Thirdweb Begins Mitigation of Vulnerability Affecting Thousands of Smart Contracts

Share This Post

Thirdweb Starts Mitigation of Vulnerability Affecting Thousands of Smart Contracts

Thirdweb, a Web3 development framework provider, has announced that it has started mitigating a vulnerability that could potentially affect thousands of smart contracts across several networks. The vulnerability, uncovered in November, impacts various pre-built smart contracts that the framework provides for rapidly deploying applications using an undisclosed open-source library.

Thirdweb Mitigates Critical Vulnerability Across Dozens of EVM Networks

Thirdweb, a Web3 development framework provider, is mitigating the impact of a recently discovered vulnerability in its smart contracts suite. The organization stated that in the last 48 hours, more than 8,000 contracts had been mitigated to contain the impact of this vulnerability, and it is working to extend these actions.

While the organization stated that the vulnerability derived from an open-source Web3 library used across the industry, it has not disclosed its specific nature or its mitigation procedures. Thirdweb announced the vulnerability affected several of its pre-built smart contracts provided by the organization for deploying applications across Ethereum Virtual Machine (EVM) chains.

As of writing, Thirdweb has acknowledged that only two smart contracts have been exploited, without offering more details.

The vulnerability was discovered on November 20, when the organization started working to develop a mitigation tool. The situation was publicly disclosed on December 4, with Thirdweb having worked with affected partners like NFT market Opensea previously, to warn them.

In addition, Thirdweb contacted the maintainers and third parties using this undisclosed Web3 open-source library to inform them about the issue and to share its findings and mitigation measures.

Thirdweb also revealed that it would ramp up its investment in security, doubling its payments for its already existing bug bounty program from $25,000 to $50,000 and implementing more rigorous auditing processes.

Hacks and exploits have soared during 2023. According to Certik, a blockchain security company, more than $1 billion had been stolen from smart contracts as of the beginning of September. The cost of attacks ramped up in September, with $332 million lost to hacks, scams, and exploits in this month.

What do you think about Thirdweb’s vulnerability disclosure and mitigation actions? Tell us in the comments section below.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

FBI Seizes Cryptocurrency Linked to North Korean Ransomware

A grand jury in Kansas City indicted North Korean national Rim Jong Hyok for his role in a conspiracy involving ransomware attacks on US hospitals and healthcare providers The group laundered

Analyst Says Chainlink Price Could Climb To $19 — Here’s How

In recent months, the Chainlink price hasn’t quite been able to replicate the bullish strength it showed at the start of the year And the past week was a prime example of the coin’s recent

Crypto Legislation Shakeup: US Senator Backs Down From Warren’s Controversial Bill

In a significant development for the cryptocurrency industry, United States Senator Roger Marshall has overturned his support for the Digital Asset Anti-Money Laundering Act (DAAMLA) Bill, a

Here’s How This Short Seller Who Is a Crypto Critic Hit a Legal Snag with the SEC

Andrew Left, a controversial figure behind Citron Research, renowned for his critical stance on crypto and often bearish stance on various high-profile stocks, has found himself on the other side of

Philippines Plans to Introduce Wholesale CBDC by 2029

Bangko Sentral ng Pilipinas (BSP) plans to introduce its wholesale central bank digital currency (CBDC) by 2029 The Philippine central bank’s CBDC initiative is near its proof-of-concept

Polygon Ecosystem On Fire: Daily Active Addresses And Transactions Soar, MATIC Gains 5%

Layer 2 scaling solution Polygon has maintained strong network activity even as the broader cryptocurrency market and its native token, MATIC, experienced a downturn in the second quarter of 2024,
You have not selected any currencies to display