CoinMarket Income
Tuesday, May 24, 2022
No Result
View All Result
  • Home
  • Cryptocurrency
  • Altcoin
  • Bitcoin
  • Ethereum
  • Blockchain
  • Ripple
No Result
View All Result
  • Home
  • Cryptocurrency
  • Altcoin
  • Bitcoin
  • Ethereum
  • Blockchain
  • Ripple
No Result
View All Result
CoinMarketIncome
No Result
View All Result
Home Cryptocurrency

Polygon Bug Put $23 Billion in Cryptocurrency at Risk

admin by admin
December 30, 2021
in Cryptocurrency
0
Polygon Bug Put $23 Billion in Cryptocurrency at Risk
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


Hacker Used Exploit, Now Patched, to Steal $2 Million in Tokens

Prajeet Nair (@prajeetspeaks) •
December 30, 2021    

Polygon Bug Put $23 Billion in Cryptocurrency at Risk
(Source: Polygon)

A vulnerability in Polygon, a framework used to build Ethereum-compatible blockchain networks, has been fixed.

See Also: Getting Started With CASB

The bug, found on Dec. 3 by white hat hackers at bug bounty platform Immunefi, would have put 9,276,584,332 MATIC, price almost $23 billion on the time, in danger, in keeping with Immunefi.

MATIC is the cryptocurrency used inside the Polygon community.

“Polygon’s core improvement workforce with assist from bug bounty platform Immunefi efficiently mounted a crucial community vulnerability. Contemplating the character of this improve, it needed to be executed with out attracting an excessive amount of consideration,” Polygon mentioned in a launch on Wednesday.

All you want to know concerning the latest Polygon community replace.
A safety companion found a vulnerability
Repair was instantly launched
Validators upgraded the community
No materials hurt to the protocol/end-users
White hats have been paid a bounty https://t.co/oyDkvohg33

— Polygon | $MATIC(@0xPolygon) December 29, 2021

On Dec. 3, a gaggle of white hat hackers notified Immunefi – which hosts Polygon’s bug bounty program – concerning the vulnerability within the community’s proof-of-stake genesis contract, in keeping with the weblog put up.

Earlier than the Polygon workforce may deal with the vulnerability, a malicious hacker used the exploit to steal round 801,601 MATIC, price round $2 million on the time, the put up says.

Polygon says it’ll bear the price of the theft.

“All tasks that obtain any measure of success in the end discover themselves on this scenario,” says Jaynti Kanani, co-founder of Polygon. “What’s necessary is that this was a check of our community’s resilience in addition to our capability to behave decisively below strain. Contemplating how a lot was at stake, I consider our workforce has made the perfect selections doable given the circumstances.”

Polygon’s weblog put up says it was capable of “instantly” repair the vulnerability with the assistance of white hat hackers and Immunefi’s skilled workforce. The improve was applied on Dec. 5.

“The validator and full node communities have been notified, they usually rallied behind the core devs to improve 80% of the community inside 24 hours with out stoppage,” the put up says.

Polygon didn’t instantly reply to Data Safety Media Group’s request for technical particulars on the vulnerability and the precise dangers it posed.

The Vulnerability

Immunefi, in a Medium post, says that the vulnerability consisted of a scarcity of steadiness/allowance checks within the switch perform of Polygon’s MRC20 contract and would have allowed an attacker to steal all out there MATIC from that contract.

“The MRC20 normal is used primarily for the opportunity of transferring MATIC gaslessly, which, with Ether, is not possible to take action. When sending Ether, you’re making a transaction {that a} pockets must signal,” Immunefi says. “Gasless MATIC transfers are facilitated by the transferWithSig() perform. The consumer who owns the tokens indicators a bundle of parameters together with the operator, quantity, nonce and expiration.”

A gasless transaction is one during which a 3rd social gathering sends another person’s transaction and absorbs what known as the “fuel” price.

Immunefi didn’t instantly reply to Data Safety Media Group’s request for added particulars on the specs of the vulnerability and the method of its discovery.

Bug Bounty

Polygon paid a complete bounty of $3.46 million to 2 white hat hackers who found the bug, in keeping with the weblog put up. Leon Spacewalker, the primary white hat hacker to report the safety loophole on Dec. 3, might be rewarded with $2.2 million price of stablecoins, Immunefi says. It says the second hacker, who was solely known as Whitehat2, will obtain 500,000 MATIC (at present over $1.2 million) from Polygon.

Spacewalker didn’t reply to ISMG’s request for feedback.

Transparency Issues

Twitter is abuzz with considerations about how Polygon addressed the vulnerability.

Nathan Worsley, an MEV engineer and DeFi builder, tweeted: “Are all of us supposed to simply shut up and overlook about the truth that over per week in the past Polygon hard-forked their blockchain in the midst of the night time with no warning to a totally closed-source genesis and nonetheless have not verified the code or defined what’s going on?”

We are actually investing far more in safety and we’re making an effort to enhance safety practices throughout all Polygon tasks.

As part of this effort, we’re working with a number of safety researcher teams, whitehat hackers and many others. Considered one of these companions found a..

— Mihailo Bjelic (@MihailoBjelic) December 15, 2021

Polygon says there’s a “pure pressure between safety and transparency, each of that are the cornerstone values at Polygon.”

“Our preliminary disclosure was minimal as a result of we comply with the silent patches coverage launched and utilized by the Geth [an Ethereum software client] workforce. All in all, the core improvement workforce struck the absolute best steadiness between openness and doing what’s greatest for the neighborhood, companions and the broader ecosystem in dealing with this extraordinarily pressing and delicate subject. However you may be the choose of that,” Polygon says.





Source link

Related articles

Investing in cryptocurrency ‘a lot safer today,’ says professor speaking to Rotary Club of Aiken | News

Investing in cryptocurrency ‘a lot safer today,’ says professor speaking to Rotary Club of Aiken | News

May 24, 2022
Cryptocurrency Glossary Of Terms & Acronyms – Forbes Advisor UK

Cryptocurrency Glossary Of Terms & Acronyms – Forbes Advisor UK

May 23, 2022
Share76Tweet47

Related Posts

Investing in cryptocurrency ‘a lot safer today,’ says professor speaking to Rotary Club of Aiken | News

Investing in cryptocurrency ‘a lot safer today,’ says professor speaking to Rotary Club of Aiken | News

by admin
May 24, 2022
0

In his speech to the Rotary Membership of Aiken on Monday, Dr. Paul Newsom provided his viewers some encouraging...

Cryptocurrency Glossary Of Terms & Acronyms – Forbes Advisor UK

Cryptocurrency Glossary Of Terms & Acronyms – Forbes Advisor UK

by admin
May 23, 2022
0

From mainstream media to essentially the most area of interest corners of the web, crypto and your complete language...

Should Bitcoin Or Other Cryptocurrencies Be In Your Retirement Accounts?

Should Bitcoin Or Other Cryptocurrencies Be In Your Retirement Accounts?

by admin
May 23, 2022
0

Crytpo Getty Pictures It has been a couple of years since I've written about Bitcoin and cryptocurrency, however these...

Will Crypto Rise Again? After Cryptocurrency Market Crash in 2022?

Will Crypto Rise Again? After Cryptocurrency Market Crash in 2022?

by admin
May 23, 2022
0

Will crypto rise once more? That is in all probability one of many greatest questions on the minds of...

Cryptocurrency Prices Today in India, May 23: Ethereum above $2000, BTC over $30,000; Solana, BNB, MATIC in the Green

Cryptocurrency Prices Today in India, May 23: Ethereum above $2000, BTC over $30,000; Solana, BNB, MATIC in the Green

by admin
May 23, 2022
0

Prime Cryptocurrency Costs At the moment in India (Could 23): Amid bearish sentiments the world over, world cryptocurrency market...

Load More
Plugin Install : Widget Tab Post needs JNews - View Counter to be installed
  • Trending
  • Comments
  • Latest
A primer for physicians of all ages

A primer for physicians of all ages

February 1, 2022
The biggest threats to cryptocurrency in 2021: Chainalysis Report

The biggest threats to cryptocurrency in 2021: Chainalysis Report

January 24, 2022
Canada’s Wealthsimple aims for real-world cryptocurrency use as it looks beyond trading

Canada’s Wealthsimple aims for real-world cryptocurrency use as it looks beyond trading

January 31, 2022
Asic Machines Is Set to Revolutionize Cryptocurrency Mining

Asic Machines Is Set to Revolutionize Cryptocurrency Mining

January 24, 2022
Kim Kardashian and Ethereum (ETH): What are the ethics of promoting crypto?

Kim Kardashian and Ethereum (ETH): What are the ethics of promoting crypto?

0
Analytics Firm Issues Altcoin Warning, Says Crypto Asset That’s Surged 393,000% Year-to-Date Is Likely Overheated

Analytics Firm Issues Altcoin Warning, Says Crypto Asset That’s Surged 393,000% Year-to-Date Is Likely Overheated

0
Bitcoin Peeps Above $56K, May Ignore US Jobs Report

Bitcoin Peeps Above $56K, May Ignore US Jobs Report

0
Ethereum 2.0’s first upgrade will happen this month — a step closer to denting the competitive advantage of ‘Ethereum Killers’

Ethereum 2.0’s first upgrade will happen this month — a step closer to denting the competitive advantage of ‘Ethereum Killers’

0
Kim Kardashian and Ethereum (ETH): What are the ethics of promoting crypto?

Kim Kardashian and Ethereum (ETH): What are the ethics of promoting crypto?

May 24, 2022
Legion Network Launches Blockchain Super App

Legion Network Launches Blockchain Super App

May 24, 2022
Opinion: Snap’s warning of a weaker outlook sends ripples through tech stocks

Opinion: Snap’s warning of a weaker outlook sends ripples through tech stocks

May 24, 2022
Investing in cryptocurrency ‘a lot safer today,’ says professor speaking to Rotary Club of Aiken | News

Investing in cryptocurrency ‘a lot safer today,’ says professor speaking to Rotary Club of Aiken | News

May 24, 2022

Recent News

Kim Kardashian and Ethereum (ETH): What are the ethics of promoting crypto?

Kim Kardashian and Ethereum (ETH): What are the ethics of promoting crypto?

May 24, 2022
Legion Network Launches Blockchain Super App

Legion Network Launches Blockchain Super App

May 24, 2022

Categories

  • Altcoin
  • Bitcoin
  • Blockchain
  • Cryptocurrency
  • Ethereum
  • Ripple

Bitcoin Currency Converter

Cryptocurrency Prices by Coinlib
  • Privacy & Policy
  • About Us
  • Contact Us

© 2021 Copyrigh Coin Market Income

No Result
View All Result
  • Home
  • Cryptocurrency
  • Altcoin
  • Bitcoin
  • Ethereum
  • Blockchain
  • Ripple

© 2021 Copyrigh Coin Market Income