Gate Square “Creator Certification Incentive Program” — Recruiting Outstanding Creators!
Join now, share quality content, and compete for over $10,000 in monthly rewards.
How to Apply:
1️⃣ Open the App → Tap [Square] at the bottom → Click your [avatar] in the top right.
2️⃣ Tap [Get Certified], submit your application, and wait for approval.
Apply Now: https://www.gate.com/questionnaire/7159
Token rewards, exclusive Gate merch, and traffic exposure await you!
Details: https://www.gate.com/announcements/article/47889
0G reward contract under attack — approximately 520,000 tokens including $4,200 worth have been stolen
According to the 0G Foundation, on December 11th, a targeted attack compromised the reward contract, resulting in the theft of a significant amount of assets. In this incident, the emergency withdrawal function of the 0G reward contract was exploited, leading to the outflow of 520,010 0G tokens, 9.93 ETH, and USDT worth $4,200. The stolen assets are believed to have been distributed to multiple destinations via the privacy mixer Tornado Cash.
Vulnerability Trigger — Technical Background Details
The attack was facilitated by a critical vulnerability in Next.js (CVE-2025-66478), discovered on December 5th. The attacker exploited this vulnerability to penetrate the 0G Foundation’s systems laterally through internal network addresses. This method likely allowed access to multiple services from a single entry point.
Affected Services and Scope of Damage
The attack impacted several services operated by the 0G Foundation. Specifically, calibration services, validator nodes, Gravity NFT services, node sales platforms, computing-related services, Aiverse, Perpdex, Ascend, and others were affected. However, the 0G Foundation emphasizes that the core blockchain infrastructure and user funds were not impacted.
Currently, 0G tokens are trading at approximately $0.75, and the 520,010 tokens that were stolen amount to roughly $390,007 at current market prices. This incident highlights the importance of security measures and vulnerability management in blockchain development teams.