Fun

Federated Sidechains: $8M in BTC Stuck in Limbo, Analyst Says Action ‘Violates Liquid’s Security Model’

News Feed - 2020-06-29 12:06:00

Federated Sidechains: $8M in BTC Stuck in Limbo, Analyst Says Action "Violates Liquid"s Security Model"


Liquid, the sidechain network developed by the company Blockstream, saw 870 bitcoins ($8 million) frozen in moderation queue due to a seizure from a number of the network’s functionaries. The founder of the Summa project, James Prestwich, explained on Twitter that the emergency 2-of-3 controlled 870 bitcoin “violates Liquid’s security model.”


During the last year, the crypto firm Blockstream has been promoting its Liquid sidechain as “trustless,” even though many cryptocurrency proponents have criticized the federation of exchanges who call the network’s shots. For instance, the infamous Cobra, owner of bitcoin.org tweeted back in February: “Blockstream is busy pumping “trustless” centralized Liquid because ‘Lightning doesn’t scale;’ who even takes these ‘influencers’ seriously anymore?”


“Liquid is a sidechain, it’s just not a trustless (or, more precisely, trust-minimized) sidechain,” another critic tweeted in January. Taking it further, a number of individuals have said that Liquid is no different than the likes of Paypal or Ripple. The original ‘Sidechains’ paper sold the idea of a ‘trustless 2-way peg,’” software developer Rhett Creighton explained.


“The [Liquid] paper was used to raise $21M for Blockstream never delivered on the ‘trustless 2-way peg’ (maybe it’s impossible). So we get Liquid which is based on a federated model, which is basically Paypal,” the developer added.


Liquid’s so-called trustless model was exposed in real-time just recently, according to a tweet published by the Summa project cofounder James Prestwich.


“Looks like the liquid emergency 2-of-3 operators can steal 870 Bitcoin because this TXO has aged 2015 blocks?” Prestwich asked the Twitter account @notgrubles, and associate that works with Blockstream. “For just under an hour, the emergency 2-of-3 controlled 870 Bitcoin. This violates liquid’s security model [and] we know about this because Liquid holds bitcoin.”


Prestwich also exposed that the Liquid Federation is a closed business model. Prestwich stated:We don’t know what caused it because liquid federation behavior is trusted and closed.


Prestwich further explained that when he pinged a Blockstream employee, they didn’t even verify his findings before arguing with him first.


“I felt comfortable disclosing publicly because no one but the trusted operators could exploit the issue, and the issue would not interfere with normal operation. When pinged, a Blockstream employee didn’t bother to check before mistakenly trying to correct me. It’s very hard to operate systems with mandatory rotation. This problem is conceptually similar to forgetting to mail your rent. OP_CTV aims to address rotation requirements directly, and would be a great addition to Liquid’s Federation script,” Prestwich wrote.


The CEO of Blockstream did defend Liquid in Prestwich’s Twitter thread, and blamed fixing the issue on Covid-19. “This is a known issue,” Back tweeted. “The coins are auto-swept forward as part of the HSM peg process. funds are safe as keys are offline and geo-distributed. we were planning to address via HSM upgrade, which is a manual hands-on process for security, but [Covid-19] lock-downs made that difficult.”


The discussion about Liquid’s trust model continues to rage on Twitter, ever since Prestwich disclosed the security vulnerability. Prestwich is also collaborating on a synthetic bitcoin project called tBTC, a project invoked by software developer Matt Luongo.


The project Prestwich is involved in that leverages tBTC and it is called “Keep.” “A keep is an off-chain container for private data. Keeps help contracts harness the full power of the public blockchain — enabling deep interactivity with private data,” explains the website keep.network.


Prestwich also detailed that no one knows if the Liquid BTC (LBTC) seizure has happened before. It’s likely, however, many crypto advocates will be watching for vulnerabilities in the Liquid network, especially with 2,160 BTC or $19.7M sitting in Blockstream’s Liquid TVL (total value locked).


Nevertheless and despite the haters and ongoing trust model debates, Ethereum is BTC’s default sidechain by order of TVL and value moved.


What do you think about the 870 bitcoins ($8 million) frozen in Liquid’s moderation queue? Let us know what you think about this subject in the comments below.Breaking Bitcoin: Crypto Proponents Discuss Honeywell"s 6 Qubit Quantum ComputerTECHNOLOGY | 6 days agoHundreds of Sites Now Earn Crypto Trading Fees: Exchange Wordpress Plugin Sees 300 Active InstallsTECHNOLOGY | Jun 21, 2020Tags in this story@notgrubles, Adam Back, Blockstream, BTC, Cobra, James Prestwich, LBTC, Paypal, Rhett Creighton, Ripple, security model violation, Summa cofounder, tbtc, Trust Model, Trustless


Image Credits: Shutterstock, Pixabay, Wiki CommonsPurchase Bitcoin without visiting a cryptocurrency exchange. Buy BTC and BCH here.Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article.Read disclaimer Show comments

News Feed

South African Retailer Pick n Pay Now Accepting Payments via BTC at All Its Stores
South African Retailer Pick n Pay Now Accepting Payments via BTC at All Its Stores Pick n Pay, one of South Africa’s leading retailers, reportedly now accepts bitcoin as pay
Yashu Gola11 hours agoToncoin (TON) price skyrockets to 11-month high after Telegram launches ‘Giveaways’TON’s price risks a correction in the short term as it nears a confluence of historically strong resistance z
Singapore flags digital payment tokens as high-risk in AML landscape
Amaka Nwaokocha3 hours agoSingapore flags digital payment tokens as high-risk in AML landscapeSingapore said digital payment token service providers, also known as virtual asset service providers, stand out as a high-ris
How to create a memecoin on Solana?
Max Moeller8 hours agoHow to create a memecoin on Solana?Anyone can create a memecoin through Solana without too much hassle. The process simply requires a good idea.1532 Total views5 Total sharesListen to article 0:00Ho
Solidus – Invest in the Future
Solidus - Invest in the Future press release PRESS RELEASE.It is incredible to see the utilisation of AI in every industry in some shape or form, but above all else, companies such
Elon Musk Says Tesla and Spacex See Significant Inflation Pressure — Confirms He Won’t Sell Crypto
Elon Musk Says Tesla and Spacex See Significant Inflation Pressure — Confirms He Won"t Sell Crypto Tesla and Spacex CEO Elon Musk has revealed that his two companies are seeing s
Terra Collapse Continues to Plague Defi — Value Locked in Cross-Chain Bridges Down 20% This Month
Terra Collapse Continues to Plague Defi — Value Locked in Cross-Chain Bridges Down 20% This Month Following the aftermath of the Terra blockchain fiasco, decentralized finance (d
Martin Young5 hours agoSBF trial dates revealed: FTX founder to stand trial over 6 weeksIn a hearing, Assistant U.S. Attorney Danielle Kudla said the Department of Justice estimated the case could last four to five weeks
While Stocks Rebound, Analysts Discuss Bitcoin’s Decoupling, Gold Markets Remain ‘Under Pressure’
While Stocks Rebound, Analysts Discuss Bitcoin"s Decoupling, Gold Markets Remain "Under Pressure" U.S. equities markets jumped on Thursday as stock traders saw some relief after a
GameFi Project ArchLoot Provides NFT User Builder for Creative Playability
GameFi Project ArchLoot Provides NFT User Builder for Creative Playability press release PRESS RELEASE.Singapore, May 3, 2022 –NFTs have disrupted the gaming industry with th
Ezra Reguerra25 minutes agoCybersecurity team claims up to $2.1B in crypto stored in old wallets is at riskThe security firm urges those using wallets generated from 2011 to 2015 to transfer their assets to crypto wallet
Uzbekistan Allows Foreign Firms to Deposit Funds From Crypto Trading, Restricts Other Operations
Uzbekistan Allows Foreign Firms to Deposit Funds From Crypto Trading, Restricts Other Operations The Central Bank of Uzbekistan has permitted foreign-based businesses to open domes