Fun

Federated Sidechains: $8M in BTC Stuck in Limbo, Analyst Says Action ‘Violates Liquid’s Security Model’

News Feed - 2020-06-29 12:06:00

Federated Sidechains: $8M in BTC Stuck in Limbo, Analyst Says Action "Violates Liquid"s Security Model"


Liquid, the sidechain network developed by the company Blockstream, saw 870 bitcoins ($8 million) frozen in moderation queue due to a seizure from a number of the network’s functionaries. The founder of the Summa project, James Prestwich, explained on Twitter that the emergency 2-of-3 controlled 870 bitcoin “violates Liquid’s security model.”


During the last year, the crypto firm Blockstream has been promoting its Liquid sidechain as “trustless,” even though many cryptocurrency proponents have criticized the federation of exchanges who call the network’s shots. For instance, the infamous Cobra, owner of bitcoin.org tweeted back in February: “Blockstream is busy pumping “trustless” centralized Liquid because ‘Lightning doesn’t scale;’ who even takes these ‘influencers’ seriously anymore?”


“Liquid is a sidechain, it’s just not a trustless (or, more precisely, trust-minimized) sidechain,” another critic tweeted in January. Taking it further, a number of individuals have said that Liquid is no different than the likes of Paypal or Ripple. The original ‘Sidechains’ paper sold the idea of a ‘trustless 2-way peg,’” software developer Rhett Creighton explained.


“The [Liquid] paper was used to raise $21M for Blockstream never delivered on the ‘trustless 2-way peg’ (maybe it’s impossible). So we get Liquid which is based on a federated model, which is basically Paypal,” the developer added.


Liquid’s so-called trustless model was exposed in real-time just recently, according to a tweet published by the Summa project cofounder James Prestwich.


“Looks like the liquid emergency 2-of-3 operators can steal 870 Bitcoin because this TXO has aged 2015 blocks?” Prestwich asked the Twitter account @notgrubles, and associate that works with Blockstream. “For just under an hour, the emergency 2-of-3 controlled 870 Bitcoin. This violates liquid’s security model [and] we know about this because Liquid holds bitcoin.”


Prestwich also exposed that the Liquid Federation is a closed business model. Prestwich stated:We don’t know what caused it because liquid federation behavior is trusted and closed.


Prestwich further explained that when he pinged a Blockstream employee, they didn’t even verify his findings before arguing with him first.


“I felt comfortable disclosing publicly because no one but the trusted operators could exploit the issue, and the issue would not interfere with normal operation. When pinged, a Blockstream employee didn’t bother to check before mistakenly trying to correct me. It’s very hard to operate systems with mandatory rotation. This problem is conceptually similar to forgetting to mail your rent. OP_CTV aims to address rotation requirements directly, and would be a great addition to Liquid’s Federation script,” Prestwich wrote.


The CEO of Blockstream did defend Liquid in Prestwich’s Twitter thread, and blamed fixing the issue on Covid-19. “This is a known issue,” Back tweeted. “The coins are auto-swept forward as part of the HSM peg process. funds are safe as keys are offline and geo-distributed. we were planning to address via HSM upgrade, which is a manual hands-on process for security, but [Covid-19] lock-downs made that difficult.”


The discussion about Liquid’s trust model continues to rage on Twitter, ever since Prestwich disclosed the security vulnerability. Prestwich is also collaborating on a synthetic bitcoin project called tBTC, a project invoked by software developer Matt Luongo.


The project Prestwich is involved in that leverages tBTC and it is called “Keep.” “A keep is an off-chain container for private data. Keeps help contracts harness the full power of the public blockchain — enabling deep interactivity with private data,” explains the website keep.network.


Prestwich also detailed that no one knows if the Liquid BTC (LBTC) seizure has happened before. It’s likely, however, many crypto advocates will be watching for vulnerabilities in the Liquid network, especially with 2,160 BTC or $19.7M sitting in Blockstream’s Liquid TVL (total value locked).


Nevertheless and despite the haters and ongoing trust model debates, Ethereum is BTC’s default sidechain by order of TVL and value moved.


What do you think about the 870 bitcoins ($8 million) frozen in Liquid’s moderation queue? Let us know what you think about this subject in the comments below.Breaking Bitcoin: Crypto Proponents Discuss Honeywell"s 6 Qubit Quantum ComputerTECHNOLOGY | 6 days agoHundreds of Sites Now Earn Crypto Trading Fees: Exchange Wordpress Plugin Sees 300 Active InstallsTECHNOLOGY | Jun 21, 2020Tags in this story@notgrubles, Adam Back, Blockstream, BTC, Cobra, James Prestwich, LBTC, Paypal, Rhett Creighton, Ripple, security model violation, Summa cofounder, tbtc, Trust Model, Trustless


Image Credits: Shutterstock, Pixabay, Wiki CommonsPurchase Bitcoin without visiting a cryptocurrency exchange. Buy BTC and BCH here.Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article.Read disclaimer Show comments

News Feed

CPLAY Network (CPLAY) Is Now Available for Trading on LBank Exchange
CPLAY Network (CPLAY) Is Now Available for Trading on LBank Exchange press release PRESS RELEASE. INTERNET CITY, DUBAI, Mar. 15, 2022 – LBank Exchange, a global digital asset
Crypto exchange Gemini to close all customer accounts in Canada
Tom Mitchelhill1 hour agoCrypto exchange Gemini to close all customer accounts in CanadaGemini has told its Canadian users they have 90 days to withdraw their funds before it closes all accounts by the end of this year.
Dinwiddie Leads Crypto Charge, Tokenizes His NBA Contract
Brooklyn Nets point guard Spencer Dinwiddie just announced his plans to tokenize his latest NBA contract to broaden his investment options now. | Credit: Wendell Cruz-USA TODAY Sports
81.79 ‘Sleeping Bitcoin’ From 2011 Worth $3.6M Moved for the First Time in Over a Decade
81.79 "Sleeping Bitcoin" From 2011 Worth $3.6M Moved for the First Time in Over a Decade As bitcoin has increased more than 5% in value against the U.S. dollar during the last week
Web3 Blockchain Gaming Project Oasys Closes Strategic Funding Round With Participation of Galaxy Interactive and Nexon
Web3 Blockchain Gaming Project Oasys Closes Strategic Funding Round With Participation of Galaxy Interactive and Nexon Oasys, a Gamefi-oriented Web3 blockchain project, has announc
Government of Uruguay Presents Campaign Against Crypto Scams
Government of Uruguay Presents Campaign Against Crypto Scams The Department of the Interior of Uruguay is taking steps to warn users about the danger they face when investing in ce
India, UAE Collaborate to Boost Cross-Border Central Bank Digital Currency Transactions
India, UAE Collaborate to Boost Cross-Border Central Bank Digital Currency Transactions India’s central bank, the Reserve Bank of India (RBI), and the Central Bank of the United
$2 Billion Crypto Fraud Bitconnect and Founder Charged — Director Pleads Guilty to Criminal Charges
$2 Billion Crypto Fraud Bitconnect and Founder Charged — Director Pleads Guilty to Criminal Charges The $2 billion crypto fraud scheme Bitconnect and its founder have been charge
CCP reveals game world details and playtest dates for new blockchain game set in Eve universe
Tristan Greene6 hours agoCCP reveals game world details and playtest dates for new blockchain game set in Eve universeProject Awakening will take place on a single shard set in the same universe as Eve Online.863 Total v
Ghana’s Minority Lawmakers Reject Government Proposal to Tax Mobile Money Transactions
Ghana"s Minority Lawmakers Reject Government Proposal to Tax Mobile Money Transactions The Ghanaian government’s proposal to introduce a 1.75% levy on digital transactions w
Colombians Make Up 20% of the Customers of New Gen Crypto-Powered Accounts According to BBVA
Colombians Make Up 20% of the Customers of New Gen Crypto-Powered Accounts According to BBVA BBVA, a private bank based in Spain, released an article that states Latam users are ve
12 Crypto Firms Authorized to Operate License-Free in Hawaii for Two Years
12 Crypto Firms Authorized to Operate License-Free in Hawaii for Two YearsThe U.S. state of Hawaii has authorized 12 cryptocurrency companies to start operating in the state without