The incident was not publicly announced until after the upgrade was installed by the vast majority of validators

Solana network team has addressed a critical security vulnerability

09.08.2024 - 09:00

181

2 min

What’s new? The Solana team, as well as validators and blockchain client developers, fixed a critical security vulnerability. On August 7, representatives from the Solana Foundation NPO contacted operators known to them through private channels to covertly address the vulnerability and prevent an exploit.

Source: X.com

What else is known? The availability of the patch in a repository on GitHub allowed operators to independently test and deploy it. By August 8, implementation instructions had been sent to Solana participants, protecting 66,6% of the network.

The vulnerability was publicly reported after 70% of the network participants had installed the patch. Thus, developer Solana Labs published an announcement in the Discord channel, where it urged the remaining operators to update their systems.

“The key is to manage to contact enough stake to protect the network while retaining confidentiality. The amazing thing about Solana’s validator community is that it’s very active and engaged, and even if you don’t directly know a validator they’re often only one degree of separation away as we’ve all made friends with others over the years,” writes the team at Laine, the company that manages the Solana validator.

Earlier, the Solana team launched a rewards program with amounts up to $1 million for finding vulnerabilities in the upcoming Firedancer upgrade. This validator client, created by the Jump Crypto market maker team, is designed to improve Solana’s fault tolerance. In the past years, the blockchain has experienced multiple failures due to congestion.

Currently, it is the fastest blockchain among both the first (L1) and second (L2) layer networks, according to analysts at CoinGecko. The record was set at 1054 transactions per second (TPS).

In April, developers of the Cosmos blockchain ecosystem eliminated a $126 million vulnerability discovered by Asymmetric Research auditors as part of the bug bounty program.

Subscribe to Getblock Magazine and stay up to date with the latest news from the world of cryptocurrencies and the digital economy