{"id":3270,"date":"2021-12-30T04:26:58","date_gmt":"2021-12-30T04:26:58","guid":{"rendered":"http:\/\/egrowonline.com\/?p=3270"},"modified":"2021-12-30T04:26:58","modified_gmt":"2021-12-30T04:26:58","slug":"polygon-upgrade-quietly-fixes-bug-that-put-24b-of-matic-at-risk","status":"publish","type":"post","link":"http:\/\/egrowonline.com\/?p=3270","title":{"rendered":"Polygon upgrade quietly fixes bug that put $24B of MATIC at risk"},"content":{"rendered":"<p> <br \/>\n<br \/><img decoding=\"async\" src=\"https:\/\/images.cointelegraph.com\/images\/840_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjEtMTIvZTQzN2QxNjctMjE0Mi00YTAzLTgwYjAtNGVmZmE3ZDk5N2ZiLmpwZw==.jpg\" \/><\/p>\n<div data-v-128018ef=\"\">\n<p>Ethereum-based layer two scaling network Polygon has quietly fixed a vulnerability that put almost $24 billion worth of its native token MATIC at risk. <\/p>\n<p>According to a Dec. 29 blog post from Polygon, the \u201ccritical\u201d vulnerability in the network\u2019s Proof-of-Stake (PoS) Genesis contract was first highlighted by two whitehat hackers on Dec. 3 and Dec. 4 via <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/immunefi-to-bolster-defi-security-service-with-new-funds\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/immunefi-to-bolster-defi-security-service-with-new-funds\/amp\" rel=\"noopener\">blockchain security<\/a> and bug bounty hosting platform Immunefi.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">All you need to know about the recent Polygon network update.<br \/>&#x2705;A security partner discovered a vulnerability<br \/>&#x2705;Fix was immediately introduced<br \/>&#x2705;Validators upgraded the network<br \/>&#x2705;No material harm to the protocol\/end-users<br \/>&#x2705;White hats were paid a bounty <a target=\"_blank\" href=\"https:\/\/t.co\/oyDkvohg33\" rel=\"noopener\">https:\/\/t.co\/oyDkvohg33<\/a><\/p>\n<p>\u2014 Polygon | $MATIC  (@0xPolygon) <a target=\"_blank\" href=\"https:\/\/twitter.com\/0xPolygon\/status\/1476032036804513792?ref_src=twsrc%5Etfw\" rel=\"noopener\">December 29, 2021<\/a><\/p><\/blockquote>\n<p>The vulnerability put more than 9.27 billion <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/polygon-price-index\" rel=\"noopener\">MATIC<\/a> at risk that is valued at around $23.6 billion at the time of writing, with the figure representing the vast majority of the token\u2019s total supply of 10 billion. <\/p>\n<p>Polygon noted that the bug was resolved at Block #22156660 via an \u201cEmergency Bor Upgrade\u201d to the Mainnet on Dec. 5 at around 7:27 am UTC. The network noted that a \u201cmalicious hacker\u201d managed to steal 801,601 MATIC ($2.04 million) before the bug was resolved. The blog post said:<\/p>\n<blockquote><p>\u201cThe Polygon core team engaged with the group and Immunefi\u2019s expert team  and immediately introduced a fix. The validator and full node communities were notified, and they rallied behind the core devs to upgrade 80% of the network within 24 hours without stoppage.\u201d<\/p><\/blockquote>\n<p>Polygon stated that the issue was fixed behind closed doors as it follows the \u201csilent patches\u201d policy introduced by the Go Ethereum (Geth) team in November 2020. Under the guidelines, projects or developers report on key bug fixes 4-8 weeks after they go live to avoid the risk of being exploited at the time of patching. <\/p>\n<p>According to <a target=\"_blank\" href=\"https:\/\/medium.com\/immunefi\/polygon-lack-of-balance-check-bugfix-postmortem-2-2m-bounty-64ec66c24c7d\" rel=\"noopener nofollow\">Immunefi<\/a>, Whitehat hacker \u201cLeon Spacewalker\u201d was the first to report on the security hole on Dec. 3 and will be rewarded with $2.2 million worth of stablecoins for their efforts, while the second unnamed hacker, referred  to as \u201cWhitehat2\u201d will receive 500,000 MATIC ($1.27 million) from Polygon.<\/p>\n<p><strong><em>Related: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/here-s-how-polygon-is-challenging-the-limitations-of-ethereum-as-told-by-co-founder-sandeep-nailwal\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/here-s-how-polygon-is-challenging-the-limitations-of-ethereum-as-told-by-co-founder-sandeep-nailwal\/amp\" rel=\"noopener\"><strong><em>Here&#8217;s how Polygon is challenging the limitations of Ethereum, as told by co-founder Sandeep Nailwal<\/em><\/strong><\/a><\/p>\n<p><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/synthetic-asset-protocol-for-polygon-raises-1-5m-from-major-investors\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/synthetic-asset-protocol-for-polygon-raises-1-5m-from-major-investors\/amp\" rel=\"noopener\">Polygon&#8217;s co-founder J<\/a>aynti Kanani emphasized the <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/here-s-how-polygon-is-challenging-the-limitations-of-ethereum-as-told-by-co-founder-sandeep-nailwal\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/here-s-how-polygon-is-challenging-the-limitations-of-ethereum-as-told-by-co-founder-sandeep-nailwal\/amp\" rel=\"noopener\">network&#8217;s ability<\/a> to promptly resolve the critical bug, noting in the blog post that: <\/p>\n<blockquote><p>\u201cWhat\u2019s important is that this was a test of our network\u2019s resilience as well as our ability to act decisively under pressure. Considering how much was at stake, I believe our team has made the best decisions possible given the circumstances.\u201d<\/p><\/blockquote>\n<p>According to data from Coingecko, MATIC is priced at $2.45 and is up 35.1% over the past 30 days despite the current downturn across major crypto assets this month. <\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/cointelegraph.com\/news\/polygon-upgrade-quietly-fixes-bug-that-put-24b-of-matic-at-risk\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ethereum-based layer two scaling network Polygon has quietly fixed a vulnerability that put almost $24 billion worth of its native token MATIC at risk. According to a Dec. 29 blog post from Polygon, the \u201ccritical\u201d vulnerability in the network\u2019s Proof-of-Stake (PoS) Genesis contract was first highlighted by two whitehat hackers on Dec. 3 and Dec. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":3271,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[41],"tags":[2732,2731,1023,313,1219,1352,2709,1500,503],"class_list":["post-3270","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ethereum","tag-24b","tag-bug","tag-fixes","tag-matic","tag-polygon","tag-put","tag-quietly","tag-risk","tag-upgrade"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"http:\/\/egrowonline.com\/wp-content\/uploads\/2021\/12\/1200_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjEtMTIvZTQzN2QxNjctMjE0Mi00YTAzLTgwYjAtNGVmZmE3ZDk5N2ZiLmpwZw.jpg","_links":{"self":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/3270","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=3270"}],"version-history":[{"count":1,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/3270\/revisions"}],"predecessor-version":[{"id":3272,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/3270\/revisions\/3272"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/media\/3271"}],"wp:attachment":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=3270"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=3270"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=3270"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}