Ethereum Proof-of-Work Suffers Replay Attack, Price Tanks 18%

2022-9-18 19:02

Ethereum Proof-of-Work (PoW) network suffered a replay attack on September 18 as exploiters replayed a message from the Ethereum POS chain.

According to BlockSec, which first discovered the attack, the exploit happened because the bridge did not correctly verify the actual chainID of the cross-chain message.

1/ Alert | BlockSec detected that exploiters are replaying the message (calldata) of the PoS chain on @EthereumPow. The root cause of the exploitation is that the bridge doesn't correctly verify the actual chainid (which is maintained by itself) of the cross-chain message.

— BlockSec (@BlockSecTeam) September 18, 2022

The exploiter first transferred 200 WETH through the Omnibridge of the Gnosis chain. Then, the same transaction was replayed on the PoW chain to get an extra 200 ETHW.

According to the blockchain security firm, the attacker could drain the balance of the contract on the PoW chain.

CertiK further stated that the exploiter has transferred the funds to MEXC.

ETH PoW team says the transaction replay was not on chain level

ETH PoW’s official Twitter account has acknowledged the attack stating that it is not a transaction replay on the chain level. Instead, it is due to the call data replay caused by a flaw in the contract.

The team said:

“(We) Had tried every way to contact Omni Bridge yesterday. Bridges need to correctly verify the actual ChainID of the cross-chain messages.”

Meanwhile, a chain-level replay attack is impossible on the ETHPOW chain as the network enforced EIP-155 before the hard fork. This means that transactions on the ETH proof-of-stake chain cannot be re-enacted on the POW chain or Vice versa.

However, the fact that the exploit is not happening on the chain level might not matter much. The PoW fork has only been live for less than 72 hours and experiencing an exploit this early could affect its potential for more adoption.

ETHW sheds 18%

According to Peckshield, ETHW shed 12% of its value on the back of the news.

#PeckShieldAlert Seems like @EthereumPow suffered a replay attack. $ETHW has dropped -12%. Be Alerthttps://t.co/wuPLXsaanN pic.twitter.com/OlDgvNehTh

— PeckShieldAlert (@PeckShieldAlert) September 18, 2022

In the last 24 hours, the ETHW token dropped by 17.8%. The token has seen its value massively decline by more than 80% within the last two weeks.

ETHW adoption suffered further blows during the week as Grayscale revealed it would be selling its tokens while Poloniex stated it was listing list EthereumFair (ETF) as its core Ethereum PoW token.

For Be[In]Crypto’s latest Bitcoin (BTC) analysis, click here.

The post Ethereum Proof-of-Work Suffers Replay Attack, Price Tanks 18% appeared first on BeInCrypto.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Ethereum (ETH) на Currencies.ru

$ 3098.66 (-0.15%)
Объем 24H $14.893b
Изменеия 24h: 5.13 %, 7d: 6.19 %
Cегодня L: $3088.33 - H: $3122.76
Капитализация $372.218b Rank 2
Цена в час новости $ 1418.69 (118.42%)

ethereum attack replay proof-of-work tanks suffers price

ethereum attack → Результатов: 126


Coinbase Forced to Suspend Ethereum Classic Trading After 51% Attack

Ethereum Classic, the original unforked Ethereum blockchain, has suffered a 51% attack resulting in nearly half a million dollars worth of double spends according to Coinbase. Coinbase detected the deep chain reorganizations over the weekend, forcing the cryptocurrency firm to freeze all Ethereum Classic transactions on their trading platforms and other products and services.

2019-1-8 23:00


Bitcoin Ransomware: The U.S. Indicts Iranians Over $6 Million Cryptocurrency Cyber-crimes

The U. S. Justice Department recently announced the indictment of two Iranians involved in a high-profile Bitcoin ransomware attack. Iranian Hackers Collect Bitcoin as Ransom According to a report by The Washington Post, the Justice Department of the United States on Wednesday (November 28) announced the indictment of two Iranian nationals involved in cryptocurrency ransomware attacks, […] The post Bitcoin Ransomware: The U.

2018-11-29 12:16


Фото:

A Bug Making Ethereum Transactions on Exchanges Vulnerable Has Been Fixed

A bug centering around a new Ethereum token, GasToken, which was enabling abuse on cryptocurrency exchanges, appears to have been resolved. The details are provided in a report originally published on November 13, 2018, that discussed how the bug was exploited by attackers, and what digital platforms could do if they wished to protect their hot wallet funds.

2018-11-22 00:34


$7.8M In Cryptocurrency Disappears From Trade.io “Cold Storage”, Hackers Implicated

Switzerland-based Trade. io Suffers Devastating Hack, Cold Wallet Affected In hand-to-hand fist fights, it is not like gentlemen to kick their opponents while they are already down. However, in the emerging cryptocurrency market, which has been bashed by violent sell-offs in the past nine months, malicious actors still seem poised to attack, hack, and steal from […] The post $7.

2018-10-23 03:28


It Costs $20 to Launch a 51 percent Attack on Einsteinium and Less than $200 to Force a Hard Fork in Feathercoin

There is this other side of crypto. It’s dark and full of dead coins. It keeps piling up every time ETH or BTC print lower. Though the market is expecting a rally with Ran Neur listing a couple of indicators to justify his bullish stand, Einsteinium coin creators and “community” should be having a hard […] The post It Costs $20 to Launch a 51 percent Attack on Einsteinium and Less than $200 to Force a Hard Fork in Feathercoin appeared first on Ethereum World News.

2018-10-9 14:59


Фото:

Etherscan rushes to plug vulnerabilities following strange hacking attempts overnight

Etherscan, the most widely used Ethereum blockchain explorer, has quickly patched security vulnerabilities overnight as hackers exploited certain parts of its service. Hackers successfully manipulated the Disqus API – a third-party service used by Etherscan that allows for comments to be left on Ethereum wallet addresses.

2018-7-24 13:00


Фото:

Governance, Part 2: Plutocracy Is Still Bad

Coin holder voting, both for governance of technical features, and for more extensive use cases like deciding who runs validator nodes and who receives money from development bounty funds, is unfortunately continuing to be popular, and so it seems worthwhile for me to write another post explaining why I (and Vlad Zamfir and others) do not consider it wise for Ethereum (or really, any base-layer blockchain) to start adopting these kinds of mechanisms in a tightly coupled form in any significant way.

2018-7-21 23:03