current position:Home>Massive Solana Wallet Stolen, Former 'Ethereum Killer' Controversial
Massive Solana Wallet Stolen, Former 'Ethereum Killer' Controversial
2022-08-06 03:32:11【Gyro Finance】
August didn't seem like a great start for the blockchain industry, with security incidents spewing out.On August 1, Nomad Bridge was hacked and nearly $200 million was stolen.On August 2, a large-scale currency theft incident occurred in Solana, and a large number of users were emptied of their wallets without knowing it.Within 10 minutes, as much as $6 million in crypto assets was stolen from Phantom wallets.
Solana is currently a trending topic on Twitter, and the repercussions of the incident are still unfolding, with over 8,000 wallets stolen and counting.
Why was Solana stolen?Multiple voices
Emin Gun Sirer, CEO and founder of Ava Labs, said that more than 7,000 wallets were affected, and that number is growing at a rate of around 20 per minute. Regarding the reason for the theft, he believes, Since the transaction appears to be signed correctly, it is likely that the attacker has gained access to the private key.
The developers, with the help of several security firms, investigated the wallets on Solana that had their assets empty, and there was no evidence that hardware wallets were affected.
Shortly after the attack, Phantom noted that it was working with other teams to identify the source of the problem, and at this time, it does not believe this is a problem unique to Phantom.”
Subsequently, Slope also tweeted that it is currently working with Solana Labs and other Solana-based protocols to identify the problem and correct it, but "has not yet made a major breakthrough."
STEPN has also become one of the suspects that led to the incident.STEPN reminds users that if users import/export any non-custodial wallets external to STEPN, they may need to consider:
1. Check the wallet to see if any assets are missing
2. Transfer assets out of the wallet
3. Generate a new non-custodial wallet from the STEPN application
Furthermore, Solana-based NFT marketplace Magic Eden is also suspected of being involved in the attack.Magic Eden tweeted users how to protect themselves: "1. Go to Phantom wallet settings page; 2. Click on trusted apps; 3. Revoke permission for any suspicious links."
SlowMist Technology, a well-known blockchain security agency, stated on August 3 that from the transaction characteristics, the attacker signed the account transfer without using the attack contract, and the initial judgment was that the private key was leaked.Many victims have reported that they have used a variety of different wallets, mainly mobile wallets. We speculate that the problem may occur in the software supply chain.
Godfall software engineer Stephen Lacy tweeted about a massive malware attack on github.This attack sends the entire ENV of the script, application, laptop (electron application) to the attacker's server, and the ENV includes security keys, encryption keys, etc.
The real reason behind the attack is not yet known, and it will take time to investigate.However, all users with Solana-based hot wallets (such as Phantom and Slope wallets) are reminded that it is necessary to temporarily transfer funds to cold wallets or well-known centralized exchanges.
Once "Ethereum Killer", now "Crash Chain"
As the biggest dark horse on the public chain track in 2021, Solana has attracted the attention of many institutions and users, and was once touted as an "Ethereum killer".However, so far, the Solana blockchain has suffered multiple downtime events, and it has been jokingly called the "downtime chain".
Well-known Twitter KOL, DeFi developer "foobar" satirized Solana's fragile security and poor user experience on Twitter, saying: "Ethereum attacks take hours to complete and require the participation of the entire communityCome in, and the Solana hacker can clean your wallet in seconds. Unparalleled user experience.”
Security is a perennial issue.Ethereum has been in operation for many years and has gone through the test of time, and the network has become very mature and stable; while new public chains often develop at a very fast pace, and a huge ecosystem is quickly established within 1-2 years. New technologies and new mechanisms bring aboutMany problems are constantly exposed in practice.
Solana's attack again also shows that the public chain still has a long way to go that has been overlooked by many people on the road to becoming an "Ethereum killer".In terms of security, Ethereum is still our best bet right now.
Business cooperation
Xiaohuang: xiaohuanghuang233
Mango: 19925139144
Recommended reading
copyright notice
author[Gyro Finance],Please bring the original link to reprint, thank you.
https://en.netfreeman.com/2022/218/202208060321306797.html
The sidebar is recommended
- The Australian stock exchange again delay settlement system deployment block chain and hired accenture review the project
- Is not the exclusive is let you for NFT
- ENS Nuggets Handbook: How to Spot Trends and Monitor Expired Domain Names?
- The number of active contributors to Bitcoin, Ethereum and Solana has increased 71.6% annually since January 2018
- How did "Second Uncle"'s sickle cut your head?
- Ethereum has generated around $3.9 billion in transaction fees this year, the Bitcoin network is $93 million
- The DAO: Web3 necessary components
- A classic case of defi direct price manipulation - tcrToken hacking event analysis
- Resources: to speed up the chain into blocks of 5 kinds of optimum programming language
- More than 20,000 U.S. citizens sign petition calling for SEC chairman Gary Gensler to resign
guess what you like
United States considering giving the commodity futures trading commission regulatory encryption currency
Mass theft of Solana wallets points to supply chain software
The car metaverse, how far is it from us?
Zhang Jun, Chairman of China Europe Capital: Metaverse is a platform that combines virtual and reality, and its biggest features are digital twins and blockchain
Anniversary丨Listen to the three founders talk about the growth story of Nouns
Tighter regulation!European regulators: scrutiny of crypto transactions will be fully covered
U.S. Considering Commodity Futures Trading Commission Regulation of Cryptocurrencies
Coinbase asks U.S. Supreme Court to stop two lawsuits brought by users of its platform
Former Coinbase product manager Ishan Wahi pleads not guilty to cryptocurrency insider trading charges
SolanaStatus: holes or derived from the Slope wallet
Random recommended
- Will CEX be the end of the cross-chain bridge?
- Analyses the etheric fang bifurcate Token value and the probability of success
- How is the cross-chain verification of the blockchain?
- What is Blockchain NFT Development
- Study: Nigeria is the world of encryption currency of most interest to English speaking countries
- Former PwC crypto chief launches $75 million crypto fund
- V Shen issued an article to discuss different types of ZK-EVM
- Ethereum smart contract development: storage location and scope of variables in Solidity language
- Multi-dimensional exploration of the most potential metaverse: Comparison of the three giants of Animoca Brands, Yuga Labs, and Gala
- Multi-million dollar Solana cryptocurrency theft linked to Slope mobile wallet
- DeFi Outlook: An Overview of Mainstream DeFi Protocols in Q2
- Wu Hequan: Web 3.0 will not be popularized to the public, and the Metaverse will not be the next generation of Internet
- BlackRock partners with Coinbase to provide institutions with cryptocurrency services
- SEC and CFTC wrestling: US senator proposes bill to clarify Crypto regulation
- BlackRock joins the ranks of Bitcoin asset managers with Coinbase partnership
- Metaverse infrastructure platform InfiniteWorld plans to raise $145 million through SPAC listing
- 5 Best Programming Languages for Blockchain or Smart Contract Development
- How to obtain the optimal gas cost on the bsc chain
- What the blockchain shows more is that it has developed the old way of Internet-style virtualization and digitization to the extreme.
- Five reasons why blockchain will enhance IoT technology
- The impact of blockchain on the software development industry
- Metaverse infrastructure platform InfiniteWorld plans to raise $145 million through SPAC listing
- Instagram to roll out digital collectibles showcase to more than 100 countries
- Coinbase Partners with BlackRock to Offer Aladdin Clients Crypto Trading and Custody Services via Coinbase Prime
- Inside Solidity - Ethereum EVN Slots Store Relationships
- Genesis talks about blockchain | Understanding of four consensus mechanisms
- Hot Storage vs Cold Storage: How to Choose the Best Encrypted Storage Solution?
- The Overlooked Impact Before and After the Ethereum Merger: Roadmap, Risks, and Common Misconceptions
- Mobile payments firm Block slows hiring, cuts investment as bitcoin slumps
- Take a look at the encrypted world map of the "ConsenSys Gang"
- Uniswap community proposes to create Uniswap Foundation and asks for $74 million in funding
- Rising indicators appear in the crypto market, is the bear market really over?
- DID: the chain of credit business, and improve the DAO identity
- DeFi Prospects: An Overview of Q2 Progress of Mainstream DeFi Protocols
- The SEC staff disclosure of the United States congress are investigate all encryption currency exchange
- Bankless: 5 key themes and trends for the next bull market
- The etheric fang trading memory pool is how to work?
- Brevan Howard's Crypto Fund Raises Over $1 Billion in Institutional Funding
- FA Cup launches new NFT platform plan
- a16z: Why do NFT creators choose cc0?