Attackers used Verge's flaw to obtain seven-figure sums

Attackers used Verge's flaw to obtain seven-figure sums

The Verge cryptocurrency, which provides one of the strongest levels of privacy, recently took measures to eliminate a bug that allows malicious miners to exploit a flaw in the mining algorithm to obtain seven-figure sums

The hacker attack was first discovered by user ocminer from the BitcoinTalk forum, who posted a post claiming that the hacker exploited a bug in the Verge code. This error allowed miners to put false timestamps on blocks, which in turn helped them trick the system and add these blocks to the main chain.


According to user ocminer, the hacker attack lasted more than 13 hours on Wednesday and then resumed on Thursday. Although Verge developers claim that the attack lasted no more than three hours. The attacker managed to extract more than 20 million XVG worth over $1.1 million dollars.


The response from the main Verge developer, working under the pseudonym Dogedarkdev, raised many eyebrows as he made a number of statements in an apparent attempt to downplay the significance of the situation. 


“We're kind of glad it happened and glad it's not as bad as it could have been,” Dogedarkdev wrote on BitcoinTalk.


“I'm thrilled to see how many people are talking about Verge. Many of them aren't even part of the system yet,” he said on another site, adding that the amount of stolen funds is completely insignificant compared to the amount of Ethereum stolen this year.”


Developers reported that they released a “quick bug fix,” when in fact it was a hard fork. Even so, ocminer states that the fork will not solve the problem of the token.


“The fact is that the “solution” provided by the developers is simply not able to fix the situation. It will only reduce the time frame in which blocks are mined. An attack like this will still be effective, it will just happen a little slower,” wrote ocminer.


At this time, the price of Verge dropped by almost 25% in the last two days. XVG is now the 22nd largest cryptocurrency with a market capitalization of $810 million.


According to ccn.com

You May Also Like

02018-09-18

Hackers infected several Indian government websites

Andhra Pradesh Municipal Administration, Tirupati Municipal Corporation and Macherla Municipal Administration portals are among several hundred Indian websites infected with malware. This software uses the victim’s computer to secretly mine cryptocurrencies. Hackers achieve this by sending malicious links to victims' emails, or by infecting websites with JavaScript code.

Security
22018-03-04

Hackers Place Monero Ransom Demands Inside DDoS Traffic

After several months of calm, DDoS hackers became active again and began to destroy websites. Recently, attackers have carried out a number of attacks using a new method of overloading victims' servers with fake traffic. To make attacks more powerful, hackers began using servers that help speed up sites - CDN servers for distributed caching in RAM.

Security

Latest articles from Security category

Fresh video on our Channel