Solana network team has addressed a critical security vulnerability
The incident was not publicly announced until after the upgrade was installed by the vast majority of validators
09.08.2024 - 09:00
505
2 min
0
What’s new? The Solana team, as well as validators and blockchain client developers, fixed a critical security vulnerability. On August 7, representatives from the Solana Foundation NPO contacted operators known to them through private channels to covertly address the vulnerability and prevent an exploit.
What else is known? The availability of the patch in a repository on GitHub allowed operators to independently test and deploy it. By August 8, implementation instructions had been sent to Solana participants, protecting 66,6% of the network.
The vulnerability was publicly reported after 70% of the network participants had installed the patch. Thus, developer Solana Labs published an announcement in the Discord channel, where it urged the remaining operators to update their systems.
“The key is to manage to contact enough stake to protect the network while retaining confidentiality. The amazing thing about Solana’s validator community is that it’s very active and engaged, and even if you don’t directly know a validator they’re often only one degree of separation away as we’ve all made friends with others over the years,” writes the team at Laine, the company that manages the Solana validator.
Earlier, the Solana team launched a rewards program with amounts up to $1 million for finding vulnerabilities in the upcoming Firedancer upgrade. This validator client, created by the Jump Crypto market maker team, is designed to improve Solana’s fault tolerance. In the past years, the blockchain has experienced multiple failures due to congestion.
Currently, it is the fastest blockchain among both the first (L1) and second (L2) layer networks, according to analysts at CoinGecko. The record was set at 1054 transactions per second (TPS).
In April, developers of the Cosmos blockchain ecosystem eliminated a $126 million vulnerability discovered by Asymmetric Research auditors as part of the bug bounty program.
Useful material?
Incidents
Developers warned of potential risks to bridges across the ecosystem and asked exchanges for assistance.
Jun 22, 2026
Incidents
The defendant helped move funds stolen through investment scams and earned at least $4 million for his role in the operation.
Jun 10, 2026
Incidents
The company is linking the incident to a compromised private key on a service wallet, rather than a smart contract exploit
May 22, 2026
Incidents
Following the incident, the project temporarily halted trading operations and node activity.
May 15, 2026
Incidents
The user spent weeks unsuccessfully trying to guess the password until Claude helped find an old wallet backup file
May 14, 2026
Crypto regulations
Authorities are introducing mandatory registration for companies handling cross-border crypto transactions
May 8, 2026

Telegram
Twitter