Experts find private keys on Slope servers, still puzzled over access

0

[ad_1]

Blockchain auditing firms are still trying to figure out how hackers gained access to about 8,000 private keys used to drain Solana-based wallets. 

Investigations are ongoing after attackers managed to steal some $5 million worth of Solana (SOL) and Solana Program Library (SPL) tokens on Wednesday. Ecosystem participants and security firms are assisting in uncovering the intricacies of the event.

Solana has worked closely with Phantom and Slope.Finance, the two Solana-based wallet providers that had user accounts affected by the exploits. It has since emerged that some of the private keys that were compromised were directly tied to Slope.

Blockchain audit and security firms Otter Security and SlowMist assisted in ongoing investigations and unpacked their findings in direct correspondence with Cointelegraph.

Otter Security founder Robert Chen shared insights from first-hand access to affected resources in collaboration with Solana and Slope. Chen confirmed that a subset of affected wallets had private keys that were present on Slope’s Sentry logging servers in plaintext:

“The working theory is that an attacker somehow exfiltrated these logs and were able to use this to compromise the users. This is still an ongoing investigation, and current evidence does not explain all of the compromised accounts.”

Chen also told Cointelegraph that some 5,300 private keys that were not a part of the exploit were found in the Sentry instance. Nearly half of these addresses still have tokens in them — with users urged to move funds if they have not done so already.

The SlowMist team came to a similar conclusion after being invited to analyze the exploit by Slope. The team also noted that the Sentry service of Slope Wallet collected the user’s mnemonic phrase and private key and sent it to o7e.slope.finance. Once again, SlowMist could not find any evidence explaining how the credentials were stolen.

Cointelegraph also reached out to Chainalysis, which confirmed that it was carrying out blockchain analysis on the incident after sharing initial findings online. The blockchain analysis firm also noted that the exploit mainly affected users that had imported accounts to or from Slope.Finance.

While the incident absolves Solana from bearing the brunt of the exploit, the situation has highlighted the need for auditing services of wallet providers. SlowMist recommended that wallets should be audited by multiple security companies before release and called for open source development to increase security.

Chen said that some wallet providers had “flown under the radar” when it came to security when compared to decentralized applications. He hopes to see the incident shift user sentiment toward the relationship between wallets and validation from external security partners.

[ad_2]

Source link

Leave A Reply

Your email address will not be published.

bitcoin
Bitcoin (BTC) $ 86,645.21
ethereum
Ethereum (ETH) $ 2,795.16
tether
Tether (USDT) $ 1.00
xrp
XRP (XRP) $ 2.00
bnb
BNB (BNB) $ 828.91
usd-coin
USDC (USDC) $ 0.999969
solana
Solana (SOL) $ 126.49
tron
TRON (TRX) $ 0.277006
staked-ether
Lido Staked Ether (STETH) $ 2,791.88
dogecoin
Dogecoin (DOGE) $ 0.134822
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.03
cardano
Cardano (ADA) $ 0.387014
whitebit
WhiteBIT Coin (WBT) $ 57.55
wrapped-steth
Wrapped stETH (WSTETH) $ 3,409.25
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 86,423.16
bitcoin-cash
Bitcoin Cash (BCH) $ 523.71
wrapped-beacon-eth
Wrapped Beacon ETH (WBETH) $ 3,024.91
usds
USDS (USDS) $ 0.999977
leo-token
LEO Token (LEO) $ 9.84
binance-bridged-usdt-bnb-smart-chain
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
hyperliquid
Hyperliquid (HYPE) $ 31.30
chainlink
Chainlink (LINK) $ 12.02
weth
WETH (WETH) $ 2,792.03
stellar
Stellar (XLM) $ 0.230681
monero
Monero (XMR) $ 389.90
wrapped-eeth
Wrapped eETH (WEETH) $ 3,022.37
ethena-usde
Ethena USDe (USDE) $ 0.999375
coinbase-wrapped-btc
Coinbase Wrapped BTC (CBBTC) $ 86,627.21
litecoin
Litecoin (LTC) $ 77.53
hedera-hashgraph
Hedera (HBAR) $ 0.131240
avalanche-2
Avalanche (AVAX) $ 12.95
zcash
Zcash (ZEC) $ 318.49
sui
Sui (SUI) $ 1.34
shiba-inu
Shiba Inu (SHIB) $ 0.000008
dai
Dai (DAI) $ 0.999775
world-liberty-financial
World Liberty Financial (WLFI) $ 0.154966
susds
sUSDS (SUSDS) $ 1.08
paypal-usd
PayPal USD (PYUSD) $ 0.999949
ethena-staked-usde
Ethena Staked USDe (SUSDE) $ 1.21
crypto-com-chain
Cronos (CRO) $ 0.101564
usdt0
USDT0 (USDT0) $ 0.999967
the-open-network
Toncoin (TON) $ 1.49
uniswap
Uniswap (UNI) $ 5.40
polkadot
Polkadot (DOT) $ 2.05
mantle
Mantle (MNT) $ 0.968429
usd1-wlfi
USD1 (USD1) $ 0.999483
canton-network
Canton (CC) $ 0.074997
aave
Aave (AAVE) $ 167.80
bittensor
Bittensor (TAO) $ 258.11
bitget-token
Bitget Token (BGB) $ 3.45
Shares