Crypto
Cybersecurity Firm Halborn Warns of Zero-Day Vulnerabilities in Over 280 Blockchain Networks
Published
2 weeks agoon
By
ironity
The warning comes after Halborn was contracted in March 2022 to conduct a security review of Dogecoin’s codebase and found “several critical and exploitable vulnerabilities.” Halborn later discovered that these same vulnerabilities “affected over 280 other networks,” which risked billions of dollars worth of cryptocurrencies.
Halborn outlined three vulnerabilities, with the most critical one allowing an attacker to “send crafted malicious consensus messages to individual nodes, causing each to shut down.” These messages over time could expose the blockchain to a 51% attack, where an attacker controls the majority of the network’s mining hash rate or staked tokens to make a new version of the blockchain or take it offline.
Halborn found other zero-day vulnerabilities that would allow potential attackers to crash blockchain nodes by sending Remote Procedure Call (RPC) requests – a protocol allowing a program to communicate and request services from another. However, Halborn added that the likelihood of RPC-related exploits was lower, as it required valid credentials to undertake the attack.
Halborn warned that due to codebase differences between networks, not all the vulnerabilities were exploitable on all the networks, but at least one of them may be exploitable on each network. The cybersecurity firm said it was not releasing further technical details of the exploits due to their severity and added that it made a “good faith effort” to contact all affected parties to disclose the potential exploits and provide remediation for the vulnerabilities.
While Dogecoin, Zcash, and Litecoin have already implemented patches for the discovered vulnerabilities, Halborn warned that hundreds of other networks could still be exposed. The potential for these zero-day exploits to impact billions of dollars worth of cryptocurrencies underscores the importance of strong cybersecurity measures and regular security audits for blockchain networks. As the adoption of blockchain continues to grow, it is likely that hackers will continue to target vulnerabilities in these networks, making the need for robust security measures all the more critical.
Share this:
- Click to share on Twitter (Opens in new window)
- Click to share on Facebook (Opens in new window)
- Click to share on LinkedIn (Opens in new window)
- Click to share on Reddit (Opens in new window)
- Click to share on Tumblr (Opens in new window)
- Click to share on Pinterest (Opens in new window)
- Click to share on Pocket (Opens in new window)
- Click to share on Telegram (Opens in new window)
- Click to share on WhatsApp (Opens in new window)
- Click to share on Skype (Opens in new window)
- Click to email a link to a friend (Opens in new window)
Related

You may like
-
Arbitrum Discord Server Hacked for Phishing Attack
-
Sony Files Patent for NFT Transfer Framework
-
CryptoPunk NFT Accidentally Sent to Burn Address
-
Animoca Brands refutes claims of scaling back metaverse fund target and plummeting valuation
-
Collector Accidentally Burns $200K CryptoPunk NFT
-
Sony Files Patent for NFT Transfer Between Game Platforms
Crypto
Arbitrum Discord Server Hacked for Phishing Attack
Published
11 mins agoon
March 27, 2023By
ironity
The phishing message on Discord offered users “the opportunity to re-claim an additional stake in Arbitrum DAO Governance,” citing issues during the initial token claim drive. However, the URL supporting the announcement contained a misspelling of Arbitrum as “Arbtirum,” which is a common tactic used by hackers in phishing attacks. Clicking on the link typically leads unsuspecting users to a fake website that prompts them to enter sensitive information, such as their wallet’s private key.
As of now, Arbitrum has not released an official statement regarding the incident. Investors are advised to avoid interacting with the announcement until further clarification is provided. It is essential to remain vigilant against unrealistic claims and deceptions as hackers continue to exploit the hype surrounding cryptocurrency.
Meanwhile, two airdrop hunters were able to take advantage of the situation and collect approximately $3.3 million worth of ARB tokens. Airdrops are promotional events where crypto projects distribute free tokens to users who complete certain tasks, such as sharing a post on social media or joining a Telegram group. However, it is crucial to exercise caution when participating in airdrops, as scammers often impersonate legitimate projects to steal users’ personal information or funds.
In recent years, the crypto community has seen an increase in phishing attacks and other types of cybercrime. As the value of cryptocurrencies continues to rise, so does the incentive for hackers to target investors and platforms. It is crucial to follow best security practices, such as using strong passwords, enabling two-factor authentication, and avoiding suspicious links and emails. By remaining vigilant and informed, users can protect themselves from potential threats and enjoy the benefits of the crypto revolution.
Share this:
- Click to share on Twitter (Opens in new window)
- Click to share on Facebook (Opens in new window)
- Click to share on LinkedIn (Opens in new window)
- Click to share on Reddit (Opens in new window)
- Click to share on Tumblr (Opens in new window)
- Click to share on Pinterest (Opens in new window)
- Click to share on Pocket (Opens in new window)
- Click to share on Telegram (Opens in new window)
- Click to share on WhatsApp (Opens in new window)
- Click to share on Skype (Opens in new window)
- Click to email a link to a friend (Opens in new window)
Related
Crypto
Sony Files Patent for NFT Transfer Framework
Published
3 hours agoon
March 27, 2023By
ironity
Share this:
- Click to share on Twitter (Opens in new window)
- Click to share on Facebook (Opens in new window)
- Click to share on LinkedIn (Opens in new window)
- Click to share on Reddit (Opens in new window)
- Click to share on Tumblr (Opens in new window)
- Click to share on Pinterest (Opens in new window)
- Click to share on Pocket (Opens in new window)
- Click to share on Telegram (Opens in new window)
- Click to share on WhatsApp (Opens in new window)
- Click to share on Skype (Opens in new window)
- Click to email a link to a friend (Opens in new window)
Related
Crypto
CryptoPunk NFT Accidentally Sent to Burn Address
Published
5 hours agoon
March 27, 2023By
ironity
One of the most popular types of NFTs are CryptoPunks, which are a collection of 10,000 unique 8-bit characters that were released in 2017. Each CryptoPunk has its own distinct attributes, and some are more rare and valuable than others. CryptoPunks have become highly sought-after by collectors and investors, with some selling for millions of dollars.
Brandon Riley, an NFT collector and investor, recently acquired CryptoPunk #685 for 77 ETH (approximately $135,000 USD) with the intention of holding onto it for the long term. However, as an experienced investor, Riley also recognized the importance of procuring new NFTs before the crypto market takes off into a new bull market. He wanted to use his CryptoPunk as collateral to borrow money and invest in new NFTs.
To do this, Riley attempted to wrap his CryptoPunk using a technique known as tokenization. Tokenization involves locking an NFT in a smart contract and creating a new token that represents the value of the NFT. This token can then be used as collateral for loans or other financial transactions.
However, in the process of tokenizing his CryptoPunk, Riley made a fatal mistake. Instead of sending the NFT to the smart contract, he accidentally sent it to a burn address, which is a wallet that permanently deletes any assets sent to it. The CryptoPunk was gone, forever erased from circulation.
Riley was devastated by his mistake. He had not intended to sell or trade the CryptoPunk, and he had lost a valuable asset in the process. However, he also recognized the importance of using the incident as a learning opportunity for others in the NFT community. In an interview with CoinDesk, Riley stated, “I want people to learn from my mistake, to be more careful when dealing with NFTs, and to think twice before taking any action.”
The accidental destruction of CryptoPunk #685 serves as a cautionary tale for anyone involved in the NFT market. While these digital assets can be lucrative and exciting to collect and invest in, they also come with significant risks. Managing NFTs requires attention to detail, technical knowledge, and an understanding of the potential consequences of any action taken. As the NFT market continues to grow and evolve, it is crucial for collectors and investors to approach it with caution and care.
Share this:
- Click to share on Twitter (Opens in new window)
- Click to share on Facebook (Opens in new window)
- Click to share on LinkedIn (Opens in new window)
- Click to share on Reddit (Opens in new window)
- Click to share on Tumblr (Opens in new window)
- Click to share on Pinterest (Opens in new window)
- Click to share on Pocket (Opens in new window)
- Click to share on Telegram (Opens in new window)
- Click to share on WhatsApp (Opens in new window)
- Click to share on Skype (Opens in new window)
- Click to email a link to a friend (Opens in new window)
Related

Arbitrum Discord Server Hacked for Phishing Attack

Sony Files Patent for NFT Transfer Framework

Italian Prime Minister Giorgia Meloni and PM Modi joint declaration shapes strategic ties

Walmart-owned Sam’s Club plans to open about 30 new stores over next five years

22/7 Project’s Reina Miyase Graduates From Franchise

NBUniversal expects Peacock losses to peak this year as streamer slowly adds subscribers

Watch: Bride Arrives At Wedding Venue In Madhya Pradesh Driving Tractor

In September 2022, ‘The Lord of the Rings: Gollum’ will be released for PC, PS5, and Xbox Series X.

Dhaakad Day 1 Box Office Report: Kangana Ranaut’s film debuts poorly in front of Bhool Bhulaiyaa 2 by Kartik Aaryan.
Trending
-
Entertainment2 months ago
Fake heiress Anna ‘Delvey’ Sorokin, while on house arrest, to star in new reality show – National | Globalnews.ca
-
Tech2 months ago
Tesla shares pop on ‘better than feared’ earnings results, demand outlook
-
Crypto2 months ago
Tesla refuses to sell any more Bitcoin
-
Business2 months ago
Southwest forecasts lingering losses as bookings slow in wake of holiday meltdown
-
Anime & Manga2 months ago
StoneBot Comics Provides Statement on Kamen Rider Kuuga Manga’s Translation Differences from Initial Preview
-
Odisha News2 months ago
Police Medals: 34 Odisha Police personnel awarded on Republic Day
-
Politics2 months ago
Chhattisgarh CM Bhupesh Baghel announces unemployment allowance
-
Fashion2 months ago
Robert Wun Couture Spring 2023
You must be logged in to post a comment Login
You must log in to post a comment.