
Haben Sie jemals Geld verloren, als er an eine Solana -Brieftasche gesendet hat, obwohl die Adresse korrekt aussah? Vielleicht lag es auf diesen kürzlich offengelegten Fehler; Phantom und Solflare waren jahrelang für Homographenangriffe anfällig.
https://medium.com/@john-s4d/the-crypto-wallet-vulnerability-that-went-undetected-for-over-six-years-36cd52cb600c
2 Kommentare
tldr; A vulnerability in a widely used cryptographic library went undetected for over six years, allowing Unicode lookalike characters to alter wallet addresses and misroute funds in crypto transactions. The flaw, discovered accidentally, affects wallets like Phantom and Solflare, and stems from the absence of checksum validation in Solana addresses. Attackers can exploit this to deceive users into sending funds to unintended addresses. The issue has been patched in affected wallets, but users are advised to double-check addresses and update their apps.
*This summary is auto generated by a bot and not meant to replace reading the original article. As always, DYOR.
Can’t send to buggy addresses if the network is on halt 👍🚀