Fun

Solana’s Investigation Indicates Wallet Exploit Tied to Slope Mobile App

News Feed - 2022-08-04 10:08:14

Solana"s Investigation Indicates Wallet Exploit Tied to Slope Mobile App


Following the Solana wallet attack, the Solana Status team updated the public and detailed that the wallet addresses affected by the breach were tied to Slope mobile wallet applications. The team further stressed that “there is no evidence the Solana protocol or its cryptography was compromised.” Solana Status Report Says Affected Addresses Were at One Point Created in Slope Mobile Wallet Applications


During the last 48 hours, the Solana team has been dealing with an attack that saw thousands of Solana-based wallets compromised. At the time, Solana Labs co-founder and CEO Anatoly Yakovenko thought the exploit possibly stemmed from a supply chain attack. He explained that iOS and Android wallets were affected when he said: “most of the reports are Slope, but a few Phantom users as well.”


On August 3, 2022, the Solana Status Twitter account explained that the addresses affected in the hack were tethered to Slope mobile wallet applications. “After an investigation by developers, ecosystem teams, and security auditors, it appears affected addresses were at one point created, imported, or used in Slope mobile wallet applications,” Solana Status wrote. “This exploit was isolated to one wallet on Solana, and hardware wallets used by Slope remain secure.” Solana Status said: While the details of exactly how this occurred are still under investigation, private key information was inadvertently transmitted to an application monitoring service. There is no evidence the Solana protocol or its cryptography was compromised.


Slope Finance published an official statement from the wallet team and breach details are vague. Slope said “A cohort of Slope wallets were compromised in the breach, we have some hypotheses as to the nature of the breach, but nothing is yet firm, [and] we feel the community’s pain, and we were not immune. Many of our own staff and founders’ wallets were drained.” Slope also added that the team was actively conducting internal investigations and audits, while working with security and audit groups. Security Experts Say Slope’s Seed Phrases Were Logged in Readable Plaintext


During the official statement, the Slope team further recommended that Slope wallet users “create a new and unique seed phrase wallet, and transfer all assets to this new wallet.” Slope added: If you are using a hardware wallet, your keys have not been compromised.


Data from Dune Analytics shows that there were more unique addresses that were affected by the breach than initially reported. Statistics show that 9,223 unique addresses suffered from the bug and $4,088,121 in crypto was stolen. Most of the assets hacked were made up of solana (SOL) and SOL-based USDC.


It is being said that Slope’s mnemonic seed phrases transferred to Slope’s server were logged in readable text. The Slope wallet team allegedly stored the mnemonics in debug logging software via a centralized Sentry server. Security experts at Ottersec detailed that “anybody with access to Sentry could access [a] user’s private keys.” Ottersec also noted that the Slope team was “very helpful in sharing data related to the hack.” Tags in this story altcoin, Altcoins, Anatoly Yakovenko, Dune Analytics, Exploit, Hacker, Hackers, Phantom, Slope, Slope App, Slope Finance, Slope Mobile, Slope Wallet, SOL, SOL wallet hack, SOL-based USDC, Solana, Solana Labs CEO, Solana Labs co-founder, Solana Wallet Exploit, Vulnerability


What do you think about the issues with Slope wallet and the recent exploit that affected Solana users? Let us know your thoughts about this subject in the comments section below. Jamie Redman


Jamie Redman is the News Lead at Bitcoin.com News and a financial tech journalist living in Florida. Redman has been an active member of the cryptocurrency community since 2011. He has a passion for Bitcoin, open-source code, and decentralized applications. Since September 2015, Redman has written more than 5,700 articles for Bitcoin.com News about the disruptive protocols emerging today. Solana Suffers Exploit — Close to 8,000 SOL-Based Wallets Have Been Compromised ALTCOINS | 1 day ago The Number of Euro-Pegged Stablecoins Has Swelled 1,683% Since 2020 ALTCOINS | 3 days ago


Image Credits: Shutterstock, Pixabay, Wiki Commons Previous articleBitcoin, Ethereum Technical Analysis: Crypto Markets Down Ahead of Friday’s Nonfarm Payrolls Report Next articleBiggest Movers: BNB Hits 2-Month High, ETC Extends Recent Declines Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments More Popular NewsIn Case You Missed ItTony Hawk"s Latest NFTs to Come With Signed Physical Skateboards


Last December, the renowned professional skateboarder Tony Hawk released his “Last Trick” non-fungible token (NFT) collection via the NFT marketplace Autograph. Next week, Hawk will be auctioning the skateboards he used during his last tricks, and each of the NFTs ... read more.Argentinian Securities Regulator Launches Innovation Hub to Discuss Regulated Crypto Investments UAE Airliner Emirates to Launch NFTs and Experiences in the Metaverse Digital Ruble ‘Much Needed,’ Russia’s Central Bank Says, Won’t Delay Testing Economist Predicts the Fed"s Response to Inflation Will Push Crypto Higher

News Feed

Tom Blackstone4 hours agoLido, Rocket Pool team members argue over decentralizationA Lido team member claimed Rocket Pool is not really governed by its DAO, but Rocket Pool community members pushed back, claiming the pro
DeFi whales have millions ‘forgotten’ in bridge contracts: Arkham
Brayden Lindrea4 hours agoDeFi whales have millions ‘forgotten’ in bridge contracts: ArkhamOne of the wallets includes $1.05 million worth of funds stuck in the Optimism bridge contract, which previously received ETH
KuCoin responds to claims of user funds being locked
Ezra Reguerra10 hours agoKuCoin responds to claims of user funds being lockedA KuCoin representative told Cointelegraph that it is already communicating with users to resolve the cases reported on Reddit.2850 Total views
Revolutionary NFT Platform YellowHeart Protocol Set to Launch on Bittrex Global Starting Block
Revolutionary NFT Platform YellowHeart Protocol Set to Launch on Bittrex Global Starting Block sponsored YellowHeart Protocol, an NFT platform poised to disrupt the ticketing and mu
48-Hour Stimulus Deadline: US Lawmakers Race to Approve Second Stimulus Checks Before Election
48-Hour Stimulus Deadline: US Lawmakers Race to Approve Second Stimulus Checks Before Election Amid the intense stimulus relief aid discussion, House Speaker Nan
Biggest Movers: LUNA Falls to 6-Week Low, as ALGO Surges 15% on Saturday
Biggest Movers: LUNA Falls to 6-Week Low, as ALGO Surges 15% on Saturday Despite Terra buying $1.5 billion worth of BTC this week, LUNA slipped to a six-week low to start the weeke
Biggest Movers: ATOM Climbs to Highest Point Since May, While SOL Rises by Over 10%
Biggest Movers: ATOM Climbs to Highest Point Since May, While SOL Rises by Over 10% Cosmos rose to its highest point since May earlier in today’s session, as crypto markets
Hong Kong issuer seeks spot Bitcoin ETF for mainland China
Helen Partz9 hours agoHong Kong issuer seeks spot Bitcoin ETF for mainland ChinaHarvest’s CEO believes the Hong Kong-mainland China ETF bridge program could enable crypto ETF access in mainland China.2005 Total views11
Ana Paula Pereira5 hours agoMonero’s community wallet loses all funds after attackA security breach has resulted in the loss of 2,675.73 XMR from Monero"s community crowdfunding wallet. The cause and source of the brea
Major crypto projects to unlock $755M in July
Ezra Reguerra26 minutes agoMajor crypto projects to unlock $755M in JulyAbout $755 million in crypto assets from AltLayer, Arbitrum, Optimism and other projects will be released in July as their vesting period concludes.
Indian Supreme Court Rules in Favor of Cryptocurrency — RBI Ban Lifted
Indian Supreme Court Rules in Favor of Cryptocurrency — RBI Ban Lifted A historic day for the Indian crypto community, the supreme court has finally ruled on the case against t
Whale buys nearly $13M of Ether, but price needs to reclaim $2.7K for next leg up
Zoltan Vardai12 hours agoWhale buys nearly $13M of Ether, but price needs to reclaim $2.7K for next leg upThe last time this whale address bought the dip was just before Ether rose from $2,100 to $3,100.2877 Total views4