Solana developers address critical vulnerability with coordinated patch

Solana developers address critical vulnerability with coordinated patch

Reported by The Block: Solana developers, validators, and client teams worked together to address a critical security vulnerability.

The developers ensured a supermajority of the network stake was patched before public disclosure.

Solana developers, validators, and client teams addressed a critical security vulnerability by securing a supermajority of its network stake before publicly disclosing the issue.

The process started on Wednesday, Aug. 7, 2024, when the Solana Foundation contacted known network operators through private channels, according to Solana validator Laine. This initial contact was part of a strategy to patch the vulnerability discreetly so it couldn’t be exploited in any way.

Laine added that the patch, made available via an Anza engineer's GitHub repository, enabled operators to independently verify and apply the changes. By Thursday, Aug. 8 at 14:00 UTC, detailed instructions for implementing the patch were distributed to various stakeholders, resulting in 66.6% of the network’s stake being secured.

The vulnerability was publicly disclosed after 70% of the network had implemented the patch. Then, Solana Labs issued a Discord announcement urging all remaining operators to update their systems. The statement read: “Core contributors have identified a network security issue that requires an urgent response. v1.18.21 with a patch will be available in 30 minutes. Please be prepared to upgrade as soon as the announcement is sent.”

Source

Solana

In This Article

Related News
Canada to launch spot Solana ETFs this week: report Canada to launch spot Solana ETFs this week: report
Solana's key SIMD-228 proposal fails to pass validator vote, token emissions unchanged Solana's key SIMD-228 proposal fails to pass validator vote, token emissions unchanged
Transaction fees generated on Solana network fall to lowest weekly amount since September Transaction fees generated on Solana network fall to lowest weekly amount since September
Chainalysis expands Solana coverage to include Pump.fun memecoins Chainalysis expands Solana coverage to include Pump.fun memecoins
Solana climbs above $200, bitcoin hits new high amid extended post-election rally Solana climbs above $200, bitcoin hits new high amid extended post-election rally
Latest News More More
1 Day Ago Eliza Labs unveils auto.fun, a no-code AI agent launchpad with 'fairer than fair' token model
1 Day Ago Non-KYC exchange eXch to close down under money laundering scrutiny tied to Lazarus Group
1 Day Ago Base scrutinized over promotion of token that briefly crashed 95%; says part of 'contentcoin' vision
3 Days Ago Layer 1 MANTRA's token falls 90% in sudden crash; team blames 'reckless liquidations'
April 10 Quantum Cats NFT floor price plunges 54% post-Taproot Wizards mint
delate
Use TokenInsight App All Crypto Insights Are In Your Hands
Open