• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Io.net Implements Swift Security Enhancements Following Cybersecurity Incident

user avatar

by Giorgi Kostiuk

2 years ago


Decentralized physical infrastructure network Io.net faced a cybersecurity breach due to malicious attackers exploiting vulnerabilities in user identity disclosures to execute a SQL attack on the GPU network. Io.net's security chief, Husky, swiftly responded by implementing security upgrades and corrective measures to safeguard the network. Fortunately, the strong permission layers in place prevented harm to the actual hardware of the GPUs. The breach was detected during increased write operations on the GPU's metadata APIs and was resolved the following day, following triggered alerts.

In the aftermath, Io.net bolstered security measures by incorporating SQL checks on APIs and enhancing unauthorized attempt logging. Furthermore, they rapidly implemented a user-specific authentication solution using OKTA and Auth0 to address security vulnerabilities related to universal authorization processes.

The breach stemmed from vulnerabilities identified during the implementation of a Proof of Work mechanism to detect counterfeit GPUs. Prior security patches had been applied, necessitating ongoing reviews and enhancements due to evolving attack strategies. Attackers exploited an API flaw to reveal content in the entry and exit navigator, inadvertently exposing user identities linked to device identifiers, which were compiled into a database weeks before the breach.

Key considerations include the importance of robust permission layers to mitigate hardware damage during cyber incidents, the swift deployment of tailored authentication solutions post-breach, and the critical need for continuous security reviews and vulnerability patches to adapt to advancing cybersecurity risks.

Despite the challenges, Io.net remains committed to encouraging supply-side involvement, restoring network connectivity, preserving platform integrity, and providing computational services. Husky stressed the significance of regular comprehensive reviews and penetration tests at public access points to identify and neutralize threats promptly. This update was originally posted on BH NEWS.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Ethereum Expected to Surpass $10,000 by 2025

chest

Arthur Hayes projects Ethereum to exceed $10,000 by 2025, driven by institutional adoption, staking, and enhanced DeFi activity.

user avatarMaya Lundqvist

Numeraire Token Surges Amid $30M Funding in Volatile Market

chest

The Numeraire token surged due to a $30 million funding initiative, indicating potential for recovery and optimism in the volatile cryptocurrency market.

user avatarLeo van der Veen

Ethena Labs Withdraws 25 Million ENA Tokens from Bybit in Strategic Move

chest

Ethena Labs has withdrawn 25 million ENA tokens from Bybit, signaling a strategic shift in their cryptocurrency management.

user avatarLi Weicheng

Shiba Inu Price Stabilization and Market Conditions

chest

SHIB price shows signs of stabilization after a decline, with macroeconomic factors potentially influencing its future.

user avatarTenzin Dorje

BMIC Token Offers Multi-Layered Solution for Quantum Security

chest

The BMIC token features a four-layer architecture designed to address the challenges posed by quantum computing.

user avatarBayarjavkhlan Ganbaatar

BMIC Token Launches to Secure Digital Assets Against Quantum Risks

chest

The BMIC token has been launched as a crucial component of a decentralized ecosystem aimed at protecting digital assets from the risks associated with quantum computing.

user avatarAisha Farooq

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.