Stand Up for Investors' Right to Know – Say No to Dumping Sell-Offs! [RootData Bounty Campaign]
API Download the RootData App

Due to the discovery of a serious vulnerability in the Cosmos documentation, a Web3 security researcher received a reward of $150,000

Oct 29, 2024 20:52:48

Share to

ChainCatcher news, according to Cointelegraph, a Web3 security researcher earned a $150,000 bounty by reading the Cosmos network documentation and discovering a serious vulnerability that could cause the Evmos blockchain and all decentralized applications (DApps) built on it to stop functioning.

In a blog post published on October 28, the security researcher "jayjonah.eth" explained the concept of "module accounts" encountered in the Cosmos documentation, stating: "If these addresses (module accounts) receive funds outside the expected rules of the state machine, invariants may be violated, potentially leading to a network halt." Based on the Cosmos documentation, the Evmos blockchain was subjected to crash testing, where the security researcher attempted to send funds to the module accounts in a testing environment to test this theory, reporting: "At this point, no blocks are being generated anymore, and the blockchain has completely stopped. This would compromise the Evmos blockchain and all DApps built on it." He revealed that the Evmos team had already fixed the vulnerability before the information was made public.

Recent Fundraising

More
$4M Dec 18
$13M Dec 18

New Tokens

More
Dec 20
Dec 19
Dec 19

Latest Updates on 𝕏

More