Augur project tokens reveal a serious vulnerability

31 July 2017, 01:16 | Technologies
photo InternetUA
Text Size:

In the Serpent language, on which the Augur smart projects are written, a serious vulnerability has been identified that threatens tokens REP. The problem was discovered by researchers on the security of smart contracts Zeppelin Solutions during the audit conducted for Augur.

According to the Augur predictions market team, by exploiting a buffer overflow vulnerability, attackers could change the timestamp for creating tokens on a date in the future and thereby prevent the transfer of tokens. The vulnerability has already been fixed.

Deliberately taking advantage of the vulnerability, the Augur team increased the creation of a timestamp by 31 billion years. At the same time, the old REP contract was frozen.

The team announced the transition to new smart contracts, which are written in the language of Solidity, based on contracts for ERC20 standard tokens, developed by OpenZeppelin. A number of exchanges and purses have already confirmed the transition to new software, including Poloniex, Kraken, Bittrex, Liqui, Bity, Gatecoin, BTER, Mr. Ripple, GateHub, HitBTC, BX. In. Th, ShapeShift, Changelly, EtherScan, Exodus, Jaxx, Parity, MyEtherWallet, MetaMask, OASIS, EtherDelta and CryptoDerivatives.

Recall last week a vulnerability in Ethereum-purse Parity led to the theft of the order of $ 30 million in the equivalent of crypto currency Ethereum.

Augur - an open decentralized market for predictions based on the Ethereum network.

Using REP tokens, users predict real-world events and are rewarded for correct predictions.

Smart contract is an electronic algorithm that describes a set of conditions, the implementation of which entails some events in the real world or digital systems. For the implementation of smart contracts requires a decentralized environment that completely excludes the human factor, and for the possibility of using a smart contract for the transfer of value, you need a crypto currency.




Add a comment
:D :lol: :-) ;-) 8) :-| :-* :oops: :sad: :cry: :o :-? :-x :eek: :zzz :P :roll: :sigh:
 Enter the correct answer