• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M
CertiK Discovers a Security Flaw in the Wormhole System on the Aptos Network

CertiK Discovers a Security Flaw in the Wormhole System on the Aptos Network

user avatar

by Eve Adams

2 years ago


CertiK, a blockchain security platform, reported discovering a vulnerability in the Wormhole system on the Aptos network that could potentially have led to financial losses amounting to $5 million. The flaw was detected and rectified in a timely manner after notifying the Wormhole team, preventing possible exploitation by malicious actors.

According to CertiK, the issue arose due to incorrect implementation of the public(friend) and entry modifiers in the MOVE programming language. The public(friend) modifier restricted function calls to other functions within the same module or specified external accounts, while the entry modifier allowed the function to be called from any external account.

This configuration enabled attackers to create fictitious transactions that would move tokens between accounts without actually transferring funds. This could allow the Ethereum bridge to issue or unlock tokens without the backing of real deposits on the Aptos side. Ultimately, malicious actors could have caused damage up to $5 million had the vulnerability not been identified and addressed promptly.

CertiK provided a detailed report on the vulnerability in video format, enhancing awareness and attention to security issues within the blockchain community.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Dogecoin Approaches Key Breakout Zone

chest

Market analyst TATraderAlan highlights a recurring triangle formation in Dogecoin's price chart, suggesting a potential breakout similar to previous major rallies.

user avatarLeo van der Veen

New Benchmark Reveals Limitations of AI Personal Assistants

chest

Researchers have developed a benchmark called ClawAnything to evaluate the effectiveness of AI personal assistants, revealing significant shortcomings in their performance.

user avatarLi Weicheng

XRP and Other Cryptocurrencies See Inflows Amid Broader Market Challenges

chest

XRP and other cryptocurrencies attracted significant inflows last week despite the overall market downturn.

user avatarTenzin Dorje

Significant Stock Declines Following China's Regulatory Announcement

chest

Significant stock declines were observed following China's regulatory announcement on May 25, 2023, with Tiger Brokers' shares falling over 10% and Futu Holdings dropping more than 5%.

user avatarBayarjavkhlan Ganbaatar

China's Regulatory Crackdown on Offshore Brokerages

chest

China's Securities Regulatory Commission announced penalties for three offshore brokerages due to illegal operations targeting mainland investors.

user avatarMohamed Farouk

South Korea Indicts Five in Landmark Decentralized Exchange Fraud Case

chest

South Korean prosecutors have indicted five individuals in the country's first-ever criminal prosecution of a decentralized exchange rug pull, marking a significant legal precedent.

user avatarElias Mukuru

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.