More than 280 blockchains at risk of ‘zero-day’ exploits, warns security firm

Share This Post

Dogecoin, Zcash and Litecoin have already patched the “critical” vulnerability, but hundreds of others may not have, risking billions’ worth of crypto.

280 or more blockchain networks are estimated to be at risk of “zero-day” exploits that could put at least $25 billion worth of crypto at risk, according to cybersecurity firm Halborn.

In a Mar. 13 blog, Halborn warned of the vulnerability it dubbed “Rab13s” — adding it has already worked with some blockchains, such as Dogecoin, Litecoin and Zcash, to institute a fix for it.

Halborn was contracted by Dogecoin in March 2022 to conduct a security review of its codebase and found “several critical and exploitable vulnerabilities.”

It later determined those same vulnerabilities “affected over 280 other networks” that risked billions of dollars worth of cryptocurrencies.

Halborn outlined three vulnerabilities, the “most critical” of which allows an attacker to “send crafted malicious consensus messages to individual nodes, causing each to shut down.”

It added these messages over time could expose the blockchain to a 51% attack where an attacker controls the majority of the network’s mining hash rate or staked tokens to make a new version of the blockchain or take it offline.

Other zero-day vulnerabilities it found would allow potential attackers to crash blockchain nodes by sending Remote Procedure Call (RPC) requests — a protocol allowing a program to communicate and request services from another.

It added the likelihood of RPC-related exploits was lower as it requires valid credentials to undertake the attack.

“Due to codebase differences between the networks not all the vulnerabilities are exploitable on all the networks, but at least one of them may be exploitable on each network,” Halborn warned.

Related: Jump Crypto and Oasis.app ‘counter exploits’ Wormhole hacker for $225M

The firm said at this time it’s not releasing further technical details of the exploits due to their severity and added it made a “good faith effort” to contact all affected parties to disclose the potential exploits and provide remediation for the vulnerabilities.

Dogecoin, Zcash and Litecoin have already implemented patches for the discovered vulnerabilities, but hundreds could still be exposed according to Halborn.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bitcoin Investors Show Fear – Could A Price Bottom Be Imminent?

In contrast to popular bullish sentiments, Bitcoin began October on a bearish note, recording a price decline of over 7% in the first three days of the month However, while the BTC market experienced

Paypal Completes First Corporate Transaction Using PYUSD Stablecoin

Paypal has made a significant step in corporate payments by completing its first transaction using its stablecoin Paypal USD (PYUSD) This milestone highlights the role digital currencies can play in

Tornado Cash At Center Of $287 Million Laundered In Q3: High-Profile Anomalies Exposed

The ongoing legal saga surrounding Tornado Cash, a cryptocurrency mixing service, has intensified as its co-founders face serious allegations of facilitating money laundering on a massive scale Roman

Crypto Analyst Predicts Bitcoin Price Will Hit New All-Time High If It Breaks This Level

Bitcoin, which started the month on a negative note, has begun to regain some positive momentum and is up by 166% in the past 24 hours This recovery comes amid renewed optimism in the crypto space,

Peter Schiff: Phony Economy Must Die or US Risks Financial Ruin

Economist Peter Schiff has warned that restoring a real economy requires letting the “phony economy” collapse, which would result in significant financial losses for many However, he

Bitcoin Set To Rally As Analysts Back 25Bps Cut By Fed – Details

The price of Bitcoin (BTC) experienced a steep decline in the past week, falling as low as $60,000 based on data from CoinMarketCap However, the BTC market has made some recovery in the last day in