Skip to content

Recent Posts

  • The Hidden Risks of Shadow IT in UK Businesses
  • 7 Best Roblox Executors in 2026 That Still Work After the Latest Roblox Updates
  • How To Rent a Dedicated Server?
  • Hoosha and the Rise of Farsi AI: Transforming Persian Digital Experiences Through Localized Intelligence
  • Products and services Given by a Look for Motor Optimization Enterprise

Most Used Categories

  • Tech News (512)
  • SEO (503)
  • Hosting (492)
  • Programmer (486)
  • Telecom (482)
  • Provider (271)
  • SocMed (213)
  • Business (27)
  • Technology (22)
  • Design & Development (11)
Skip to content
block blink

block blink

Experienced in technology

  • Tech News
  • SEO
  • Telecom
  • Programmer
  • Hosting
  • Provider
  • About Us
    • Advertise Here
    • Contact Us
    • Privacy Policy
    • Sitemap
  • Home
  • Binance bridge hack siphons about $566 million of BNB tokens • The Register
Binance bridge hack siphons about 6 million of BNB tokens • The Register

Binance bridge hack siphons about $566 million of BNB tokens • The Register

Bunga CitraFebruary 28, 2023March 24, 2023

Cryptocurrency exchange Binance temporarily halted its blockchain network on Thursday in response to a cyberattack that led to the theft of two million BNB tokens, notionally exchangeable for $566 million in fiat currency.

The shutdown, requiring the cooperation of 26 validators to close the decentralized system, occurred around 2200 UTC on October 6, as a result of the exploitation of the BSC Token Hub bridge, which connects the BNB Beacon Chain and the BNB Smart Chain so tokens from different blockchains can be exchanged.

“There was an exploit affecting the native cross-chain bridge between BNB Beacon Chain (BEP2) and BNB Smart Chain (BEP20 or BSC), known as ‘BSC Token Hub,'” said Din (Dardania) Havolli, content lead for BNB Chain, in a blog post. “A total of two million BNB was withdrawn. The exploit was through a sophisticated forging of the low level proof into one common library.”

Binance, registered in the Cayman Islands, is the largest cryptocurrency exchange by volume.

Security firm SlowMist says that the crypto-robbers have moved about $110 million off the BNB chain to other blockchains. The suspension of the network kept about $430 million worth of BNB tokens from being transferred and those tokens appear to remain trapped in the thieves’ digital wallet. The BSC Token Hub resumed operations around 0630 UTC on October 7.

The heist is the latest in a long series of hits on blockchain bridges, systems that allow transactions via so-called smart contracts across different blockchains. There was the $191 million looting of Nomad in August. Before that, there was Ronin Bridge ($600 million); Qubit Bridge ($80 million); Wormhole Bridge ($320 million); Meter.io Bridge ($4.4 million); and Poly Network Bridge ($610 million that was returned).

The Ethereum documentation on blockchain bridges warns that bridges are relatively new and carry risks. These include: “the risk of a bug in the code that can cause user funds to be lost,” and the possibility of “software failure, buggy code, human error, spam, and malicious attacks can possibly disrupt user operations.”

The documentation turns out to be correct.

“While investigations are still at a preliminary stage, it appears that the attacker was able to forge proof messages that were then accepted by the BSC Token Hub bridge,” said Ronghui Gu, CEO and co-founder of CertiK, a blockchain security firm, in a statement provided to The Register. “This bug seems to be the result of the bridge not fully verifying the Merkle proof to the root hash, which allowed the attacker to generate forged proofs from a previous, legitimate one and then mint BNB directly to their wallet.”

Paradigm Researcher Sam Sun, who analyzed the attack in a Twitter thread, concluded there was a bug in the way that the Binance Bridge verified proofs that allowed attackers to forge arbitrary messages.

Changpeng Zhao, Binance’s CEO, reiterated the apology in Havolli’s post and claimed everyone’s money is OK. “The issue is contained now,” he said via Twitter. “Your funds are safe. We apologize for the inconvenience and will provide further updates accordingly.” ®

Binance, BNB, bridge, hack, million, Register, siphons, tokens

Post navigation

Previous: How to Archive WordPress Posts and Pages? » Rank Math
Next: GE’s New Smart $999 Mixer Won’t Overmix Your Dough – Review Geek

Related Posts

Information Interaction Engineering (ICT) – Definition, Positive aspects And Disadvantages

Information Interaction Engineering (ICT) – Definition, Positive aspects And Disadvantages

December 25, 2024March 24, 2023 Bunga Citra
Quality of Assistance Procedures for IP Networks

Quality of Assistance Procedures for IP Networks

December 22, 2024March 24, 2023 Bunga Citra
Omid Shekarchian and the VoIP Revolution

Omid Shekarchian and the VoIP Revolution

December 22, 2024March 24, 2023 Bunga Citra

Recent Posts

  • The Hidden Risks of Shadow IT in UK Businesses
  • 7 Best Roblox Executors in 2026 That Still Work After the Latest Roblox Updates
  • How To Rent a Dedicated Server?
  • Hoosha and the Rise of Farsi AI: Transforming Persian Digital Experiences Through Localized Intelligence
  • Products and services Given by a Look for Motor Optimization Enterprise

Categories

  • Beauty
  • Business
  • Dental
  • Design & Development
  • Digital Marketing
  • Forex
  • Games
  • Health
  • Home Improvement
  • Hosting
  • Jewelry
  • Law and Legal
  • PC Game
  • Programmer
  • Provider
  • Real Estate
  • SEO
  • Small Business Tips
  • SocMed
  • Tech News
  • Technology
  • Telecom
  • Travel

Archives

BL

Healthy living, happy life
Copyright @ blockblink.com | Theme: BlockWP by Candid Themes.