erc4337

509 posts

erc4337 banner
erc4337

erc4337

@erc4337

Official Twitter account for ERC-4337 Account Abstraction

Katılım Şubat 2023
5 Takip Edilen8.4K Takipçiler
erc4337
erc4337@erc4337·
The vulnerability only applies to a small fraction of the UserOperations visible before execution (i.e. transactions sent to the ERC-4337 UserOperation mempool). It’s a griefing/censorship vector, not fund theft, and is fixed in v0.9.
Trust@TrustSecAudits

Today, in coordination with @ethereumfndn, we're disclosing a high-severity DoS attack affecting the core of ERC4337 account abstraction. Users are strongly encouraged to migrate to v0.9 wallets where the issue is mitigated. This previously unseen attack vector weaponizes various safety checks including reentrancy guards which are ubiquitous in modern DeFi infrastructure, to deny withdrawals and disrupt core functionality for AA users. From our research, a meaningful share of AA DeFi activity could be disrupted. Huge thanks to the EF for handling the issue responsibly and granting us a $50k bounty, the maximum high-severity award. We've also reached out to major affected dApps in order to guard their AA users. We'd like to commend projects that took quick action and upheld their commitment both to their users and the whitehat community - an additional $59.5k was granted by affected dApps. Full disclosure of relevant DeFi products and their responses will be released soon. Additional details including root cause analysis can be found in the EF disclosure below. TrustSec is determined to continue safeguarding the Ethereum ecosystem, even from the most surprising attack vectors.

English
3
4
18
8.2K
erc4337
erc4337@erc4337·
ERC-4337 made accounts programmable. EIL extends that programmability across chains. EIL is fundamentally an execution pattern for accounts. It extends account abstraction to multichain execution, allowing a single account to authorize and execute cross-chain transactions with one signature, while preserving Ethereum’s trust and security model. EIL answers this narrow question: How can an account initiate and settle execution across chains without introducing trusted intermediaries? If we don’t answer this question, we guarantee the answer lives somewhere else - outside the protocol. The account abstraction roadmap is not complete until a single account can safely execute across the chains users already live on. More here ⬇️
LI.FI@lifiprotocol

What is the EIL? The EIL focuses on trustlessness. Wallet-centric, cross-chain orchestration where the user is always in control - without the intermediaries. But what does this mean for markets today, and how could markets look with wider adoption of the EIL? Read more: li.fi/knowledge-hub/…

English
0
2
9
1.2K
erc4337
erc4337@erc4337·
EntryPoint v0.9 (released Nov 2025) included a fix based on a responsibly disclosed AA bug bounty report by security experts at TrustSec Thanks to @trust__90 for the thorough analysis and close coordination throughout the disclosure process 🤝 open.substack.com/pub/erc4337/p/…
English
2
8
73
53.4K
erc4337
erc4337@erc4337·
This is what ERC-4337 was designed for 🚀 Bundlers are replaceable infrastructure and not wallet dependencies. Allowing per-network bundler selection enables real competition, experimentation, and censorship resistance in the AA mempool. Great step forward by @ambire!
Borislav Itskov ⚔️💜@borislavItskovv

Calling all bundlers. From @ambire v5.34.6, we're allowing a custom bundler URL for each network. We're trying to give space to ERC-4337 developers to experiment more. If you are a bundler, place your bundler URL and broadcast a few userOps with Ambire!

English
3
4
15
1.9K
erc4337
erc4337@erc4337·
EIL makes AA multichain 🚀 AA abstracts validation and gas. EIL uses that to let users self-execute across chains without holding native gas or trusting relayers. This is exactly the kind of trust-minimized UX AA was set to unlock from the beginning.
L2BEAT 💗@l2beat

At DevConnect Buenos Aires, the details of EIL @ethinteroplayer - Ethereum Interoperability Layer were unveiled. We’ve been deep-diving interop protocols for months and our initial assessment of EIL contracts (deployed on testnets already) is following 🧵👇

English
4
6
24
1.5K
erc4337
erc4337@erc4337·
learn how @MetaMask smart accounts power the ERC-7715 advanced permissions standard, and how you can build on this next gen permission layer. starting in 15 min at the AA community hub
erc4337 tweet media
English
1
4
10
1.1K
erc4337 retweetledi
Ofir
Ofir@OfirEliasi·
Hackers, it’s live 👇 
The Stitch SDK - a lightweight wrapper for the EIL tech stack - is now public for anyone building DeFi, built on top of @ethinteroplayer, @erc4337 and backed by @ethereumfndn. I’m making the repo public right before my talk at @ETHGlobal today at 5pm, where I’ll walk through how it works and how you can use it during the hackathon. Thnks to AA team @ThewizardofPOS, @tomteman and @yoavw for pushing this forward - and shoutout to @syndika_co and the whole builder crowd this week. Jump in, fork it, break it, ship something cool.
github.com/CodeBeachClub/…
Ofir tweet media
English
0
6
20
1.3K
erc4337
erc4337@erc4337·
Come and meet the @ethereumfndn researchers behind ERC-4337 and EIL - @drortirosh Shahaf Nacson and Alex Forshtat 📅Today, Nov 21, 1:00 PM 📍AA Community Hub, Green Pavilion (take a right after you enter)
erc4337 tweet media
erc4337@erc4337

Tomorrow at 1:00 PM, the Account and Chain Abstraction team will be at the AA Community Hub at @EFDevcon This is your chance to talk to them about ERC-4337, Native AA (EIP-7701) and the newly published @ethinteroplayer 📍 Green Pavilion aa-hub-arg.erc4337.io

English
0
3
10
1K
erc4337 retweetledi
Trustless
Trustless@trustlessconf·
@OfirEliasi took to the stage on day 1 to demonstrate Stitch, a dapp aggregator built on @ethinteroplayer using the new EIL SDK, showcasing how DeFi UX can be made simple without compromising on trustlessness youtu.be/gexdweMuxbA
YouTube video
YouTube
English
0
4
10
1.1K
erc4337
erc4337@erc4337·
Exciting news – @ETHGlobal Buenos Aires starts this Friday! 🎉 Are you hacking? Wanna take out the new Ethereum Interop Layer for a test drive? We've got you! 📚 Join our workshop Nov 21 at 5 PM to learn more! ethglobal.com/events/buenosa…
English
1
6
17
1.5K
erc4337 retweetledi
Trustless
Trustless@trustlessconf·
You probably heard all about how EIL will enable seamless trust-minimized cross-chain interoperability 💪 But how? Researcher Shahaf Nacson from the @ethereumfndn Account & Chain Abstraction Team breaks down the technical details in this day 1 talk youtu.be/U49OVBVXhlQ
YouTube video
YouTube
English
0
4
7
932
erc4337
erc4337@erc4337·
Tomorrow at 1:00 PM, the Account and Chain Abstraction team will be at the AA Community Hub at @EFDevcon This is your chance to talk to them about ERC-4337, Native AA (EIP-7701) and the newly published @ethinteroplayer 📍 Green Pavilion aa-hub-arg.erc4337.io
English
0
3
7
1.5K
erc4337 retweetledi
Brewit.eth ☕
Brewit.eth ☕@brewitmoney·
Our team had a great time at @EFDevcon connecting with everyone at the AA Community Hub. We demoed permissioned x402 payments for agents built on top of @erc4337 infra, and loved the thoughtful conversations that followed. Thanks to everyone who stopped by 🫶
Brewit.eth ☕ tweet mediaBrewit.eth ☕ tweet mediaBrewit.eth ☕ tweet mediaBrewit.eth ☕ tweet media
English
5
12
31
1.2K