时间:2025-04-03 10:33:09 来源:网络整理编辑:知識
Ethereum has become a top target for hackers. The promising cryptocurrency that's also a platform fo
Ethereum has become a top target for hackers.
The promising cryptocurrency that's also a platform for decentralized applications has skyrocketed in value over the last six months (though it also had a serious drop in price in the last couple of weeks). But hacker attacks and theft of ether have become commonplace, and the last one is one of the worst so far.
An unknown hacker or a group of hackers exploited a vulnerability in the way in which Parity, an Ethereum wallet, implemented multi-sig wallets, stealing some 153,000 worth of ether, which was valued around $32 million at the time of theft.
SEE ALSO:What you don't know about Bitcoin can hurt youAccording to a security alert on the Parity blog dated July 19, the vulnerability has been fixed, but "any user with assets in a multi-sig wallet created in Parity Wallet prior to 19/07/17 23:14:56 CEST," was vulnerable to ether theft.
The theft has indeed happened and it can be seen on Ethereum's blockchain here. According to a post by the CEO of decentralized commerce platform Swarm City, Matthew Carano, the funds held by the company in a multi-sig wallet were completely drained on July 19, and additional funds were stolen from other companies including Edgeless Casino and Aeternity.
A multi-sig wallet is a wallet that requires more than one signature for an action to be performed on its contents. Users that had regular wallets on Parity were not in danger (incidentally, the author of this text has until recently held some ether in a Parity wallet, but not a multi-sig one).
Tweet may have been deleted
What makes this theft particularly troublesome is that Parity is one of the most trusted wallets in the business. The company was founded by Gavin Wood, who is also a co-founder of Ethereum and has written the initial implementation of Ethereum back in 2014. Furthermore, it appears that no amount of caution on the users' side could've prevented the theft.
Tweet may have been deleted
According to CyberScoop, a group of white hat hackers saved Parity users from further damage by exploiting the vulnerability (which was apparently "trivial" to exploit) and draining all of the remaining multi-sig wallets on Parity, a total of 377,000 ETH worth more than $75 million. Those transactions can be seen here. The group has promised to return the funds to their owners once the vulnerability is fixed.
Tweet may have been deleted
This isn't even the first ether theft this week. On Tuesday, an initial coin offering (ICO) of an Ethereum-based startup called CoinDash went south as hackers managed to change the wallet address on the project's web page, siphoning away more than $10 million worth of ether.
And in June 2016, hackers exploited a vulnerability in the code of DAO, another Ethereum-based project, stealing some 3.6 million ether, which today would be worth a whopping $742 million. To repair the damage, Ethereum's management decided to create a hard fork in the software, undoing the theft but also splitting Ethereum into two separate cryptocoins: Ethereum and (today far less valuable) Ethereum Classic.
Disclosure: The author of this text owns, or has recently owned, a number of cryptocurrencies, including BTC and ETH.
TopicsCybersecurityCryptocurrency
Tributes flow after death of former Singapore president S.R. Nathan2025-04-03 10:26
Fishtail brows are a thing now, and we're not sure why2025-04-03 10:02
Amy Poehler blasts NRA over 'Parks & Rec' tweet2025-04-03 09:52
12,000 SpaceX Starlink satellites could pose a space debris problem2025-04-03 09:39
Chinese gymnastics team horrifies crowd with human jump rope2025-04-03 09:28
12,000 SpaceX Starlink satellites could pose a space debris problem2025-04-03 09:01
There's only one good name for the next iPhone2025-04-03 08:32
Women are taking charge in Senegal's growing tech industry2025-04-03 08:23
U.S. government issues warning on McDonald's recalled wearable devices2025-04-03 08:16
Everything you need to understand the Uber2025-04-03 07:54
Singapore rolls out video2025-04-03 10:31
Verizon phones will be locked in stores to prevent theft, for now2025-04-03 10:21
Gorillas find love using a dating app matching algorithm, too2025-04-03 09:33
Here's what it's like to fly in Qatar Airways' new luxury Qsuite2025-04-03 09:24
Airbnb activates disaster response site for Louisiana flooding2025-04-03 09:21
Google Arts and Culture uses machine learning to make art accessible2025-04-03 09:07
It is hard to look away from this Russian senator's hair2025-04-03 09:05
Model 3 driver's crash prompts Elon Musk to add new safety features2025-04-03 08:56
Honda's all2025-04-03 08:33
All the social media opt2025-04-03 07:59