Cosmos’ $8B Ecosystem Endangered by Critical Vulnerability


Key Takeaways

  • A critical security vulnerability threatened all IBC-enabled blockchains, Cosmos developers recently discovered.
  • The attack vector was discovered following last week’s BNB Chain’s exploit.
  • A patch has already been communicated privately to Cosmos developers and validators.

Share this article

Last week’s BNB Chain attack led Cosmos developers to inspect their IBC code. They found a critical security vulnerability that endangered every IBC-enabled blockchain.

Cosmos Compromised

It appears the entire Cosmos ecosystem was endangered by a single vulnerability.

According to an announcement posted today in the Cosmos Hub governance forum by co-founder Ethan Buchman, lead developers recently discovered a “critical security vulnerability that impacts all IBC-enabled Cosmos chains, for all versions of IBC.”

Cosmos is a decentralized network of blockchains connected through the Inter-Blockchain Communication protocol (IBC), which enables users to hop from one Cosmos blockchain to another seamlessly. At the time of writing, there are 42 IBC-enabled blockchains, including Cosmos Hub, Osmosis, Cronos, and Evmos. According to the project’s website, the market capitalization of all IBC-enabled chains together reaches $8.18 billion.

Other major blockchains such as OKX Chain, Luna Classic, and Thorchain have also integrated IBC in the past. For various reasons, however, they have either deactivated the function or never fully enabled it in the first place. BNB Chain is one of these projects. The recent attack against it (during which a hacker drained $566 million from the blockchain’s bridge) incentivized Cosmos developers to research whether other IBC blockchains may be vulnerable to the same exploit. 

Buchman stated that measures had already been taken to patch major IBC blockchains. The patch was first made available privately to give developers and validators the time to update their chains before the vulnerability was publicized. According to him, more than a third of a blockchain’s voting power must apply a patch for the project to be safe. The Cosmos SDK will release a public version of the patch on October 14 at 14:00 UTC. Buchman advised all Cosmos chains and validators to upgrade to the public patch as soon as possible, even if they’d already integrated the private patch. 

Disclosure: At the time of writing, the author of this piece owned BTC, ETH, ATOM, OSMO, and several other cryptocurrencies.

Share this article



Source link

Related articles

OpenAI and Jony Ive’s ‘IO’ hits authorized roadblock over identify dispute

TL;DR A weblog submit saying OpenAI’s $6.5B acquisition of Jony Ive’s {hardware} startup “io” has been taken down on account of a court docket order stemming from a trademark grievance by an organization referred...

ForexLive Asia-Pacific FX information wrap: US army strikes ship oil, USD greater

Information of US strikes:Different:Recapping Japan flash PMI - factors to modest enchancment, however enterprise warning lingersDemocratic Republic of Congo prolonged ban on cobalt exports by three months - costs leapFitch Rankings say Australian...

XRP ETF Odds Soar to 95% as SEC Reveals Optimistic Alerts, Bloomberg Analysts Say

Bloomberg analysts venture XRP’s ETF approval odds at 95%, igniting highly effective institutional momentum poised to reshape crypto markets and thrust digital belongings into mainstream monetary dominance. XRP ETF Nears SEC Approval With...

OpenAI pulls promotional supplies round Jony Ive deal attributable to courtroom order

OpenAI has pulled a much-discussed video selling the friendship between CEO Sam Altman and legendary Apple designer Jony Ive (plus, by the way, OpenAI’s $6.5 billion deal to accumulate Ive and Altman’s system...

XRP, SOL, ETH, HYPE Oversold Bounce Doable If BTC Recovers

Key factors:Bitcoin fell beneath the $100,000 help on Sunday, however a rebound might rely upon how US inventory futures open.Bitcoin’s weak point has pulled ETH, XRP, SOL, and HYPE beneath their respective help...
spot_img

Latest articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

WP2Social Auto Publish Powered By : XYZScripts.com