• Latest
‘Critical’ Vulnerability in Beam Wallet Could Have Put Funds At Risk, Devs Say After Fix

‘Critical’ Vulnerability in Beam Wallet Could Have Put Funds At Risk, Devs Say After Fix

January 16, 2019
ygg sea surpasses 10,000 scholarships in just six months of launch

YGG SEA Surpasses 10,000 Scholarships in Just Six Months of Launch

May 6, 2022
mintable launches industry changing gas free minting service on ethereum

Mintable Launches Industry Changing Gas Free Minting Service on Ethereum

May 1, 2022
5 projects enabling smart contract development on bitcoin

5 Projects Enabling Smart Contract Development on Bitcoin

April 29, 2022
bitcoin atm installed in mexico's senate building

Bitcoin ATM installed in Mexico’s Senate Building

April 27, 2022
cross chain services play a crucial role in facilitating continued adoption of defi applications

Cross-Chain Services Play a Crucial Role in Facilitating Continued Adoption of DeFi Applications

April 26, 2022
justin sun launches usdd, integrating the blockchain world and the real world with the decentralized stablecoin

Justin Sun Launches USDD, Integrating the Blockchain World and the Real World with the Decentralized Stablecoin

April 25, 2022
nfts: the next musical revolution

NFTs: The Next Musical Revolution

April 24, 2022
things you should know before investing in nfts

Things You Should Know Before Investing in NFTs

April 24, 2022
what are wrapped tokens?

What Are Wrapped Tokens?

April 23, 2022
what is the future of ethereum (eth)?

What is the future of Ethereum (ETH)?

April 22, 2022
green gaming

Everything You Need to Know About Play-to-Earn on Algorand in 2022

April 21, 2022
$ape going bananas as rumors of upcoming land sale of bayc metaverse gather momentum

$APE Going Bananas As Rumors of Upcoming Land Sale of BAYC Metaverse Gather Momentum

April 21, 2022
  • Home
  • Coin Market Cap
  • Bitcoin
  • Ethereum
  • Ripple
  • Litecoin
  • Alt Coin
  • Business
  • Trading
  • Mining
CoinNewsDaily
  • Home
  • Coin Market Cap
  • Bitcoin
  • Ethereum
  • Ripple
  • Litecoin
  • Alt Coin
  • Business
  • Trading
  • Mining
No Result
View All Result
  • Home
  • Coin Market Cap
  • Bitcoin
  • Ethereum
  • Ripple
  • Litecoin
  • Alt Coin
  • Business
  • Trading
  • Mining
No Result
View All Result
CoinNewsDaily
No Result
View All Result
Home Tech

‘Critical’ Vulnerability in Beam Wallet Could Have Put Funds At Risk, Devs Say After Fix

coinnewsdaily by coinnewsdaily
January 16, 2019
in Tech
0
‘Critical’ Vulnerability in Beam Wallet Could Have Put Funds At Risk, Devs Say After Fix
190
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter

Related articles

ygg sea surpasses 10,000 scholarships in just six months of launch

YGG SEA Surpasses 10,000 Scholarships in Just Six Months of Launch

May 6, 2022
5 projects enabling smart contract development on bitcoin

5 Projects Enabling Smart Contract Development on Bitcoin

April 29, 2022

Developers behind the privacy-focused cryptocurrency Beam have revealed that the “critical” bug discovered and subsequently fixed in their wallet software last week could have put user funds directly at risk.

As stated in a Medium post published today, the vulnerability would have allowed an attacker to create “modified transactions” and subsequently send funds directly into the attacker’s wallet.

In an exclusive interview with CoinDesk, Beam CTO Alex Romanov explained that by leveraging Beam’s Secure Bulletin Board System (SBBS) – a custom-built system to enable offline encrypted messaging between Beam wallets – attackers “currently listening in on active SBBS addresses … would be able to cause these wallets to send money to an attacker.”

Romanov stressed that the issue was application-specific and in no way related to the privacy-enhancing technology mimblewimble, saying:

“The vulnerability is not related to mimblewimble or cryptography or any underlying technology. Basically, it’s a bug in the application itself … It just affected the wallets because it would be possible to create this specific transaction.”

And though the existence of the vulnerability was disclosed to the public the same day it was found by Beam’s internal development team, the exact nature of the threat was not made public until today.

The reason for this according to Romanov was to prevent opening up any “possible attack vectors” for users who had not seen the announcement of the vulnerability last Wednesday.

Elaborating that people are “not online all the time, sometimes there are time differences, people may be asleep,” Romanov told CoinDesk that withholding further details was a way to buy time for users “especially pools and exchanges” to implement the code fix.

Speaking to the issued patch, Romanov explained that the fix was relatively simple.

“We have just prevented this specific scenario in which this custom transaction would have been accepted by a running wallet and that’s it,” said Romanov to CoinDesk.

The next upgrade

Beam officially launched on Thursday, January 3. Since that point, Romanov said that feedback from users is already being worked into a new upgrade for the Beam software currently being tested and set for release “in the next couple days.”

“We have taken into consideration all the issues raised by users, all the requests, all the misunderstanding that in retrospect was pretty obvious because mimblewimble is a very new technology … and we have created an update which will improve the user experience,” said Romanov.

Calling it version 1.0.1, Romanov highlighted that use of Beam systems as a result of mimblewimble has caused “pools and also exchanges to significantly modify the way they operate and the way they handle transactions.”

“There were a lot of learning curves from all sides … [The update] will reduce the amount of potential misunderstandings or problems. Sometimes, even though the system functions properly, it’s not clear for the [user] what is happening,” Romanov told CoinDesk:

Wallet image via Shutterstock

This article and its headline have been updated for clarity.



Credit: Source link

Tags: Crypto Tech
Share76Tweet48
Previous Post

Regulatory Certainty is Problem for XRP’s Growth

Next Post

New WordPress Publishing Platform Will Offer Blockchain Features

coinnewsdaily

coinnewsdaily

CoinNewsDaily.com is an online Crypto Coin News Website that aims to provide latest trendy news from market and around the world.

Related Posts

ygg sea surpasses 10,000 scholarships in just six months of launch
Alt Coin

YGG SEA Surpasses 10,000 Scholarships in Just Six Months of Launch

May 6, 2022
5 projects enabling smart contract development on bitcoin
Alt Coin

5 Projects Enabling Smart Contract Development on Bitcoin

April 29, 2022
bitcoin atm installed in mexico's senate building
Bitcoin

Bitcoin ATM installed in Mexico’s Senate Building

April 27, 2022
cross chain services play a crucial role in facilitating continued adoption of defi applications
Alt Coin

Cross-Chain Services Play a Crucial Role in Facilitating Continued Adoption of DeFi Applications

April 26, 2022
green gaming
Business

Everything You Need to Know About Play-to-Earn on Algorand in 2022

April 21, 2022
axie infinity: what are the minimum android phone requirements to play on mobile
Alt Coin

Axie Infinity: What Are the Minimum Android Phone Requirements to Play on Mobile

April 21, 2022
Load More
Next Post
New WordPress Publishing Platform Will Offer Blockchain Features

New Wordpress Publishing Platform Will Offer Blockchain Features

Categories

  • Alt Coin
  • Bitcoin
  • Business
  • Ethereum
  • ICO
  • Litecoin
  • Mining
  • NFT
  • Ripple
  • Tech
  • Trading

What New here?

  • YGG SEA Surpasses 10,000 Scholarships in Just Six Months of Launch
  • Mintable Launches Industry Changing Gas Free Minting Service on Ethereum
  • 5 Projects Enabling Smart Contract Development on Bitcoin

Subscribe to Get More!

Loading
  • About Us
  • Contact Us
  • Privacy & Policy

© 2018-2021 CoinNewsDaily.com by CoinNewsDaily Inc. Crafted with Love by iFtiDev

No Result
View All Result
  • Home
  • Coin Market Cap
  • Bitcoin
  • Ethereum
  • Ripple
  • Litecoin
  • Alt Coin
  • Business
  • Trading
  • Mining

© 2018-2021 CoinNewsDaily.com by CoinNewsDaily Inc. Crafted with Love by iFtiDev

  • bitcoinBitcoin(BTC)$22,958.00-0.13%
  • ethereumEthereum(ETH)$1,577.85-1.70%
  • tetherTether(USDT)$1.000.02%
  • binancecoinBNB(BNB)$305.150.29%
  • rippleXRP(XRP)$0.408373-0.93%
  • cardanoCardano(ADA)$0.3772940.73%
  • dogecoinDogecoin(DOGE)$0.085591-0.48%
  • matic-networkPolygon(MATIC)$1.087.66%
  • solanaSolana(SOL)$23.69-2.74%
  • okbOKB(OKB)$35.51-0.48%
  • polkadotPolkadot(DOT)$6.420.90%
  • shiba-inuShiba Inu(SHIB)$0.000012-0.42%
  • litecoinLitecoin(LTC)$87.65-0.89%
  • tronTRON(TRX)$0.0623140.80%
  • daiDai(DAI)$1.00-0.66%
  • cosmosCosmos Hub(ATOM)$12.99-1.89%
  • leo-tokenLEO Token(LEO)$3.858.38%
  • chainlinkChainlink(LINK)$7.244.97%
  • moneroMonero(XMR)$173.87-1.16%
  • ethereum-classicEthereum Classic(ETC)$21.64-1.38%
  • bitcoin-cashBitcoin Cash(BCH)$135.073.00%
  • stellarStellar(XLM)$0.091409-0.12%
  • crypto-com-chainCronos(CRO)$0.080279-0.45%
  • filecoinFilecoin(FIL)$5.32-0.16%
  • algorandAlgorand(ALGO)$0.2480401.60%
  • vechainVeChain(VET)$0.0239553.44%
  • internet-computerInternet Computer(ICP)$5.870.60%
  • aaveAave(AAVE)$86.660.35%
  • eosEOS(EOS)$1.101.45%
  • theta-tokenTheta Network(THETA)$1.115.36%
  • elrond-erd-2MultiversX(EGLD)$43.45-0.85%
  • tezosTezos(XTZ)$1.100.37%
  • paxos-standardPax Dollar(USDP)$1.000.16%
  • bitcoin-cash-svBitcoin SV(BSV)$44.14-0.75%
  • huobi-tokenHuobi(HT)$5.04-0.25%
  • havvenSynthetix Network(SNX)$2.471.53%
  • iotaIOTA(MIOTA)$0.2405656.33%
  • pancakeswap-tokenPancakeSwap(CAKE)$3.960.45%
  • zcashZcash(ZEC)$45.751.96%
  • makerMaker(MKR)$654.06-1.38%
  • neoNEO(NEO)$8.180.74%
  • dashDash(DASH)$51.041.61%
  • zilliqaZilliqa(ZIL)$0.0283792.70%
  • basic-attention-tokenBasic Attention(BAT)$0.2632260.92%
  • compound-governance-tokenCompound(COMP)$53.985.67%
  • nemNEM(XEM)$0.0390862.82%
  • Elrond ERDElrond ERD(ERD)$0.0259290.00%
  • kusamaKusama(KSM)$35.092.97%
  • bitcoin-goldBitcoin Gold(BTG)$17.24-6.84%
  • qtumQtum(QTUM)$2.660.85%
  • wavesWaves(WAVES)$2.6414.89%
  • ftx-tokenFTX(FTT)$1.89-21.50%
  • sushiSushi(SUSHI)$1.310.87%
  • yearn-financeyearn.finance(YFI)$7,503.11-0.62%
  • golemGolem(GLM)$0.2450603.47%
  • omisegoOMG Network(OMG)$1.481.52%
  • ontologyOntology(ONT)$0.2176760.93%
  • digibyteDigiByte(DGB)$0.010824-2.85%
  • umaUMA(UMA)$2.03-3.42%
  • ethlendAave [OLD](LEND)$0.53-3.08%
  • UniswapUniswap(UNI)$2.4438.80%