EOS

Chinese Security Giant has Found Vulnerabilities in EOS Platform

Chinese Internet Security Giant 360 Security Guard, has claimed to have found a series of epic vulnerabilities in the EOS Blockchain to fully control the transactions.

360 reported on their Weibo Channel (Chinese Twitter) which has over 6 Million followers that their 360 Vulcan team recently found some vulnerabilities which can remotely execute arbitrary code on the EOS Node. They also claim that these attacks can take over all the nodes running on EOS.

They mention that they reported these bugs to the EOS team:

The person in charge of the EOS network said that the EOS network will not be officially launched until these issues are fixed.

They mention 3 major points in their blog:

1.Defective digital blockchain vulnerability

360 reports that Security loopholes in the Blockchain networks tend to have more serious impact. Due to its decentralized computing characteristics, a security vulnerability in the implementation of a Blockchain node may cause thousands of nodes to be attacked

2EOS SuperNode Attack: Fully Controlled Virtual Currency Trading

In an attack, if the bad actor published a malicious smart contract, the EOS supernode will execute it triggering a security hole. The attacker can then reuse the supernode to package the contract into a new block which will cause all the full nodes in the EOS network to be controlled remotely

This means that the attacker can “do whatever it wants” which include exchange Digital currency, the user’s key stored in the wallet, key user profiles, privacy data, and more which can be devastating to the entire EOS ecosystem.

3. Blockchain network security concerns need to be paid attention

They write that There are many attack surfaces in the Blockchain networks for nodes, wallets, mining pools, exchanges and smart contracts.

 The 360 ​​security team has previously discovered and disclosed multiple digital currency nodes, wallets, and mines. Serious security holes in pools and smart contracts.

The series of new security vulnerabilities discovered by the 360 ​​security team in the smart contract virtual machine on the EOS platform is a series of unprecedented security risks. Security researchers have not found such problems before. This type of security issue affects not only EOS but also other types of blockchain platforms and virtual currency applications

360 urges the Blockchain industry to pay more attention to security issues like these which can be critical for these networks.

The EOS Mainnet launch is set to happen on June 2nd where the EOS token will be moving out of the Ethereum Blockchain and exchanges like Binance, Bitfinex, Kraken Bithumb, etc have announced that they will be supporting the token swap, But if the vulnerabilities highlighted by 360 is true then it will be critical to resolve those issues before the Mainnet launch as it can have a devastating impact. It would not be a surprise if the Mainnet launch is postponed due to these issues.

There has been no official announcement from the EOS Team until now on their social media channels, however, the issue is said to resolved according to their Github.

cnLedger Tweeted:

Source: 360 Security Guards

 


Discuss this news on our Telegram Community. Subscribe to us on Google news and do follow us on Twitter @Blockmanity

Did you like the news you just read? Please leave a feedback to help us serve you better

Disclaimer: Blockmanity is a news portal and does not provide any financial advice. Blockmanity's role is to inform the cryptocurrency and blockchain community about what's going on in this space. Please do your own due diligence before making any investment. Blockmanity won't be responsible for any loss of funds.

Shrikar Parashar

Shrikar is a Blockchain evangelist. He is a die-hard fan of security tokens. He follows the market closely but does not trade. He believes in Hodling.

Share
Published by
Shrikar Parashar

Recent Posts

Circle of Games – The multi-gaming platform raised funding from Nazara

Circle of Games (COG)—Web3's multi-gaming platform has raised a $1mn round from Nazara, with participation…

2 weeks ago

Unconference Bali 2024: Pioneering the Future of Web3 in Paradise

Unconference Bali 2024, Asia’s premier Web3 event, is poised to take center stage against the…

2 weeks ago

Tradeleaf Ignites Trade Finance Revolution with $TLF Listing on MEXC

Tradeleaf, a leading FinTech company empowering global trade through digital solutions, recently celebrated a significant…

2 weeks ago

Foundership Global Accelerator Teams Up with XDC Network to Propel Web3 Startup Innovation

Foundership Global Accelerator, a prominent force in the Web3 & Emerging-Tech Community boasting over 10,000…

3 weeks ago

Condo, the world’s first meme token based on Real-World Asset (RWA), launches on Base Chain with innovative treasury investment strategy

April 16, 2024 - Condo, the world's first real-world asset (RWA) meme token, was recently…

3 weeks ago

Partisia Blockchain Debuts $100 Million in $MPC Grants to Enhance Blockchain Technology and Token Utilization

The Partisia Blockchain Foundation, at the forefront of crafting privacy-enhancing and interoperable blockchain platforms, today…

4 weeks ago