Polygon (MATIC) double spend bug yields $2 million bounty for developer

Karthik Subramanian

Polygon, the Layer 2 solution on top of Ethereum, has recently paid out the highest ever bug bounty in history to a whitehat developer Gerhard Wagner for pointing out a double-spend bug in the network which could have resulted in huge losses if it had been exploited.

polygon

In a further sign of how even the best networks can continue to have vulnerabilities that lie undetected for weeks and months, it has been reported that Gerhard had noticed a critical vulnerability on October 5, 2021, on the Polygon Plasma Bridge. This could have put around $850 million at risk if it had been noticed and exploited by hackers but it is to the credit of Gerhard that he, along with Immunefi, chose to escalate it to the Polygon team. This is also a further validation on why companies need to have bug bounty programs as it encourages good developers and hackers to test out the security of the network and point out the vulnerabilities to the network providers for analysis and fixing and the developers themselves get rewarded by the network for the same, and in this case, the developer was rewarded handsomely.

Once the bug was informed to Polygon, it confirmed the bug within 30 minutes and it set about to fix the issue as soon as possible. As the funds at risk were huge, it was calculated that the bug bounty should be the maximum which is $2 million. The whitehat Gerhard received the bounty and the whole process, including the reporting, bounty payout, bug fix, and deployment into the main net was completed within a week. It is to the credit of all involved that things moved quickly before any damage was made.

Blockchain and crypto networks continue to be at risk from time to time due to such vulnerabilities but truth be told, with digitalization taking over the financial industry, this risk is likely to be there in all systems shortly. There cannot be a single, universal fix for this risk and the businesses and networks need to learn to live with it which is why it is important to have tight and closed-loop processes built with security companies as well, to ensure that such vulnerabilities are handled effectively in the long term thereby reducing the losses along the way.

Read this next

Chainwire

Bandit Network’s Points SDK and Brave Ads Power Astar zkEVM’s Quest Platform “Yoki Origins”

“Yoki Origins,” supported by Bandit Network and Brave Ads, introduces a gamified and rewarding experience for Astar zkEVM users, marking a significant milestone in Web3 adoption.

Digital Assets

Crypto ETFs to debut in Hong Kong next week

Hong Kong has authorized six cryptocurrency-based spot ETFs set to launch on April 30, according to Bloomberg.

blockdag

BlockDAG Among The Best New Crypto To Invest In Post 8 Billion Coins Sales; More On Bitcoin Cash Futures’ Launch & Solana Positive Predictions

Explore Solana’s ATH predictions to see whether it can rise after a $17B dip? BlockDAG sells 8 billion coins in presale as Bitcoin Cash Futures launch.

Fundamental Analysis, Market News, Tech and Fundamental

Global FX Market Summary:USD, FED, German IFO ,Gold April 24 ,2024

Mixed US economic data and Fed rate hike uncertainty are causing volatility in the EUR/USD pair, while the Eurozone and gold prices add another layer of complexity.

Market News, Tech and Fundamental, Technical Analysis

EURCHF Technical Analysis Report 24 April, 2024

EURCHF currency pair can be expected to rise further toward the next major resistance level 0.9840, which stopped the pervious waves C and B, as can be seen below.

Digital Assets

Binance’s CZ could stay in prison until 2027, wife begs for mercy

Changpeng “CZ” Zhao, the founder and former CEO of Binance, has apologized for his decisions and accepted “full responsibility” in a letter to U.S. District Judge Richard A. Jones.

Digital Assets

Monex Group expands crypto business with 3iQ takeover

Monex Group has completed the acquisition of a majority stake in 3iQ Digital Holdings, Inc., a Canadian digital asset investment fund manager, as part of its strategy to expand its crypto business.

Education, Fintech, Inside View

How to Get Into Fintech: Best Tips to Succeed

The Fintech sector is experiencing significant growth, with fresh opportunities emerging rapidly.  Innovations such as machine learning and cryptocurrency are revolutionising finance, leading to a need for trained experts.

Digital Assets

FalconX launches Prime Connect on Deribit

“We are pleased to launch Prime Connect with Deribit and look forward to providing our full suite of prime services which allow institutions to confidently scale their digital assets portfolios while trading on exchanges.”

<