Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
No Result
View All Result

Solana averts catastrophe with quiet patch of major token vulnerability

Altszn.com by Altszn.com
May 5, 2025
in Zcash
0
Solana averts catastrophe with quiet patch of major token vulnerability
399
SHARES
2.3k
VIEWS
Share on FacebookShare on Twitter



The Solana Foundation has revealed that a critical vulnerability affecting its Token-2022 standard was quietly patched in April, averting what could have been a catastrophic breach.

If exploited, the flaw would have allowed attackers to mint an unlimited number of tokens or withdraw funds from any account without authorization.

According to the post-mortem, the issue was first reported on April 16 and fixed within two days. The fix was coordinated by core development teams from Anza, Jito, and Firedancer, with additional support from security firms Asymmetric Research, Neodyme, and OtterSec.

Understanding the Solana vulnerability

According to the Foundation, the bug affected a specific feature in Solana’s Token-2022 framework known as “confidential transfers.”

This feature relies on zero-knowledge cryptography, specifically the ZK ElGamal proof system, to enable private transactions. However, a missing algebraic component in a hash used for cryptographic verification left the door open for manipulation.

This flaw allowed a malicious actor to forge a valid cryptographic proof. With such a fake proof, they could mint new tokens or drain existing accounts without detection.

Although no exploit was observed, the revelation caused some market jitters. Data from CoinGecko shows that the combined value of these tokens dropped by around 5%, settling at $16.1 million after the news broke.

Community reaction

While the vulnerability was handled swiftly, Solana’s decision to keep the issue under wraps drew mixed reactions.

Critics argued that quietly coordinating such a fix reflects an uncomfortable level of centralization within the network. One community member questioned whether validators could use similar coordination to carry out or cover up harmful actions in the future.

Others, however, defended the approach. Industry veterans, including developers from Bitcoin and Polygon, pointed out that silent patches are a standard best practice when dealing with zero-day bugs. These behind-the-scenes efforts, they argued, prevent real-time exploits while teams work on a secure fix.

Hudson James, a VP at Ethereum layer-2 network developer Polygon Labs, said:

“This is totally fine. Bitcoin, Zcash, and Ethereum have all had instances where the core devs needed to privately plan a secret bug fix. A good chain culture means having mature devs who can accomplish stealth fixes.”

Solana co-founder Anatoly Yakovenko also weighed in, stating that validator coordination is not unique to his blockchain network. He compared the process to similar consensus-building mechanisms on Ethereum, involving validators like Lido, Binance, Coinbase, and Kraken.

Mentioned in this article



Read More: cryptoslate.com

Tags: avertscatastropheMajorpatchquietSolanaTokenvulnerabilityZcash
ADVERTISEMENT

Recent

Top L2 Arbitrum’s Scaling Roadmap Seeks to Avoid ‘Trade-offs’

Top L2 Arbitrum’s Scaling Roadmap Seeks to Avoid ‘Trade-offs’

May 16, 2025
Pixelmon Announces Strategic Partnership with Ava Labs to Launch Two Mobile Games Including ‘Warden’s Ascent’ on Avalanche with Dedicated Layer-1

Pixelmon Announces Strategic Partnership with Ava Labs to Launch Two Mobile Games Including ‘Warden’s Ascent’ on Avalanche with Dedicated Layer-1

May 16, 2025
Gamers Hate Crypto, but a New High-Profile Partnership Marks a Shift

Gamers Hate Crypto, but a New High-Profile Partnership Marks a Shift

May 16, 2025

Categories

  • Bitcoin (4,812)
  • Blockchain (11,331)
  • Crypto (9,270)
  • Dark Web (540)
  • DeFi (8,355)
  • Ethereum (4,866)
  • Metaverse (7,449)
  • Monero (287)
  • NFT (1,436)
  • Solana (5,028)
  • Web3 (20,606)
  • Zcash (501)

Category

Select Category

    Advertise

    Advertise your site, company or product to millions of web3, NFT and cryptocurrency enthusiasts. Learn more

    Useful Links

    Advertise
    DMCA
    Contact Us
    Privacy Policy
    Shipping & Returns
    Terms of Use

    Resources

    Exchanges
    Changelly
    Web3 Jobs

    Recent News

    Top L2 Arbitrum’s Scaling Roadmap Seeks to Avoid ‘Trade-offs’

    Top L2 Arbitrum’s Scaling Roadmap Seeks to Avoid ‘Trade-offs’

    May 16, 2025
    Pixelmon Announces Strategic Partnership with Ava Labs to Launch Two Mobile Games Including ‘Warden’s Ascent’ on Avalanche with Dedicated Layer-1

    Pixelmon Announces Strategic Partnership with Ava Labs to Launch Two Mobile Games Including ‘Warden’s Ascent’ on Avalanche with Dedicated Layer-1

    May 16, 2025

    © 2022 Altszn.com. All Rights Reserved.

    No Result
    View All Result
    • Home
      • Home – Layout 1
      • Home – Layout 2
      • Home – Layout 3

    © Altszn.com. All Rights Reserved.

    • bitcoinBitcoin (BTC) $ 103,472.00
    • ethereumEthereum (ETH) $ 2,490.28
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.38
    • bnbBNB (BNB) $ 643.72
    • solanaSolana (SOL) $ 168.83
    • usd-coinUSDC (USDC) $ 0.999879
    • dogecoinDogecoin (DOGE) $ 0.216603
    • cardanoCardano (ADA) $ 0.773441
    • tronTRON (TRX) $ 0.269175
    • staked-etherLido Staked Ether (STETH) $ 2,486.06
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,490.00
    • suiSui (SUI) $ 3.81
    • wrapped-stethWrapped stETH (WSTETH) $ 3,001.26
    • chainlinkChainlink (LINK) $ 15.43
    • avalanche-2Avalanche (AVAX) $ 22.84
    • stellarStellar (XLM) $ 0.290835
    • hyperliquidHyperliquid (HYPE) $ 26.80
    • shiba-inuShiba Inu (SHIB) $ 0.000014
    • leo-tokenLEO Token (LEO) $ 8.93
    • hedera-hashgraphHedera (HBAR) $ 0.194196
    • bitcoin-cashBitcoin Cash (BCH) $ 395.89
    • litecoinLitecoin (LTC) $ 100.86
    • the-open-networkToncoin (TON) $ 3.07
    • polkadotPolkadot (DOT) $ 4.73
    • usdsUSDS (USDS) $ 0.999805
    • wethWETH (WETH) $ 2,492.16
    • moneroMonero (XMR) $ 339.56
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • wrapped-eethWrapped eETH (WEETH) $ 2,664.91
    • bitget-tokenBitget Token (BGB) $ 5.00
    • pepePepe (PEPE) $ 0.000012
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • pi-networkPi Network (PI) $ 0.688549
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,590.00
    • whitebitWhiteBIT Coin (WBT) $ 30.17
    • bittensorBittensor (TAO) $ 421.81
    • daiDai (DAI) $ 1.00
    • uniswapUniswap (UNI) $ 5.89
    • aaveAave (AAVE) $ 227.07
    • nearNEAR Protocol (NEAR) $ 2.77
    • aptosAptos (APT) $ 5.13
    • okbOKB (OKB) $ 53.02
    • jito-staked-solJito Staked SOL (JITOSOL) $ 203.15
    • kaspaKaspa (KAS) $ 0.115005
    • ondo-financeOndo (ONDO) $ 0.926209
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • crypto-com-chainCronos (CRO) $ 0.098807
    • internet-computerInternet Computer (ICP) $ 5.24
    • ethereum-classicEthereum Classic (ETC) $ 18.29
    • bitcoinBitcoin (BTC) $ 103,472.00
    • ethereumEthereum (ETH) $ 2,490.28
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.38
    • bnbBNB (BNB) $ 643.72
    • solanaSolana (SOL) $ 168.83
    • usd-coinUSDC (USDC) $ 0.999879
    • dogecoinDogecoin (DOGE) $ 0.216603
    • cardanoCardano (ADA) $ 0.773441
    • tronTRON (TRX) $ 0.269175
    • staked-etherLido Staked Ether (STETH) $ 2,486.06
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,490.00
    • suiSui (SUI) $ 3.81
    • wrapped-stethWrapped stETH (WSTETH) $ 3,001.26
    • chainlinkChainlink (LINK) $ 15.43
    • avalanche-2Avalanche (AVAX) $ 22.84
    • stellarStellar (XLM) $ 0.290835
    • hyperliquidHyperliquid (HYPE) $ 26.80
    • shiba-inuShiba Inu (SHIB) $ 0.000014
    • leo-tokenLEO Token (LEO) $ 8.93
    • hedera-hashgraphHedera (HBAR) $ 0.194196
    • bitcoin-cashBitcoin Cash (BCH) $ 395.89
    • litecoinLitecoin (LTC) $ 100.86
    • the-open-networkToncoin (TON) $ 3.07
    • polkadotPolkadot (DOT) $ 4.73
    • usdsUSDS (USDS) $ 0.999805
    • wethWETH (WETH) $ 2,492.16
    • moneroMonero (XMR) $ 339.56
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • wrapped-eethWrapped eETH (WEETH) $ 2,664.91
    • bitget-tokenBitget Token (BGB) $ 5.00
    • pepePepe (PEPE) $ 0.000012
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • pi-networkPi Network (PI) $ 0.688549
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,590.00
    • whitebitWhiteBIT Coin (WBT) $ 30.17
    • bittensorBittensor (TAO) $ 421.81
    • daiDai (DAI) $ 1.00
    • uniswapUniswap (UNI) $ 5.89
    • aaveAave (AAVE) $ 227.07
    • nearNEAR Protocol (NEAR) $ 2.77
    • aptosAptos (APT) $ 5.13
    • okbOKB (OKB) $ 53.02
    • jito-staked-solJito Staked SOL (JITOSOL) $ 203.15
    • kaspaKaspa (KAS) $ 0.115005
    • ondo-financeOndo (ONDO) $ 0.926209
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • crypto-com-chainCronos (CRO) $ 0.098807
    • internet-computerInternet Computer (ICP) $ 5.24
    • ethereum-classicEthereum Classic (ETC) $ 18.29