More than 280 blockchains at risk of ‘zero-day’ exploits, warns security firm

Share This Post

Dogecoin, Zcash and Litecoin have already patched the “critical” vulnerability, but hundreds of others may not have, risking billions’ worth of crypto.

280 or more blockchain networks are estimated to be at risk of “zero-day” exploits that could put at least $25 billion worth of crypto at risk, according to cybersecurity firm Halborn.

In a Mar. 13 blog, Halborn warned of the vulnerability it dubbed “Rab13s” — adding it has already worked with some blockchains, such as Dogecoin, Litecoin and Zcash, to institute a fix for it.

Halborn was contracted by Dogecoin in March 2022 to conduct a security review of its codebase and found “several critical and exploitable vulnerabilities.”

It later determined those same vulnerabilities “affected over 280 other networks” that risked billions of dollars worth of cryptocurrencies.

Halborn outlined three vulnerabilities, the “most critical” of which allows an attacker to “send crafted malicious consensus messages to individual nodes, causing each to shut down.”

It added these messages over time could expose the blockchain to a 51% attack where an attacker controls the majority of the network’s mining hash rate or staked tokens to make a new version of the blockchain or take it offline.

Other zero-day vulnerabilities it found would allow potential attackers to crash blockchain nodes by sending Remote Procedure Call (RPC) requests — a protocol allowing a program to communicate and request services from another.

It added the likelihood of RPC-related exploits was lower as it requires valid credentials to undertake the attack.

“Due to codebase differences between the networks not all the vulnerabilities are exploitable on all the networks, but at least one of them may be exploitable on each network,” Halborn warned.

Related: Jump Crypto and Oasis.app ‘counter exploits’ Wormhole hacker for $225M

The firm said at this time it’s not releasing further technical details of the exploits due to their severity and added it made a “good faith effort” to contact all affected parties to disclose the potential exploits and provide remediation for the vulnerabilities.

Dogecoin, Zcash and Litecoin have already implemented patches for the discovered vulnerabilities, but hundreds could still be exposed according to Halborn.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bitcoin Price Could Enter ‘Period Of Positive Seasonal Performance’ — But This Needs To Happen

The Bitcoin price having an outstanding Q4 to close the year 2024 has been one of the most prominent narratives in the cryptocurrency market in recent weeks Interestingly, a popular blockchain firm

Zimbabwe Injects $50 Million to Bolster Devalued Currency

The Reserve Bank of Zimbabwe (RBZ) has injected an additional $50 million into the market to support the foreign exchange system However, industry leaders believe the bank is not doing enough to

Shiba Inu Burn Rate Shoots Up 1,000% – Are New ATH Levels Just Around The Corner?

Shiba Inu is making waves after wrapping up an astounding 1,000% increase in its burn rate, Shibburn data shows This has occurred simultaneously with a nearly 7% increase in the value of the meme

Nigeria Introduces System to Boost Forex Market Transparency

The Central Bank of Nigeria (CBN) is launching a new electronic system (EFEMS) to improve transparency in the foreign exchange market This comes as the Nigerian currency weakens Authorized dealers

Building Web3 culture in Ukraine: Rostyslav Bortman’s mission

Rostyslav Bortman is Head of Blockchain Development at IdeaSoft and founder of ETHKyiv Community He is one of the main faces of the global and Ukrainian Web3 development and a driving force behind

DC Circuit Court Rules Kalshi’s US Election Bets Legal

This week, the US Court of Appeals for the District of Columbia Circuit has ruled in favor of the predictions market Kalshi, allowing the commodities exchange to offer event contracts based on the