Security reminder: Beware of Filecoin RBF fake recharge attacks

Security reminder: Beware of Filecoin RBF fake recharge attacks

According to the news from SlowMist, Filecoin has a "double-spending transaction" and many exchanges have closed FIL recharge channels. The SlowMist security team analyzed the relevant information and found that this was a Filecoin RBF fake recharge attack rather than a "double-spending attack".

The attacker sends a low gas-feecap transaction in advance, and then replaces the original transaction (RBF transaction) by increasing the gas-premium and gas-feecap. At this time, the RBF transaction is packaged on the chain first, and the old transaction is discarded. However, due to a feature of Filecoin lotus RPC, when querying the execution status of the old transaction (using the lotus state exec-trace command or obtaining it through the REST interface Filecoin.StateGetReceipt), the execution status of the RBF transaction is returned, causing the exchange to record the two transactions repeatedly.

The SlowMist security team reminds exchanges and related wallets that when depositing, they need to compare the cid in the query return result with the cid in the query, and use interfaces such as ChainGetParentMessages and ChainGetParentReceipts to query and compare to avoid duplicate deposits. Unlike the fake deposit attacks previously discovered in the SlowMist area, this attack method is more covert and is caused by the characteristics of the Filecoin node. Exchanges and related wallets should check the deposit and deposit procedures again. In addition to RBF, there are also regular To, Value, transfer type Method, and execution result ExitCode fields. If necessary, you can ask a security audit company to assist in the detection.


<<:  A man was cheated of 10 bitcoins by a fake Musk and lost $750,000

>>:  CCTV: Graphics cards are still in great demand despite a 100% price increase. The market will charge as many "miners" as possible.

Recommend

Teach you how to interpret your dreams by reading your own palm

Palmistry, also known as palm lines, palmistry, a...

Your nose determines your fate at 40-50 years old (Part 2)

The nose is also called the "king of the fac...

The face of a woman born with good fortune

In modern times when independence is increasingly...

Everledger, the disruptor of Crazy Diamond’s bloodline tracing

Baozou Comment : Blockchain startup Everledger ha...

What kind of woman has excellent acting skills?

Acting skills not only appear in TV dramas, but a...

The 2020 Chengdu Digital Mining Summit is waiting for you~

We invite you to join us at the Digital Mining Su...

How is the fortune of a square face? Is the career successful?

Everyone's face shape is different. Some peop...

Marriage lines that lead to unhappy marriages

Marriage lines that lead to unhappy marriages Man...

What's the most inappropriate face?

Sometimes, speaking is an artistic skill, and jok...

A woman has a mole in her right eyebrow

A mole in a woman’s eyebrow indicates longevity, ...

It's so unfair, a router can also mine blocks? 12.5 bits mined

Suddenly, like a spring breeze, a small router ex...