Bitcoin
BTC$20 343.76

0.74%

Ethereum
ETH$1 371.86

1.23%

Tether
USDT$1.000141

-0.01%

Binance Coin
BNB$296.37

0.50%

USD Coin
USDC$0.999980

0.01%

XRP
XRP$0.496669

4.51%

Patched vulnerability could’ve crippled ETH over the past 2 years


19 May 2021

#Ethereum

The Ethereum Foundation has come clean about a security vulnerability first spotted in 2019 that could have brought the mainnet to a halt until the Berlin upgrade last month. The Ethereum Foundation has published a blog post outlining a potentially catastrophic vulnerability that could have resulted in the mainnet being brought down at a cost of less than five-figures up until the execution of the Berlin hardfork last month.

A May 18 blog post describes the vulnerability as having posed “a severe threat against the Ethereum platform” until April’s upgrades allowed it to dodge the bullet. The report describes the threat as having been an “open secret,” noting it was once publicly disclosed by mistake. Following the implementation of the Berlin hard fork, the foundation estimates the threat is low enough to warrant full disclosure at this time, stating:

“It’s important that the community is given a chance to understand the reasoning behind changes that negatively affect the user experience, such as raising gas costs and limiting refunds.”

The post details that Ethereum’s state consists of a patricia-merkle trie, conceptually likening new accounts on the Ethereum network to new leaves growing on a tree. With the growth of the Ethereum network, increases to gas costs have been implemented from October 2016 to protect against denial-of-service attacks, including the controversial Ethereum Improvement Proposal, or EIP-1884. In 2019, Ethereum security researchers Hubert Ritzdorf, Matthias Egli, and Daniel Perez teamed up to weaponize an exploit enabled by the recent upgrades, with the attack triggering random trie lookups that could “lead to blocktimes in the minute-range.” A report published that year stated that delays caused by the attack will become longer as Ethereum’s state grows, “which allows efficient DoS attacks against Ethereum.”

After various proposals from developers were rejected throughout 2020, Vitalik Buterin teamed up with Martin Swende to author EIP-2929 and EIP-2930 — upgrades that raised gas prices “only for things not already accessed” to prevent the attack. The EIPs were introduced alongside the Berlin upgrade on April 15, 2021. As such, the blog estimates the Berlin upgrade reduced the effectiveness of the exploit by 50 times.

Ethereum is not the only network to come clean about long-term vulnerabilities after implementing upgrades to protect against said exploits. In September 2020, crypto researchers Braydond Fuller and Javed Khan published a paper revealing a “high” severity vulnerability for layer-two solutions built on top of BTC such as the Lightning Network. Despite the vulnerability being introduced and the authors estimating 50% of Bitcoin nodes were exposed to the vector, the authors did not identify any attempts at exploiting the weakness.


Related

Cryptocurrencies need a driver
Cryptocurrencies need a driver
Ethereum is gaining 3.5% overnight to $1330
Ethereum is gaining 3.5% overnight to $1330
ETH After the Merge: Fall Instead of Growth
ETH After the Merge: Fall Instead of Growth
Ethereum Merge to swamp other coins with miners
Ethereum Merge to swamp other coins with miners
All Hope for Ethereum
All Hope for Ethereum
ETH price outlook for The Merge: Bullish or bearish?
ETH price outlook for The Merge: Bullish or bearish?
Ether fights for the trend
Ether fights for the trend
ETH whales move holdings onto exchanges before Merge
ETH whales move holdings onto exchanges before Merge
If the fork is unsuccessful, ETH could fall sharply but hold above $800
If the fork is unsuccessful, ETH could fall sharply but hold above $800

Top Cryptocurrencies with Price Predictions

# Crypto Prediction Accuracy CVIX Price 24h 7d Market Cap 7d price change
1 Bitcoin (BTC) BTC Bitcoin predictions 87.2% 21 $20 343.76 0.74% 4.35% $390 002 144 811 BTC 7 days price change
2 Ethereum (ETH) ETH Ethereum predictions 60.8% 78 $1 371.86 1.23% 2.24% $168 287 742 378 ETH 7 days price change
3 Tether (USDT) USDT Tether predictions 94% 1 $1.000141 -0.01% 0.01% $68 222 178 413 USDT 7 days price change
4 Binance Coin (BNB) BNB Binance Coin predictions 82.8% 21 $296.37 0.50% 4.40% $47 815 124 698 BNB 7 days price change
5 USD Coin (USDC) USDC USD Coin predictions 92.8% 1 $0.999980 0.01% -0.02% $46 433 199 437 USDC 7 days price change
6 XRP (XRP) XRP XRP predictions 61.6% 85 $0.496669 4.51% 12.60% $24 763 202 282 XRP 7 days price change
7 Binance USD (BUSD) BUSD Binance USD predictions 93.6% 1 $1.000043 0.05% 0.03% $21 043 130 520 BUSD 7 days price change
8 Cardano (ADA) ADA Cardano predictions 74.8% 42 $0.434909 0.55% -0.40% $14 899 368 238 ADA 7 days price change
9 Solana (SOL) SOL Solana predictions 86.8% 21 $34.30 0.54% 1.72% $12 185 648 954 SOL 7 days price change
10 Lido stETH (STETH) STETH Lido stETH predictions 94.8% 1 $2 941.39 -0.40% -3.32% $10 258 752 564 STETH 7 days price change
11 Dogecoin (DOGE) DOGE Dogecoin predictions 84.4% 21 $0.066218 1.79% 8.97% $8 785 142 892 DOGE 7 days price change
12 Polygon (MATIC) MATIC Polygon predictions 72% 56 $0.846366 0.82% 12.86% $7 392 430 810 MATIC 7 days price change
13 Polkadot (DOT) DOT Polkadot predictions 73.2% 59 $6.48 1.22% 0.75% $7 283 638 838 DOT 7 days price change
14 Dai (DAI) DAI Dai predictions 93.6% 1 $0.999775 0.01% 0.02% $6 788 649 987 DAI 7 days price change
15 Wrapped TRON (WTRX) WTRX Wrapped TRON predictions 93.6% 5 $0.062676 0.57% 4.44% $6 372 618 183 WTRX 7 days price change

Be the first to receive Cryptocurrency Price Predictions and Forecasts daily

Get cryptocurrency price predictions, forecasts with analysis and news right to your inbox.

© 2015-2022 Crypto-Rating.com

The usage of this website constitutes acceptance of the following legal information. Any contracts of financial instruments offered to conclude bear high risks and may result in the full loss of the deposited funds. Prior to making transactions one should get acquainted with the risks to which they relate. All the information featured on the website, including information about the cryptocurrencies and bitcoin is intended solely for informational purposes, is not a means of advertising them, and doesn't imply direct instructions for investing. Crypto Rating shall not be liable for any loss, including unlimited loss of funds, which may arise directly or indirectly from the usage of this information. The editorial staff of the website does not bear any responsibility whatsoever for the content of the comments or reviews made by the site users about cryptocurrencies. The entire responsibility for the contents rests with the authors. Reprint of the materials is available only with the permission of the editorial staff.