CryptoSpiel.com
No Result
View All Result
  • Home
  • Live Crypto Prices
  • Live ICO
  • Exchange
  • Crypto News
  • Bitcoin
  • Altcoins
  • Blockchain
  • Regulations
  • Trading
  • Scams
  • Home
  • Live Crypto Prices
  • Live ICO
  • Exchange
  • Crypto News
  • Bitcoin
  • Altcoins
  • Blockchain
  • Regulations
  • Trading
  • Scams
No Result
View All Result
CryptoSpiel.com
No Result
View All Result

ZenGo uncovers dApp vulnerability | Blockchain News

March 22, 2023
in Blockchain
Reading Time: 2 mins read
A A
0
Web3 Builders Reveals Suite of Tools to Combat DeFi exploits
0
SHARES
6
VIEWS
ShareShareShareShareShare

ZenGo, a crypto wallet developer, has discovered a security vulnerability in decentralized applications (dApps) called the “red pill attack.” This vulnerability allowed malicious dApps to steal user assets using opaque transaction approvals. ZenGo conducted research that revealed that many leading vendors, including Coinbase Wallet, were vulnerable to such attacks. However, ZenGo stated that all vendors were receptive to their reports, and most of them were quick to fix their faulty implementations.

The vulnerability is possible due to a programming oversight in “Special Variables” among smart contracts storing general information on the blockchain functionality, such as timestamp of the current block. During simulations, there is no correct value for Special Variables, and developers “take a shortcut” and set them to an arbitrary value. This vulnerability is where the “red pill attack” derives its name from the iconic “red pill” scene from The Matrix movie series. “If malware is able to detect it’s actually being executed in a simulated environment or living in the matrix, it can behave in a benign manner, thus deceiving the anti-malware solution, and reveal its true malicious nature only when actually executed in a real environment.”

ZenGo demonstrated in a video how a smart contract simulation on Polygon (MATIC) could be compromised using this method. ZenGo showed that when the user sends the transaction on-chain, COINBASE is filled with the non-zero address of the current miner, and the contract just takes the sent coins.

ZenGo said the fix for the vulnerability was straightforward. Instead of populating these vulnerable variables with arbitrary values, the simulations need to populate them with meaningful values. ZenGo presented redacted screenshots of bug bounties, apparently awarded by Coinbase, for solving the issue. The Ethereum Foundation has also awarded ZenGo a $50,000 grant for its research on transaction simulations.

Decentralized applications or dApps are an essential part of the blockchain ecosystem. They operate on decentralized networks, where there is no central authority, and transactions are recorded on the blockchain. The advantage of dApps is that they provide users with a more secure and transparent way to transact without a central authority. However, as with any technology, there are vulnerabilities that need to be addressed. The discovery of the “red pill attack” vulnerability by ZenGo underscores the importance of security in the blockchain ecosystem.

In conclusion, ZenGo’s discovery of the “red pill attack” vulnerability in dApps is a significant development in the blockchain ecosystem. The vulnerability, which allowed malicious dApps to steal user assets, highlights the importance of security in the blockchain ecosystem. ZenGo’s research has shown that many leading vendors were vulnerable to such attacks, but they were quick to fix their faulty implementations. The fix for the vulnerability is straightforward, and ZenGo has urged developers to populate vulnerable variables with meaningful values.

Credit: Source link

RELATED POSTS

Anthropic Reveals Claude Code Tool Design Philosophy Behind AI Agent Development

Riot Platforms Sells $289M in Bitcoin as Mining Output Drops 4% in Q1

Exploring Chainlink’s Role Beyond Price Feeds in the Blockchain Ecosystem

Buy JNews
ADVERTISEMENT
ShareTweetSendPinShare
Previous Post

DeFi Insurance Claims Reach $34.4 Million

Next Post

Coinbase Adds Highly Anticipated Ethereum (ETH) Scaling Solution Token to Listing Roadmap

Related Posts

Bitcoin Addresses Holding Between 100 and 10,000 BTC Hit a 7-Week High
Blockchain

Anthropic Reveals Claude Code Tool Design Philosophy Behind AI Agent Development

April 10, 2026
Riot Blockchain Yearly Bitcoin Production Increases by 236%, Accumulates $194M in BTC
Blockchain

Riot Platforms Sells $289M in Bitcoin as Mining Output Drops 4% in Q1

April 2, 2026
Galaxy Digital: Ethereum Developers Discuss Key Upgrades During Latest Consensus Call
Blockchain

Exploring Chainlink’s Role Beyond Price Feeds in the Blockchain Ecosystem

December 9, 2025
Next Post
Coinbase Adds Highly Anticipated Ethereum (ETH) Scaling Solution Token to Listing Roadmap

Coinbase Adds Highly Anticipated Ethereum (ETH) Scaling Solution Token to Listing Roadmap

XRP, ADA Explode by Double Digits, Bitcoin Stable at $28K: Market Watch

XRP, ADA Explode by Double Digits, Bitcoin Stable at $28K: Market Watch

Recommended Stories

Stabble Urges Users to Pull Liquidity After Alleged North Korean Hacker Link

Stabble Urges Users to Pull Liquidity After Alleged North Korean Hacker Link

April 8, 2026
Argentina Reviews Phone Logs in LIBRA Case Linked to Javier Milei (Report)

Argentina Reviews Phone Logs in LIBRA Case Linked to Javier Milei (Report)

April 8, 2026
SEC fight over tokenized stocks could decide whether Wall Street keeps control

SEC fight over tokenized stocks could decide whether Wall Street keeps control

April 7, 2026

Popular Stories

  • Winklevoss Twins Continue Crypto Donation Spree With Another $1,000,000 in Bitcoin (BTC)

    Trader Says DeFi Altcoin Aave Witnessing Clear Trend Switch, Updates Forecast on Two Low-Cap Coins

    0 shares
    Share 0 Tweet 0
  • Kraken’s Jesse Powell Warns of Looming Government Crackdown on Bitcoin and Crypto Assets

    0 shares
    Share 0 Tweet 0
  • Gensler says SEC can consider tailoring rules for crypto industry compliance

    0 shares
    Share 0 Tweet 0
  • SSV Network brings us Ethereum Staking with its New Permisionless Mainnet

    0 shares
    Share 0 Tweet 0
  • Central Reserve Bank: Only 1.1% of Remittances Involve Cryptocurrency in El Salvador

    0 shares
    Share 0 Tweet 0
CryptoSpiel.com

This is an online news portal that aims to provide the latest crypto news, blockchain, regulations and much more stuff like that around the world. Feel free to get in touch with us!

What’s New Here!

  • Ripple CEO Says CLARITY Act Talks Near Breakthrough as Senate Standoff Eases
  • SEC Opens Proceedings on NYSE Proposal to List Grayscale Crypto ETF Options – Regulation Bitcoin News
  • Anthropic Reveals Claude Code Tool Design Philosophy Behind AI Agent Development

Subscribe Now

Loading
  • Live Crypto Prices
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2021 - cryptospiel.com - All rights reserved!

No Result
View All Result
  • Home
  • Live Crypto Prices
  • Live ICO
  • Exchange
  • Crypto News
  • Bitcoin
  • Altcoins
  • Blockchain
  • Regulations
  • Trading
  • Scams

© 2021 - cryptospiel.com - All rights reserved!

Please enter CoinGecko Free Api Key to get this plugin works.