Fun

News Feed - 2023-08-10 10:08:59

Tom Mitchelhill7 hours agoFireblocks discloses massive vulnerability affecting crypto walletsFireblocks said the vulnerabilities affecting Coinbase, Binance and Zengo have since been fixed and has reached out to more than 12 others still at risk.2329 Total views14 Total sharesListen to article 0:00NewsJoin us on social networksOver 15 widely-used crypto wallet providers and projects have gaping vulnerabilities that could potentially see millions of crypto wallets drained, according to digital asset infrastructure firm Fireblocks.


In an Aug. 9 press release, Fireblocks said the series of vulnerabilities, dubbed BitForge, are affecting wallets using multi-party computation (MPC) technology, which allows for multiple parties to control and manage cryptocurrency holdings.1/ The Fireblocks research team has uncovered BitForge, a set of vulnerabilities in some of the most widely adopted MPC protocols, that allow an attacker to retrieve a private key from a single device. Read on → https://t.co/xo2r9zgCvj pic.twitter.com/7q1nEeVBwO— Fireblocks (@FireblocksHQ) August 9, 2023


The identified issues were disclosed as “zero day” vulnerabilities — meaning that the flaws had not previously been identified by the projects.“If left unremediated, the exposures would allow attackers and malicious insiders to drain funds from the wallets of millions of retail and institutional customers in seconds, with no knowledge to the user or vendor.”


The firm disclosed that the BitForge vulnerabilities affected many of the top wallet providers, including Coinbase, Zengo and Binance. Following an industry-standard “90 day disclosure period” from Fireblocks, the three firms have since resolved the identified issues.


In a statement, Coinbase’s chief information security officer, Jeff Lunglhofer, thanked Fireblocks for identifying and responsibly disclosing the issue, adding that Coinbase customers and funds were never at risk. Zengo Chief Technology Officer Tal Be"ery noted that the issue was promptly fixed and no user funds were affected.3/ We want to extend our gratitude to the researchers at Fireblocks for identifying this issue, conducting an ethical disclosure, and helping to improve the security of the ecosystem.— Coinbase Cloud ️ (@CoinbaseCloud) August 9, 2023


Fireblocks said it has worked to identify other firms that may be implicated in similar security concerns and have reached out to them.


MPC wallets encrypt a user’s private key and share it between several parties — typically comprised of the wallet owner, a wallet provider, and another third party. Theoretically, no one of these entities should be able to unlock the wallet without first communicating with the others.


Related:Tel Aviv Stock Exchange to offer crypto services via Fireblocks pact


However, according to Fireblocks’ technical reports on the BitForge vulnerabilities, the vulnerabilities would have allowed hackers to “extract the full private key if they were able to compromise only one device.”


“While we are encouraged to see that MPC is now ubiquitous within the digital asset industry, it is evident from our findings — and our subsequent disclosure process — that not all MPC developers and teams are created equal,” said Fireblocks’ chief technology officer and co-founder, Pavel Berengoltz.


“Companies leveraging Web3 technology should work closely with security experts with the know-how and resources to stay ahead of and mitigate vulnerabilities,” he added.


Deposit risk: What do crypto exchanges really do with your money?# Blockchain# Coinbase# Business# Wallet# Cryptocurrency Exchange# Hot wallet# BinanceAdd reactionAdd reactionRelated NewsHow to use index funds and ETFs for passive crypto incomeEnsuring integrity of blockchain transactions: Trust through auditsWhat will Bitcoin do if the Justice Department takes aim at Binance?Binance Blockchain Week picks Turkey to host thousands of Web3 loversKuCoin denies mass layoffs, says cuts are part of normal operationsBinance starts BTC/FDUSD and ETH/FDUSD trading pairs with zero-fees

News Feed

Rich Dad Poor Dad’s Robert Kiyosaki Says He’s Waiting for Bitcoin to Test $1,100 to Buy More
Rich Dad Poor Dad"s Robert Kiyosaki Says He"s Waiting for Bitcoin to Test $1,100 to Buy More The famous author of the best-selling book Rich Dad Poor Dad, Robert Kiyosaki, says he&
L2 Scaling Solution Arbitrum Schedules Nitro Rollup Stack Upgrade for August 31
L2 Scaling Solution Arbitrum Schedules Nitro Rollup Stack Upgrade for August 31 On August 4, Arbitrum One, the layer two (L2) Ethereum scaling solution, announced the protocol will
Arijit Sarkar15 minutes agoBitcoin miner mulls refunding 20 BTC reward to PaxosChun’s reservations about whether to return the funds to Paxos stems from him being “annoyed” that “the person claiming it (the funds
Tether’s USDT stablecoin hits historic $100B market cap
Jesse Coghlan1 hour agoTether’s USDT stablecoin hits historic $100B market capThe largest stablecoin by market capitalization has gotten even larger, with Tether hitting a record $100 billion market cap.1713 Total view
Bitcoin, Ethereum Technical Analysis: BTC Moves Towards $22,000 to Start the Weekend
Bitcoin, Ethereum Technical Analysis: BTC Moves Towards $22,000 to Start the Weekend Bitcoin moved towards $22,000 to start the weekend, as prices consolidated following Friday
Fed Board, FDIC Order Voyager Digital to Retract Federal Deposit Insurance Claims
Fed Board, FDIC Order Voyager Digital to Retract Federal Deposit Insurance Claims Following Voyager Digital’s application for bankruptcy protection during the first week of
Marcel Pechman10 hours agoBitcoin futures open interest jumps by $1B: Manipulation or hedge?Bitcoin spiking above $27,200 amid a big jump in open interest has some analysts asking whether BTC’s price is being manipulat
Egyptian Banks Set to Launch Multi-Million Dollar Fintech Fund
Egyptian Banks Set to Launch Multi-Million Dollar Fintech Fund Egyptian banks are reportedly on course to launch a $69.6 million fund which is earmarked to support the country
Tether mints another $1B USDT on Tron network
Ezra Reguerra14 hours agoTether mints another $1B USDT on Tron networkTether mints $1 billion USDT on Tron, pushing its total tokens minted in the last year to 33 billion.4451 Total views4 Total sharesListen to article 0
Report: FTX CEO Told Staff Crypto Exchange ‘Effectively Paused’ Withdrawals
Report: FTX CEO Told Staff Crypto Exchange "Effectively Paused" Withdrawals According to a report shared by an FTX staff member, prior to Binance announcing it would acquire the ex
Amaka Nwaokocha7 hours agoCrypto reshapes the American dream for younger generations: ReportYoung Americans are actively exploring fresh economic prospects independent of an obsolete financial system supported by sluggis
Biggest Movers: ADA Snaps Losing Streak as BCH Moves to 10-Day High
Biggest Movers: ADA Snaps Losing Streak as BCH Moves to 10-Day High Cardano ended a two-day losing streak on Monday, as the token moved closer to a two-month high to start the week