Liquid Sidechain Flaw Let Attacker Mint Nearly 4,000 Unbacked L-BTC
0
0

A flaw in Liquid’s Bitcoin sidechain allowed an attacker to create 3,998.5 L-BTC without the Bitcoin needed to back them, according to blockchain security firm SlowMist. Detected Sept. 6, the exploit used a cache collision to bypass Elements’ range-proof checks and redeem the unbacked coins for Bitcoin.
Cache Collision Triggered Invalid Mint
The flaw affected Elements versions released before 23.3.4. An earlier patch issued Aug. 3 failed to address the weakness at the field boundary, leaving the system vulnerable.
SlowMist said the attacker used setup transactions to manipulate node caches before minting the unbacked L-BTC. The attacker later sought a 10% bounty through on-chain messages.
Related: North Korea Crypto Laundering Route Through Xinbi Exposed by New US Probe
Version 23.3.4 fixed the issue by adding length prefixes and an emergency option to disable…
Read The Full Article Liquid Sidechain Flaw Let Attacker Mint Nearly 4,000 Unbacked L-BTC On Coin Edition.
0
0
Verbinden Sie sicher das Portfolio, das Sie zu Beginn verwenden möchten.





