Futures
Access hundreds of perpetual contracts
TradFi
Gold
One platform for global traditional assets
Options
Hot
Trade European-style vanilla options
Unified Account
Maximize your capital efficiency
Demo Trading
Introduction to Futures Trading
Learn the basics of futures trading
Futures Events
Join events to earn rewards
Demo Trading
Use virtual funds to practice risk-free trading
Launch
CandyDrop
Collect candies to earn airdrops
Launchpool
Quick staking, earn potential new tokens
HODLer Airdrop
Hold GT and get massive airdrops for free
Pre-IPOs
Unlock full access to global stock IPOs
Alpha Points
Trade on-chain assets and earn airdrops
Futures Points
Earn futures points and claim airdrop rewards
According to CriptoNoticias, an independent security researcher disclosed that Coinbase AgentKit has a prompt injection vulnerability, allowing attackers to induce the AI agent to call wallet tools through malicious input, thereby transferring users' crypto assets, and potentially triggering remote code execution (RCE) in certain contexts. The vulnerability was reported to Coinbase's bug bounty program in February and officially verified, ultimately classified as medium severity with a $2,000 bounty paid. However, the researcher emphasized that the severity of the issue has been significantly underestimated and, based on CVSS scoring, should be close to critical level.