Fun

News Feed - 2023-11-21 05:11:33

Ezra Reguerra22 minutes agoSecurity firm dWallet Labs flags validator vulnerability that could affect $1B in cryptoValidator service provider InfStones disagreed and told Cointelegraph that “nothing close to $1 billion in assets would be at risk,” even in the worst-case scenario.114 Total views1 Total sharesListen to article 0:00NewsJoin us on social networksBlockchain security firm dWallet Labs recently disclosed a vulnerability that they claim could affect up to $1 billion worth of crypto, with assets such as Ether (ETH), Aptos (APT), BNB (BNB) and Sui (SUI) at risk.


In a paper sent to Cointelegraph, dWallet Labs reported a potential vulnerability in validators hosted by an infrastructure provider called InfStones. According to dWallet Labs, they started a research paper on attacking blockchain networks and collecting private keys with Web2 attacks. During this research, dWallet Labs said, they discovered vulnerabilities in InfStones validators. They wrote:“A chain of vulnerabilities we discovered and exploited during our research allowed us to gain full control, run code and extract private keys of hundreds of validators on multiple major networks, potentially leading to direct losses equivalent to over one billion dollars in cryptocurrencies such as ETH, BNB, SUI, APT and many others.” 


According to dWallet Labs, an attacker who exploits the vulnerability can acquire the private keys of validators across different blockchain networks. “Over one billion dollars of staked assets were staked on all of these validators, and such an attacker would have been able to gain full control of all of them,” they added. 


Related:Exploits, hacks and scams stole almost $1B in 2023: Report


On Nov. 21, InfStones responded to Cointelegraph’s request for comment, denying that the bug could affect $1 billion in assets. Darko Radunovic, a representative from InfStones, told Cointelegraph that the potential vulnerability could only affect a small fraction of the live nodes they’ve already launched.


According to Radunovic, the potential vulnerability was discovered in 237 instances, including 212 cases designated for testing and 25 instances as freshly launched nodes in the production environment. “The instances identified in production constitute a fraction below 0.1% of the live nodes we have launched to date,” Radunovic said in a statement. The company also published a blog post saying the vulnerability was resolved.


Radunovic also highlighted that in response to the vulnerability, they’ve done internal reviews and had an accredited security firm audit their systems and company policies. The company also launched a bug bounty program to encourage any third party to work with them directly on any bugs they may find. 


Magazine:$3.4B of Bitcoin in a popcorn tin: The Silk Road hacker’s story# Blockchain# Security# CybersecurityAdd reactionAdd reactionRead moreHow to backup your crypto wallet private keysBoosting blockchain adoption by keeping tech on the back endFireblocks, UniPass Wallet tackle Ethereum ERC-4337 account abstraction vulnerability

News Feed

Russia to Decide Between Full Ban and Legalization of Crypto Investments, Trade
Russia to Decide Between Full Ban and Legalization of Crypto Investments, Trade Authorities in Russia are discussing two very different approaches to the regulation of cryptocurren
Partner of ex-FTX exec hit with campaign finance charges
Turner Wright5 hours agoPartner of ex-FTX exec hit with campaign finance chargesMichelle Bond, who ran for a seat in the US House of Representatives in 2022, faces four charges related to violations of campaign finance l
MetalCore Closed Beta 3 introduces NFTs and Web3 integration
Josh O"Sullivan8 hours agoMetalCore Closed Beta 3 introduces NFTs and Web3 integrationMetalCore’s CB3 launches on June 27. It integrates NFTs and SHARDS, a new offchain currency, and aims to appeal to both Web2 and Web
Brayden Lindrea4 hours agoBinance, Coinbase and Gemini staff are among the least happy, data suggestsCrypto exchange Binance said its “hardcore” work culture could explain some of the results, while recruiters warn t
Report: Pakistan Likely to Earn Billions From Cryptocurrency
Report: Pakistan Likely to Earn Billions From Cryptocurrency According to a document produced by a Pakistani policy advisory board, the country is likely to earn billions of dollar
SEC Probes Binance — BNB Could Be Unregistered Security: Report
SEC Probes Binance — BNB Could Be Unregistered Security: Report The U.S. Securities and Exchange Commission (SEC) is reportedly investigating Binance’s BNB token, which co
Father-son team says they’ve recovered $6M in lost crypto
Christopher Roark9 hours agoFather-son team says they’ve recovered $6M in lost cryptoThe New Hampshire duo uses cracking techniques to access lost wallets.5271 Total views8 Total sharesNewsOwn this piece of crypto hist
Bitcoin Core’s Version 24.0 Full-RBF Proposal Sparks Controversy, Synonym CEO Calls ‘Pet Agenda’ an ‘Attack’
Bitcoin Core’s Version 24.0 Full-RBF Proposal Sparks Controversy, Synonym CEO Calls ‘Pet Agenda’ an ‘Attack’ During the last few weeks, a number of individuals have been
Former US Treasury Secretary Larry Summers: Cryptocurrency Will ‘Do Better Regulated’
Former US Treasury Secretary Larry Summers: Cryptocurrency Will "Do Better Regulated" Former U.S. treasury secretary and chief economist at the World Bank, Larry Summers, says cryp
Institutional Crypto Investors Flag Regulation a ‘Risk and Reward’ for Bitcoin
Binance has published a report today, in which the crypto exchange revealed the market insights of its largest institutional and VIP clients. As a result, the participants of the research believe regulation is both a big
Meta launches ‘most capable openly available LLM to date,’ rivaling GPT and Claude
Tristan Greene4 hours agoMeta launches ‘most capable openly available LLM to date,’ rivaling GPT and ClaudeLlama-3 may be the company’s most ambitious artificial intelligence project yet.660 Total views3 Total shar
Trust Wallet partners with TON for further blockchain adoption
Josh O"Sullivan12 hours agoTrust Wallet partners with TON for further blockchain adoptionTrust Wallet’s collaboration with The Open Network aims to leverage Telegram’s user base to enhance GameFi and DApps integratio