Currencies33210
Market Cap$ 3.06T+0.34%
24h Spot Volume$ 38.68B+5.37%
DominanceBTC61.45%+0.53%ETH7.01%-1.95%
ETH Gas2.60 Gwei
Cryptorank
MainNewsSolana Fixes...

Solana Fixes Critical Zero-Day Bug That Could Have Enabled Unlimited Token Theft


by Victor Joel
for CoinEdition
Solana Patches Flaw in Token-22 Confidential Transfer Feature
  • Solana validators quickly patched a critical zero-day bug within just two days of discovery.
  • Vulnerability impacted Token-22 confidential transfers, but no exploits were reported.
  • Solana Foundation privately coordinated fix, sparking community concerns on centralization.

The Solana Foundation confirmed fixing a “zero-day” bug that gave attackers unlimited token minting capabilities and the ability to withdraw tokens from user accounts. The issue, discovered on April 16, was resolved within two days after validators rapidly deployed two critical patches across the network.

According to the Foundation’s May 3 post-mortem report, the bug affected the ZK ElGamal Proof program, which validates zero-knowledge proofs tied to confidential transfers in Token-2022, now called Token-22. The flaw emerged from missing algebraic components in the Fiat-Shamir Transformation, used for cryptographic randomness, making it possible to craft forged proofs.

Despite the seriousness of the vulnerability, the Solana Foundation reported no known exploit or loss of funds. The patches were implemented by a group of development teams, including Anza, Firedancer, and Jito, with supp…

The post Solana Fixes Critical Zero-Day Bug That Could Have Enabled Unlimited Token Theft appeared first on Coin Edition.

Read the article at CoinEdition

Read More

With 120M Users and New Fiat Access, Is Pi Network Ready for a Breakout?

With 120M Users and New Fiat Access, Is Pi Network Ready for a Breakout?

With over 120 million downloads and 1.3 million new users in the past 30 days, Pi Net...
Ripple XRP’s True Value: Jeff Dorman Says It’s All Social Hype, Not Real Utility

Ripple XRP’s True Value: Jeff Dorman Says It’s All Social Hype, Not Real Utility

According to crypto investor Jeff Dorman, XRP is an “insanely overvalued asset”, deri...
MainNewsSolana Fixes...

Solana Fixes Critical Zero-Day Bug That Could Have Enabled Unlimited Token Theft


by Victor Joel
for CoinEdition
Solana Patches Flaw in Token-22 Confidential Transfer Feature
  • Solana validators quickly patched a critical zero-day bug within just two days of discovery.
  • Vulnerability impacted Token-22 confidential transfers, but no exploits were reported.
  • Solana Foundation privately coordinated fix, sparking community concerns on centralization.

The Solana Foundation confirmed fixing a “zero-day” bug that gave attackers unlimited token minting capabilities and the ability to withdraw tokens from user accounts. The issue, discovered on April 16, was resolved within two days after validators rapidly deployed two critical patches across the network.

According to the Foundation’s May 3 post-mortem report, the bug affected the ZK ElGamal Proof program, which validates zero-knowledge proofs tied to confidential transfers in Token-2022, now called Token-22. The flaw emerged from missing algebraic components in the Fiat-Shamir Transformation, used for cryptographic randomness, making it possible to craft forged proofs.

Despite the seriousness of the vulnerability, the Solana Foundation reported no known exploit or loss of funds. The patches were implemented by a group of development teams, including Anza, Firedancer, and Jito, with supp…

The post Solana Fixes Critical Zero-Day Bug That Could Have Enabled Unlimited Token Theft appeared first on Coin Edition.

Read the article at CoinEdition

Read More

With 120M Users and New Fiat Access, Is Pi Network Ready for a Breakout?

With 120M Users and New Fiat Access, Is Pi Network Ready for a Breakout?

With over 120 million downloads and 1.3 million new users in the past 30 days, Pi Net...
Ripple XRP’s True Value: Jeff Dorman Says It’s All Social Hype, Not Real Utility

Ripple XRP’s True Value: Jeff Dorman Says It’s All Social Hype, Not Real Utility

According to crypto investor Jeff Dorman, XRP is an “insanely overvalued asset”, deri...