Handling of Recent Bitcoin Bug Ruffles Feathers

Handling of Recent Bitcoin Bug Ruffles Feathers
фото показано с : bitcoinist.com

2018-9-23 14:00

Bitcoin Core developers urged all nodes to implement a patch on Friday, September 21, in order to prevent the exploitation of a recently discovered bug in the Bitcoin protocol. The bug, called CVE-2018-17144, was originally reported to the Bitcoin Core team by Bitcoin Cash developer Awemany on September 17.

A Bug in the System

The discovery of the bug and the Core developers attempts to address it have caused ruffled feathers in the crypto community. Allegations of incompetence and bad-faith have been leveled by members of both the Bitcoin (BTC) 00 and Bitcoin Cash community as developers attempt to patch the bug.

CVE-2018-17144 was initially reported as a potential denial of service bug, but developers on the Core team discovered the root issue impacted both denials of service and inflation vulnerability. The Bitcoin Core team has released a timeline in its announcement about the bug, showing the steps undertaken as the team went from being made aware of the bug’s existence to releasing a patch.

The CVE-2018-17144 bug originated in Bitcoin Core .15, originating as part of a change which was designed to help simplify the tracking of unspent transaction output. This change left Bitcoin versions .15X through .16.2 vulnerable to the bug — as well as any altcoins or forked versions of Bitcoin that were still using code containing the bug.

Crucially, the implantation of the code which caused the bug was led by the same developer who was integral in implementing the fix. This has added to suspicions that the release of the patch was not handled correctly.

Lying in Wait

Worryingly for many, the bug had been sitting undiscovered in the code for two years, raising concerns about what other issues may be lurking in Bitcoin just waiting to be exploited. In a post from Medium contributor Awemany, it’s noted that it would have been just as easy for him to short BTC — and exploit the bug — as it was for him to report the bug the Core team.

The Bitcoin Core team has been heavily criticized for the manner in which they rolled out the announcement about both the bug and the patch. For Bitcoin and many of the altcoins which rely on the same code, the decision to announce the bug and patch without consulting members of the altcoin networks that would have been impacted by a successful exploit was seen by some as political and mean-spirited.   

Despite the promise of decentralization and transparency promised by crypto advocates, the CVE-2018-17144 episode illustrates just how dependent many projects are on the decisions made by a relatively small number of members of the community. If the actors in this saga had made a handful of decisions differently, billions of dollars of value could have been wiped out. Hopefully, this episode leads to clearer standards around bug discovery and patching, and a more harmonious culture between various developer teams.

What are your thoughts on Bitcoin bugs? Let us know in the comments below!

Images courtesy of Shutterstock.

The post Handling of Recent Bitcoin Bug Ruffles Feathers appeared first on Bitcoinist.com.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Bitcoin (BTC) на Currencies.ru

$ 65983.71 (+0.05%)
Объем 24H $41.847b
Изменеия 24h: 6.56 %, 7d: 7.02 %
Cегодня L: $65855.37 - H: $66316.72
Капитализация $1299.805b Rank 1
Цена в час новости $ 6679.81 (887.81%)

bitcoin bug feathers core handling september recent

bitcoin bug → Результатов: 41


Фото:

Kraken bug apparently let users buy Bitcoin for $8,000 and instantly sell it for $12,000

Cryptocurrency exchange Kraken – one of the world’s oldest – has disclosed a bug that apparently allowed certain customers to purchase Bitcoin at $8,000 and sell it for $12,000. Taking to Twitter, the exchange said “a test of an unreleased advanced order type encountered a bug, which resulted in the order’s prices being matched against the wrong side of the book.

2019-9-16 18:31


Фото:

John Newbery: I’m Responsible For ‘Worst Bitcoin Bug Since 2010’

Bitcoin Core developers have decried infighting between Bitcoin (BTC) and Bitcoin Cash (BCH) supporters after John Newbery claimed responsibility for last week’s CVE-2018-17144 network bug. ‘Embarrassed And Sorry’ In comments on Twitter September 23, Newbery, who is tasked with checking the Bitcoin codebase, said it was because of him that the bug had gone unnoticed.

2018-9-24 14:00


Фото:

Bitcoin [BTC] Developer Discovers Vulnerability In Bitcoin Cash [BCH] Code, Finds It Near Impossible to Report the Bug to Developers

On Thursday, August 9, a developer and researcher in the crypto industry detailed the difficulties he had communicating a vulnerability in the Bitcoin Cash protocol to their dev team. Cory Fields from the Digital Currency Initiative at MIT Media Lab in Massachusetts outlined the issue in a post on his Medium blog.

2018-8-10 12:02


Фото:

The Genesis Files: With Bit Gold, Szabo Was Inches Away From Inventing Bitcoin

As his Hungarian parents had fled post-war Soviet regime to settle in the United States, Nick Szabo came to call the Californian Bay area of the 1990s his home. Here, he was among the first to frequent the in-person “Cypherpunk” meetings organized by Timothy May, Eric Hughes and other founding members of the collective of cryptographers, programmers and privacy activists centered around the ’90s mailing list of the same name.

2018-7-13 17:16