Meitu Blockchain Lab releases details of malicious EOS contract

Meitu Blockchain Lab releases details of malicious EOS contract

According to IMEOS, a week ago, Meitu Blockchain Lab discovered a security vulnerability in which a malicious EOS contract could devour user RAM. The lab submitted the issue to EOSIO officials and fully communicated with the official team on the details of the vulnerability.

After a week of communication with the official team, the official team has fully understood the harm of the vulnerability and decided to select a suitable solution in the later stage to patch the code of this vulnerability. In order to avoid malicious attacks during this vacuum period, Meitu Blockchain Lab decided to publish the details of the vulnerability for community research reference to facilitate self-inspection and defense.

It is reported that EOS contracts can trigger calls to other contracts through require_recipient. Designing such a mechanism provides great convenience to contract developers, but it also brings new problems. When a user transfers money to a contract, the contract can consume the user's RAM without the user's knowledge.


<<:  Why did Google Play Store remove all Bitcoin mining apps?

>>:  Report: Number of Crypto Mining Companies in Russia Reaches 75,000

Recommend

Analysis of women's eye bags

As one of the traditional physiognomy techniques, ...

ViaBTC, the world’s sixth largest mining pool, tests Bitcoin Unlimited

Chinese Bitcoin mining pool ViaBTC has decided to...

Can Bitcoin Still Compete with Ethereum?

Bitcoin’s dilemma. While many crypto assets surge...

What are the characteristics of financial ruin?

A good face is very important because it affects ...

What are the ten characteristics of a poor face?

As we all know, facial features are related to de...

Analysis of the size of a woman's pupil

As one of the traditional physiognomy techniques, ...

What is the difference between a forked and disconnected love line?

What is the difference between a forked and disco...

Why do so many people support Wu Jihan?

On October 29, the "palace co-operation dram...

Coinbase CEO: We misjudged the Ethereum hard fork, but it was still a success

It’s been an exciting few weeks for the cryptocur...

Characteristics of palmistry for making a fortune

Everyone hopes for good fortune and easy money ma...

Moles on the face determine the popularity of the opposite sex

Moles on the face determine the popularity of the...