Noticias
Study: Ethereum's unpatched clients carry a threat of attack 51%
Ethereum customers who fail to upgrade to fix known vulnerabilities are a threat to the entire network. This is stated in a new study based in Berlin Security Research Labs. Blockchain technology assumes that participants take rational actions. Among all blockchain users: https://t.co/oBWTudCqZR#blockchain #cryptocurrency #ethereum #SRLabs #patchgap […]

Ethereum customers who fail to upgrade to fix known vulnerabilities are a threat to the entire network. This is stated in a new study based in Berlin Security Research Labs.
Blockchain technology assumes that participants take rational actions. Among all blockchain users: https://t.co/oBWTudCqZR #blockchain #cryptocurrency #ethereum #SRLabs #patchgap #patching #research pic.tai.com/edreoIs20p
– Security_Research_Labs (@SecReLabs) May 17, 2019
Using data from ethernodes.org , analysts found that a large number of nodes with the most popular clients of Parity and Geth were not updated for a long time after the release of official patches, thus remaining vulnerable to attacks.
As an example, Security Research Labs cites a vulnerability that they discovered in February in the Parity client – using it, attackers can remotely disrupt the work of the nodes.
“According to the data received, by now only two thirds of the nodes have been patched. Soon after we reported the vulnerability, Parity issued a warning about a security breach, urging participants to upgrade the nodes, ”the researchers write.
They also talk about a different patch, which was released on March 2 – 30% of the Parity nodes did not install it. Another 7% of clients are on the version open to the critical vulnerability of the consensus, although the necessary upgrade was released in July last year.
Analysts say that although Parity clients can be updated automatically, this is a rather complicated process, and not all nodes support this option.
The situation with Geth clients who do not have the auto-update feature is even more complicated.
“About 44% of Geth nodes visible on ethernodes.org use versions below v.1.8.20, which are critical from the point of view of updates, ” say representatives of Security Research Labs
According to them, leaving such a large number of nodes open to attacks, their owners threaten the entire network of Ethereum, making it also vulnerable to attacks 51%.
As a solution to the problem, Security Research Labs proposes to integrate the automatic update feature into the software of all default nodes. Another possible measure, in addition to raising the awareness of network participants, is a higher level of network decentralization by reducing the concentration of hashrate among miners, although this will not be easy.
Recall that in March, BitMEX Bitcoin Bitcoin research division launched an analytical resource nodestats to collect information on the work of various software implementations for the Ethereum network and compare their performance. At the same time, BitMEX launched a full node based on the Parity client, detecting certain problems in its work.
Subscribe to the BlockchainJournal news in Telegram: BlockchainJournal Live – the entire news feed, BlockchainJournal – the most important news and polls.
BlockchainJournal.news
BlockchainJournal.news
Compañías
ARK Invest Deshace Acciones de Coinbase y GBTC por Millones en Medio del Auge del Mercado

ARK Invest, liderada por Cathie Wood, continúa navegando sus movimientos estratégicos de acciones en el mercado, realizando ventas destacadas de acciones de Coinbase y Grayscale Bitcoin Trust (GBTC) en medio del continuo aumento de los precios del mercado.
Compañías
El Descuento de GBTC se Reduce a Medida que Aumenta el Precio de Bitcoin

Grayscale Bitcoin Trust (GBTC), uno de los vehículos de inversión en criptomonedas más grandes y populares, ha visto su descuento reducirse significativamente en los últimos días a medida que los alcistas continúan elevando su precio. Según datos de Kaiko, una plataforma de inteligencia blockchain, el descuento del GBTC, que mide la diferencia entre el precio de mercado y el valor liquidativo (NAV) del fideicomiso, está en su nivel más estrecho en años, con solo el 8% hasta ayer. (más…)
Compañías
IBM Presenta OSO, Diseñada Para el Almacenamiento en Frío de Activos Digitales

IBM presentó una nueva tecnología denominada «IBM Hyper Protect Offline Signing Orchestrator» (OSO), diseñada para gestionar activos digitales en almacenamiento en frío. Esta innovación surge como respuesta a los riesgos asociados con los procedimientos manuales y tiene como objetivo mantener los activos a una distancia segura de las conexiones a Internet. (más…)
-
Noticias7 años ago
Los principales eventos de la semana en la industria de bitcoin y blockboy (17 de septiembre de 2013 – 23 de septiembre de 2018)
-
Noticias6 años ago
24 países junto con el FMI discutieron futuras reglas y regulaciones para la regulación de la criptomoneda
-
Noticias7 años ago
Medios de comunicación: en Francia permitirá la compra de criptomoneda en tiendas de tabaco
-
Noticias7 años ago
Medios de comunicación: en vísperas de la OPI, los posibles inversores de la compañía minera Bitmain estaban mal informados
-
Noticias7 años ago
Descripción general del nuevo ASIC de Bitmain: ANTMINER S15 y T15: características y rentabilidad
-
Noticias6 años ago
¿Cómo almacenar una frase semilla mnemónica de una billetera de criptomonedas?
-
Noticias7 años ago
El índice de "índice de miedo y codicia" de Bitcoin alcanzó los valores mínimos
-
Noticias7 años ago
Aumento de la demanda de Ripple (XRP)