Connect with us

Noticias

MakerDAO fix critical vulnerability

MakerDAO developers fixed a critical vulnerability that could lead to the loss of more than 10% of the total collateral funds of users of the DAI token, reports CoinDesk. The user HackerOne under the nickname lucash-dev found an error in the planned update of the Multi-Collateral Dai (MCD) system during the testing phase. The vulnerability allowed an attacker to steal the entire security, which is at the liquidation stage in MCD, in one transaction. According to lucash-dev, an opportunity for […]

Published

on

MakerDAO developers fixed a critical vulnerability that could lead to the loss of more than 10% of the total collateral funds of users of the DAI token, reports CoinDesk .

The user HackerOne under the nickname lucash-dev found an error in the planned update of the Multi-Collateral Dai (MCD) system during the testing phase. The vulnerability allowed an attacker to steal the entire security, which is at the liquidation stage in MCD, in one transaction.

According to lucash-dev, the possibility of an attack opened up a complete lack of access control in the system’s smart contract.

When the MCD was in the phase of liquidating the security bond, the attacker could create a fake auction with an arbitrary rate. Thus, he received all the pledges in the system.

Lucash-dev received a reward of $ 50 thousand as part of the MakerDAO bounty program.

Recall that previously critical vulnerability was found in a smart contract for voting in MakerDAO.

Follow BlockchainJournal on Twitter !

<< aside id = "unisender_subscribe_form-10" class = "widget unisender_form">

BlockchainJournal.news

BlockchainJournal.news

Compañías

Coinbase Reacciona a la Última Amenaza Legal de la SEC

Published

on

By

Coinbasew

El exchange de criptomonedas Coinbase reveló el 22 de marzo a través de una entrada en su blog que había recibido una notificación de Wells de la Comisión de Bolsa y Valores de Estados Unidos (SEC), relativa a la adopción de medidas coercitivas por parte de los reguladores.

(más…)

Continue Reading

Compañías

La SEC Demanda a Justin Sun y Sus Empresas por Fraude y Violación de la Legislación Sobre Valores

Published

on

tron (1)

En un comunicado de prensa del miércoles 22 de marzo, la SEC anunció cargos contra Justin Sun y sus tres empresas, Tron Foundation Limited, BitTorrent Foundation Ltd., y Rainberry Inc., por la venta no registrada de criptovalores TRX y BTT.

(más…)

Continue Reading

Compañías

El Tribunal Ofrece una Solución a los Clientes de la Red Celsius

Published

on

By

Celsius

Tras los esfuerzos realizados por los titulares de cuentas de custodia de Celsius para recuperar sus fondos, un juez de quiebras de los Estados Unidos, Martin Gleen, dictaminó el 21 de marzo que los clientes podrán recibir el 72,5% de sus tenencias de criptomonedas.

(más…)

Continue Reading

Trending