Click here to Skip to main content
15,890,438 members

Welcome to the Lounge

   

For discussing anything related to a software developer's life but is not for programming questions. Got a programming question?

The Lounge is rated Safe For Work. If you're about to post something inappropriate for a shared office environment, then don't post it. No ads, no abuse, and no programming questions. Trolling, (political, climate, religious or whatever) will result in your account being removed.

 
GeneralRe: .NET Core 3.1 or .NET 6? Pin
Member 91670576-Feb-22 21:07
Member 91670576-Feb-22 21:07 
GeneralRe: .NET Core 3.1 or .NET 6? Pin
Richard Deeming6-Feb-22 23:22
mveRichard Deeming6-Feb-22 23:22 
GeneralHow $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
abmv5-Feb-22 3:12
professionalabmv5-Feb-22 3:12 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
englebart5-Feb-22 4:26
professionalenglebart5-Feb-22 4:26 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Gerry Schmitz5-Feb-22 6:21
mveGerry Schmitz5-Feb-22 6:21 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Kornfeld Eliyahu Peter5-Feb-22 19:50
professionalKornfeld Eliyahu Peter5-Feb-22 19:50 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Sander Rossel5-Feb-22 22:43
professionalSander Rossel5-Feb-22 22:43 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Eddy Vluggen5-Feb-22 23:51
professionalEddy Vluggen5-Feb-22 23:51 
According to the article, they didn't hack the blockchain, but a "bridge"; sounds more like a victim of agile.

micaweb[^] wrote:
Bridges use wrapped tokens, which lock tokens in one blockchain into a smart contract. After a decentralized cross-chain oracle called a “guardian” certifies that the coins have been properly locked on one chain, the bridge mints or releases tokens of the same value on the other chain. Wormhole bridges the Solana blockchain with other blockchains, including those for Avalanche, Oasis, Binance Smart Chain, Ethereum, Polygon, and Terra.

But what if you can’t trust the guardian? AT lengthy analysis posted on Twitter a few hours after the heist said that Wormhole’s backend platform failed to properly validate its guardian accounts.


..and
Compounding the difficulty, the new hack came shortly after a recent change was made in some of the software involved.

“The bridge didn’t expect that users could submit a signatureset, since the change to facilitate that was a recent one in the Solana runtime,” Guido explained. “By submitting their own signature data, an attacker short-circuited a signature check that allowed them to take ownership of a large amount of tokens.”

A change in the software, which "did not expect" a signature.
Bastard Programmer from Hell Suspicious | :suss:
"If you just follow the bacon Eddy, wherever it leads you, then you won't have to think about politics." -- Some Bell.

GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Sander Rossel6-Feb-22 20:22
professionalSander Rossel6-Feb-22 20:22 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Eddy Vluggen7-Feb-22 0:50
professionalEddy Vluggen7-Feb-22 0:50 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Sander Rossel7-Feb-22 1:08
professionalSander Rossel7-Feb-22 1:08 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Eddy Vluggen7-Feb-22 1:13
professionalEddy Vluggen7-Feb-22 1:13 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Sander Rossel7-Feb-22 1:33
professionalSander Rossel7-Feb-22 1:33 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Eddy Vluggen7-Feb-22 1:43
professionalEddy Vluggen7-Feb-22 1:43 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Sander Rossel7-Feb-22 3:57
professionalSander Rossel7-Feb-22 3:57 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Eddy Vluggen9-Feb-22 6:28
professionalEddy Vluggen9-Feb-22 6:28 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Sander Rossel10-Feb-22 2:51
professionalSander Rossel10-Feb-22 2:51 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Eddy Vluggen11-Feb-22 12:30
professionalEddy Vluggen11-Feb-22 12:30 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
Eddy Vluggen9-Feb-22 13:32
professionalEddy Vluggen9-Feb-22 13:32 
GeneralRe: How $323M in crypto was stolen from a blockchain bridge called Wormhole Pin
kmoorevs6-Feb-22 7:23
kmoorevs6-Feb-22 7:23 
GeneralI was sent this, and... Pin
OriginalGriff5-Feb-22 1:09
mveOriginalGriff5-Feb-22 1:09 
GeneralRe: I was sent this, and... Pin
theoldfool5-Feb-22 1:12
professionaltheoldfool5-Feb-22 1:12 
GeneralRe: I was sent this, and... Pin
OriginalGriff5-Feb-22 1:18
mveOriginalGriff5-Feb-22 1:18 
GeneralRe: I was sent this, and... Pin
Richard Deeming6-Feb-22 23:25
mveRichard Deeming6-Feb-22 23:25 
GeneralRe: I was sent this, and... Pin
Mike Hankey5-Feb-22 2:13
mveMike Hankey5-Feb-22 2:13 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.