SquidRouterModule is a technology platform tracked by ThreatCluster, appearing in 3 threat clusters built from 4 intelligence report mentions.
SquidRouterModule is a technology platform tracked across 3 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed May 25, 2026; most recent activity June 1, 2026.
Gnosis Pay experienced an exploit on June 1, 2026, affecting its delay module, which controls transaction permissions for users' Safe wallets. Co-founder Martin Köppelmann confirmed that the attacker could initiate…
A vulnerability in the third-party module 'SquidRouterModule' exploited Safe wallets, resulting in a loss of $3.2 million. The attack affected at least 86 accounts on Ethereum and Base, with stolen tokens converted to…
A third-party Gnosis Safe module named 'SquidRouterModule' was exploited, draining around $3.2 million from 86 Safes in about two hours. The exploit was confirmed by security firms Blockaid and PeckShield, revealing…
SquidRouterModule is a technology platform tracked by ThreatCluster, appearing in 3 threat clusters built from 4 intelligence report mentions.
The most recent intelligence report mentioning SquidRouterModule on ThreatCluster is dated June 1, 2026. Activity was first observed May 25, 2026, giving a tracked span from then to June 1, 2026.
Across ThreatCluster reporting, SquidRouterModule most frequently co-occurs with Data Breach, Zero-day Exploit, Base, Ethereum, Gnosis, among 12 tracked related entities.
The most significant recent cluster is “Gnosis Pay Exploit Targets Delay Module, User Losses Expected” (6 articles · Updated June 1, 2026). SquidRouterModule appears across 3 threat clusters in total, listed above with sources.
SquidRouterModule appears in 4 intelligence report mentions across 3 deduplicated threat clusters, aggregated from 17,000+ monitored sources.