• Coin Market Cap
  • Contact Us
  • Privacy & Policy
Monday, January 30, 2023
Litecoin.is
  • Home
  • Litecoin
  • Bitcoin
  • Blockchain
  • Coin Market Cap
  • Exchange
  • ICO
No Result
View All Result
  • Home
  • Litecoin
  • Bitcoin
  • Blockchain
  • Coin Market Cap
  • Exchange
  • ICO
No Result
View All Result
Litecoin.is
No Result
View All Result
Home Litecoin

Developers could have prevented crypto’s 2022 hacks if they took basic security measures

November 13, 2022
in Litecoin
0
189
SHARES
Share on FacebookShare on TwitterPin it

Related articles

Bitcoin stays out of fear for 11 straight days as price tips near 24K

January 30, 2023

Panama’s Supreme Court to rule on cryptocurrency legislation

January 29, 2023
ADVERTISEMENT

Users losing funds due to malicious activity is hardly unknown on Ethereum. In fact, it is the very reason researchers recently developed a proposal to introduce a type of token that is reversible in the event of a hack or other unsavory behaviors. 

Specifically, the suggestion would see the creation of an ERC-20R and ERC-721R, which would be modified versions of the standards that govern both regular Ethereum tokens and nonfungible tokens (NFTs).

The premise goes like this: this new standard would allow users to make a “freeze request” on recent transactions that would lock those funds until a “decentralized judiciary system” determined the validity of the transaction. Both parties would be allowed to present their evidence, and the judges would be chosen at random from a decentralized pool to minimize collusion.

At the end of the process, a verdict would be reached and either the funds would be returned or they would stay where they are. This decision would then be final and subject to no further contention. This would open up a practical avenue for victims of hacks and other malicious activity to get their assets back in a direct and community-driven manner.

Unfortunately, this may well be an unnecessary and ultimately harmful proposition. One of the cornerstones of the decentralized philosophy is that transactions only go in one direction. They can’t be undone under virtually any circumstances. This new protocol change would undermine that fundamental precept and in order to fix what isn’t broken.

So how does this work when an attacker steals ERC-20R and cashes out to ETH via a DEX in the same transaction? Or ERC-20R will be incompatible with the current DeFi ecosystem? https://t.co/n5pN82ZBBe

— Roman Semenov ️ (@semenov_roman_) September 25, 2022

There’s also the fact that even implementing such tokens would be a logistical nightmare. Unless every single platform shifted over to the new standard, then there would be huge gaps in the system, meaning that thieves could simply quickly swap their reversible assets for non-reversible ones and avoid the repercussions entirely. This would render the entire asset completely pointless, and more than likely users would simply not engage with it.

Furthermore, the whole idea of a judicial review implies centralization. Isn’t independence from a third party the exact thing cryptocurrency was created for? The existing proposal isn’t clear on how these judges are chosen, other than it will be “random.” Without the system being very carefully balanced, it’s hard to say that collusion or manipulation is impossible.

A better proposal

Ultimately, the notion of a reversible crypto asset may be well-intentioned but is also entirely unnecessary. The premise introduces many new complexities in terms of its actual integration into existing systems, and that is even assuming platforms want to utilize it. However, there are other ways to achieve security in the decentralized ecosystem that don’t undermine what makes cryptocurrency so powerful to begin with.

For one, auditing of all smart contract codes on an ongoing basis. Many problems in decentralized finance (DeFi) arise from exploits present in the underlying smart contracts. Comprehensive and independent security audits can help to find where potential problems exist before these protocols are released. Furthermore, it’s important to try to understand how multiple contracts will interact together when they go live, as some issues only arise when they are used in the wild.

Any deployed contract will have risk factors that should be monitored and defended against. However, many development teams do not have a robust security monitoring solution in place. Often, the first sign that something problematic is happening comes from an on-chain diagnosis. Massive or unusual transactions and other uncommon transaction patterns can point to an attack that is happening in real-time. Being able to spot and understand these signals is key to staying on top of them.

Related: Biden‘s anemic crypto framework offered nothing new

Of course, there also needs to be a system in place for documenting and recording events and communicating the most important information to the correct entities. Some alerts can be sent to the developer team and others can be made available to the community. With a community thus informed, better security can come in a manner that aligns with the decentralized ethos rather than it being relegated to a function of a judicial review.

Let’s look back at the Ronin hack as an example. It took a full six days for the team behind the project to realize an attack had occurred, only becoming aware when a user complained that they were unable to withdraw funds. If real-time monitoring of the network had been in place, a response could have happened almost instantly when the first large, suspicious transaction occurred. Instead, nobody noticed for almost a week, giving the attacker ample time to continue to move funds and obscure their history.

It seems fairly obvious that reversible tokens wouldn’t have helped this situation much, but monitoring could have. By the time it was noticed, many of the stolen coins had been transferred repeatedly across wallets and exchanges. Could all of these transactions just be reversed? The complexities introduced, as well as the possible new risks created, mean that this endeavor simply isn’t worth the effort. Especially when you consider that powerful mechanisms already exist that can offer a similar level of security and accountability.

Instead of messing with the formula that makes crypto so powerful, it would make much more sense to implement comprehensive and continuous security processes across Web3 so that decentralized assets remain immutable but not unprotected.

Stephen Lloyd Webber is a software engineer and author with diverse experience in simplifying complex situations. He is fascinated by open source, decentralization and anything on the Ethereum blockchain. Stephen is currently working in product marketing at Open Zeppelin, a premier crypto cybersecurity technology and services company, and has an MFA in English writing from New Mexico State University.

This article is for general information purposes and is not intended to be and should not be taken as legal or investment advice. The views, thoughts, and opinions expressed here are the author’s alone and do not necessarily reflect or represent the views and opinions of Cointelegraph.


Credit Source link

Share76Tweet47Pin17
ADVERTISEMENT

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Bitcoin stays out of fear for 11 straight days as price tips near 24K

January 30, 2023

Panama’s Supreme Court to rule on cryptocurrency legislation

January 29, 2023

LTC, AVAX, APT and FTM prepare to rally as Bitcoin price targets $24K

January 29, 2023

North Korean hackers launder $27M ETH from Harmony Bridge attack

January 29, 2023

Bitcoin eyes $25K as BTC price nears best weekly close in 5 months

January 29, 2023

South Korea to deploy cryptocurrency tracking system in 2023

January 29, 2023
Litecoin.is

Litecoin.is an online NEWS portal which aims to provide the latest trendy news around the crypto market and much more exciting stuff.

Topic to cover

  • Bitcoin
  • Blockchain
  • Litecoin

Whats NEW here?

  • Bitcoin stays out of fear for 11 straight days as price tips near 24K
  • Panama’s Supreme Court to rule on cryptocurrency legislation
  • LTC, AVAX, APT and FTM prepare to rally as Bitcoin price targets $24K

  • Coin Market Cap
  • Contact Us
  • Privacy & Policy

© 2019 Litecoin.is – All about Litecon NEWS and more!

No Result
View All Result
  • Home
  • Litecoin
  • Bitcoin
  • Blockchain
  • Coin Market Cap
  • Exchange
  • ICO

© 2019 Litecoin.is All about Litecoin And Crypto News!.

  • bitcoinBitcoin(BTC)$19,250.833.07%
  • ethereumEthereum(ETH)$1,358.003.92%
  • rippleXRP(XRP)$0.3813088.12%
  • eosEOS(EOS)$1.282.06%
  • litecoinLitecoin(LTC)$51.761.43%
  • bitcoin-cashBitcoin Cash(BCH)$113.324.05%
  • tetherTether(USDT)$1.00-0.10%
  • stellarStellar(XLM)$0.1139018.92%
  • BNBBNB(BNB)$270.092.98%
  • tronTRON(TRX)$0.0603480.86%
  • cardanoCardano(ADA)$0.4463511.22%
  • Bitcoin SVBitcoin SV(BSV)$49.031.36%
  • iotaIOTA(MIOTA)$0.2585842.18%
  • moneroMonero(XMR)$141.832.59%
  • dashDash(DASH)$40.782.33%
  • neoNEO(NEO)$8.361.48%
  • ontologyOntology(ONT)$0.2193911.69%
  • nemNEM(XEM)$0.0402771.55%
  • zcashZcash(ZEC)$54.733.31%
  • USD CoinUSD Coin(USDC)$1.00-0.11%
  • dogecoinDogecoin(DOGE)$0.0584512.69%
  • bitcoin-goldBitcoin Gold(BTG)$21.432.68%