR
Vested XOR (VXOR)
$3,404.23
ICPanda DAO
ICPanda DAO (PANDA)
$0.003106
TruFin Staked APT
TruFin Staked APT (TRUAPT)
$8.02
kpk ETH Prime
kpk ETH Prime (KPK ETH PRIME)
$2,036.25
ApeSwap
ApeSwap (BANANA)
$0.000000
bitcoin
Bitcoin (BTC)
$75,764.00
ethereum
Ethereum (ETH)
$2,272.64

Dogecoin

Will Dogecoin Recover or Dive Below $0.1? 5thScape Set to Dominate 2024! %

July 15, 2024

Investors Shift to Clandeno (CLD) ICO Amid Global Market Uncertainty as Dogecoin (DOGE) and Polkadot (DOT) Drop

July 14, 2024

Dogecoin (DOGE) and Solana (SOL) Lead Crypto Market Recovery as Bitcoin (BTC) Reclaims $60K

July 14, 2024

DOGECOIN PRICE ANALYSIS & PREDICTION (July 13) – Doge Trades Calmly At $0.1, Can It Gain Strength From This Key Level? 

July 14, 2024

Analyst Who Bought Solana At $0.11 And Sold For $250 Says Buy ETFSwap (ETFS) At $0.01831 Now Instead Of Dogecoin (DOGE)

July 13, 2024

Leap Ahead with MOONHOP Presale As 4900% Growth Projection Dwarfs Notcoin & Dogecoin’s Declines

July 13, 2024

Metaverse

Ciz Verse Announces the Launch of Its Bitcoin-Powered Metaverse

July 15, 2024

Mil.k partners AirAsia rewards and The Sandbox to engage consumers in the metaverse

July 15, 2024

Lado Okhotnikov Reveals The Secrets Of The Realistic Meta Force Metaverse

July 14, 2024

GensoKishi Metaverse (MV) Price Down 18.4% This Week

July 14, 2024

The 3 Smartest Metaverse Stocks to Buy With $500 Right Now

July 14, 2024

Top 3 Metaverse Tokens For 3X Surge This Bull Rally!

July 13, 2024

transcosmos launches Roblox metaverse services with EbuAction

July 13, 2024
No Result
View All Result

Pages

  • Home
  • Live Rates
  • Privacy Policy
  • Shop
  • Terms of Service

Tether

Zimbabwe ZiG Hits Record Low as Interest in Tether (USDT) Rises

July 15, 2024

Solana

How Solana flipped Ethereum, Bitcoin in NFT Adoption

July 15, 2024

Solana Reaches Market Capitalization of $67.27 Billion (SOL)

July 14, 2024

Advertisement

  • Shop
  • Privacy Policy
  • Terms of Service

© 2023 XXL24


No Result
View All Result
  • Home
  • Crypto News
  • Bitcoin
  • Ethereum
  • NFT
  • DeFi
  • Blockchain
  • Metaverse
  • Altcoin
  • Tether
  • Solana
    • Dogecoin
  • Live Rates
  • Shop

© 2023 XXL24


  • Kinza Babylon Staked BTCKinza Babylon Staked BTC(KBTC)$83,270.000.00%
  • Steakhouse EURCV Morpho VaultSteakhouse EURCV Morpho Vault(STEAKEURCV)$0.000000-100.00%
  • Eureka Bridged PAX Gold (Terra)Eureka Bridged PAX Gold (Terra)(PAXG)$4,182.540.23%
  • Vested XORVested XOR(VXOR)$3,404.231,000.00%
  • ICPanda DAOICPanda DAO(PANDA)$0.003106-39.39%
  • TruFin Staked APTTruFin Staked APT(TRUAPT)$8.020.00%
  • kpk ETH Primekpk ETH Prime(KPK ETH PRIME)$2,036.250.01%
  • ApeSwapApeSwap(BANANA)$0.0000000.00%
  • bitcoinBitcoin(BTC)$75,764.00-0.25%
  • ethereumEthereum(ETH)$2,272.64-0.23%
  • kpk ETH Yieldkpk ETH Yield(KPK ETH YIELD)$2,031.88-0.04%
  • tetherTether(USDT)$1.00-0.01%
  • JPool Staked SOLJPool Staked SOL(JSOL)$170.103.95%
  • rippleXRP(XRP)$1.36-0.98%
  • binancecoinBNB(BNB)$616.87-0.84%
  • usd-coinUSDC(USDC)$1.000.00%
  • solanaSolana(SOL)$83.10-0.51%
  • tronTRON(TRX)$0.322794-0.19%
  • staked-etherLido Staked Ether(STETH)$2,262.76-3.72%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.03-0.80%
  • dogecoinDogecoin(DOGE)$0.1025623.22%
  • Gaj FinanceGaj Finance(GAJ)$0.0059271.46%
  • Content BitcoinContent Bitcoin(CTB)$24.482.55%
  • USD OneUSD One(USD1)$1.000.11%
  • WhiteBIT CoinWhiteBIT Coin(WBT)$53.66-0.17%
  • USDSUSDS(USDS)$1.00-0.01%
  • Wrapped stETHWrapped stETH(WSTETH)$2,773.89-3.48%
  • UGOLD Inc.UGOLD Inc.(UGOLD)$3,042.460.08%
  • leo-tokenLEO Token(LEO)$10.33-0.32%
  • HyperliquidHyperliquid(HYPE)$39.66-0.44%
  • ParkcoinParkcoin(KPK)$1.101.76%
  • wrapped-bitcoinWrapped Bitcoin(WBTC)$76,102.00-3.36%
  • cardanoCardano(ADA)$0.243977-1.00%
  • Binance Bridged USDT (BNB Smart Chain)Binance Bridged USDT (BNB Smart Chain)(BSC-USD)$1.00-0.07%
  • bitcoin-cashBitcoin Cash(BCH)$447.300.30%
  • Wrapped Beacon ETHWrapped Beacon ETH(WBETH)$2,462.35-3.82%
  • Wrapped eETHWrapped eETH(WEETH)$2,462.97-3.62%
  • moneroMonero(XMR)$375.29-2.24%
  • Yay StakeStone EtherYay StakeStone Ether(YAYSTONE)$2,671.07-2.84%
  • chainlinkChainlink(LINK)$9.10-1.43%
  • Coinbase Wrapped BTCCoinbase Wrapped BTC(CBBTC)$76,319.00-3.28%
  • PengPeng(PENG)$0.60-13.59%
  • CantonCanton(CC)$0.1520961.84%
  • zcashZcash(ZEC)$319.86-4.33%
  • stellarStellar(XLM)$0.159954-1.93%
  • wethWETH(WETH)$2,264.05-3.78%
  • MurasakiMurasaki(MURA)$4.32-12.46%
  • USD1USD1(USD1)$1.00-0.01%
  • sUSDSsUSDS(SUSDS)$1.090.12%
  • USDT0USDT0(USDT0)$1.00-0.11%