市值: $2.9011T 3.60%
成交额(24h): $151.5481B 98.91%
  • 市值: $2.9011T 3.60%
  • 成交额(24h): $151.5481B 98.91%
  • 恐惧与贪婪指数:
  • 市值: $2.9011T 3.60%
加密货币
话题
百科
资讯
加密话题
视频
热门新闻
加密货币
话题
百科
资讯
加密话题
视频
bitcoin
bitcoin

$85232.582722 USD

4.45%

ethereum
ethereum

$2725.202624 USD

2.46%

tether
tether

$0.999787 USD

0.01%

bnb
bnb

$785.998939 USD

1.82%

xrp
xrp

$1.520821 USD

5.58%

usd-coin
usd-coin

$1.000022 USD

0.02%

solana
solana

$116.525524 USD

4.23%

tron
tron

$0.348269 USD

1.56%

zcash
zcash

$1501.306763 USD

0.24%

hyperliquid
hyperliquid

$94.319248 USD

0.33%

dogecoin
dogecoin

$0.099320 USD

11.23%

monero
monero

$574.991106 USD

-6.79%

chainlink
chainlink

$12.889190 USD

2.83%

cardano
cardano

$0.244704 USD

5.23%

unus-sed-leo
unus-sed-leo

$8.971292 USD

0.54%

加密货币新闻

Solana Patches Critical Token Bug Before Major Exploit

2025/05/05 17:02

Solana Patches Critical Token Bug Before Major Exploit

Solana, the rapidly developing blockchain, encountered and swiftly patched a critical bug in its Token-2022 system. If left unaddressed, this vulnerability could have been used by hackers to forge tokens endlessly and steal funds from any account.

The Solana Foundation confirmed that the bug was reported on April 16, and within 48 hours, it was completely fixed. Core developers Anza, Jito, and Firedancer spearheaded the response, while security firms OtterSec, Neodyme, and Asymmetric Research also contributed.

Crucially, this issue never reached the public domain. Solana opted to handle it quickly and quietly to prevent any potential panic or misuse of the vulnerability.

The bug resided in the “confidential transfers” feature, designed to conceal transaction details using zero-knowledge proofs, specifically the ZK ElGamal system. A missing mathematical element in the cryptographic hash allowed attackers to forge proofs that appeared valid to the system.

These false proofs could have been used to mint unlimited tokens or steal funds from any account without detection.

Solana’s rapid response and the cooperation of several security firms ensured that the bug was patched before it could be exploited. No instances of token forging or account theft have been reported.

Following this incident, SOL developers will continue to audit Token-2022 to identify and mitigate any future threats. The Foundation also highlighted the importance of teamwork in handling such events effectively.

This incident underscores the fact that even advanced cryptographic techniques are susceptible to flaws when implemented carelessly. Constant vigilance and a collaborative approach are crucial in securing blockchain networks from malicious actors.

原文来源:coindoo

免责声明:info@kdj.com

所提供的信息并非交易建议。根据本文提供的信息进行的任何投资,kdj.com不承担任何责任。加密货币具有高波动性,强烈建议您深入研究后,谨慎投资!

如您认为本网站上使用的内容侵犯了您的版权,请立即联系我们(info@kdj.com),我们将及时删除。

2026年09月23日 发表的其他文章