When
@MagicEden exited Ethereum, it could’ve easily helped users clean up the on-chain approvals required to use its marketplace.
A simple warning like:
“If you previously granted our trading processor blanket NFT permissions, revoke them before we close.”
could have protected many users who suffered in this attack.
Sadly, as far as i'm aware, there was no such communication from them. 😐
Instead, in their official EVM shutdown guidance, Magic Eden simply told users that their listings, bids and offers required:
“NO ACTION”
So it seems they provided zero guidance on the underlying on-chain approvals that remained active.
Aka, the ones that lead to this attack in which millions of dollars has been stolen from innocent users!
How could such a huge potential attack vector be left entirely unmentioned at that time?! 😬