Cosmos co-founder says a major security vulnerability has been uncovered on IBC

Cosmos co-founder says a major security vulnerability has been uncovered on IBC

A public patch fixing the exploit is scheduled to be released tomorrow. On Thursday, Ethan Buchman, co-founder of interblockchain communication (IBC) ecosystem Cosmos, said that a 'critical security vulnerability' had been discovered that 'impacts all IBC-enabled Cosmos chains, for all versions of IBC.' Buchman assured that steps have already been taken to ensure that all major public IBC-enabled chains have been patched, stating: "A chain is safe from the critical vulnerability as soon as ⅓ of its voting power has applied the patch. Chains should still seek to patch to ⅔ as quickly as....


Related News

Cosmos Detects Major System Weak Point – Will ATOM Price Be In Trouble?

Cosmos is now making sure their system won’t share the same fate as the BNB Chain that was drained of $100 million worth of tokens in a hacker attack last week. On October 13th, Ethan Buchman, co-founder of the Cosmos inter-blockchain communication (IBC) ecosystem, revealed a major security weak point that affects all Cosmos chains that utilize IBC, regardless of the version of IBC they employ. The Inter-Blockchain Communication protocol allows users to seamlessly switch from one Cosmos blockchain to another. Related Reading: Ethereum Classic (ETC) Price Muffled In Last 2 Months – Will....

Cosmos doubles 'Stargate' bug bounty rewards to avoid repeating past mistakes

Cosmos have announced a new bug bounty to rigorously vet the forthcoming Stargate upgrade to ensure no vulnerabilities are missed. In the lead up to its major network upgrade Stargate, Cosmos (ATOM) has announced a three-month-long bug bounty with double rewards to improve the software’s robustness prior to release. The key Stargate upgrade will complete the original roadmap laid out in the Cosmos Whitepaper and will include the first implementation of the IBC protocol — which allows Cosmos to connect to other blockchain networks.According to early contributor Zaki Manian, the Cosmos....

Bitcoin Core Version 0.9.1 Fixes Heartbleed Vulnerability

Bitcoin Core Version 0.9.1 is out and it has addressed the Heartbleed OpenSSL vulnerability, also known as CVE-2014-0160. The vulnerability has been patched by major bitcoin exchanges in a matter of hours. In case you missed it, Heartbleed is a pretty big deal in the security community. The crypto bug in OpenSSL (an open-source implementation of the SSL and TLS internet security protocols that encrypt and secure internet traffic) has opened up two thirds of the web to eavesdropping. It was uncovered earlier this week and many observers described it as nothing short of catastrophic. Bitcoin....

MetaMask warns of security vulnerability from older versions of popular crypt...

"Ultimately, we've learned that our password encryption feature's security was partially undermined by browser behavior," said the team at MetaMask. On Wednesday, MetaMask said that it uncovered a critical security vulnerability in older versions of its crypto wallet with the help of security researchers at Halborn. The security firm was awarded a bounty of $50,000 for the discovery. For users of the MetaMask extension before version 10.11.3, three necessary conditions would have led to the potential vulnerability. They are: (1) an unencrypted hard drive, (2) having imported a secret....

Bitcoin Linux Users Need To Beware of Critical Systemd Vulnerability

The systemd vulnerability was discovered by Andrew Ayer, Founder of SSLMate. With one line of code, containing just 48 characters, he can crash nearly aLinuxnux distribution. Bitcoin users who are running a Linux distribution may want to take special notice. A recently discovered vulnerability will crash nearly any Linux distro in circulation. All it takes is 48 characters of code to exploit a vulnerability in the systemd component. This process is integral to the boot process of nearly every lInux distribution in the world today. While most “advanced’ computer users rely on Linux for....