NEW: Unlock the Future of Finance with CRYPTO ENDEVR - Explore, Invest, and Prosper in Crypto!
Crypto Endevr
  • Top Stories
    • Latest News
    • Trending
    • Editor’s Picks
  • Media
    • YouTube Videos
      • Interviews
      • Tutorials
      • Market Analysis
    • Podcasts
      • Latest Episodes
      • Featured Podcasts
      • Guest Speakers
  • Insights
    • Tokens Talk
      • Community Discussions
      • Guest Posts
      • Opinion Pieces
    • Artificial Intelligence
      • AI in Blockchain
      • AI Security
      • AI Trading Bots
  • Learn
    • Projects
      • Ethereum
      • Solana
      • SUI
      • Memecoins
    • Educational
      • Beginner Guides
      • Advanced Strategies
      • Glossary Terms
No Result
View All Result
Crypto Endevr
  • Top Stories
    • Latest News
    • Trending
    • Editor’s Picks
  • Media
    • YouTube Videos
      • Interviews
      • Tutorials
      • Market Analysis
    • Podcasts
      • Latest Episodes
      • Featured Podcasts
      • Guest Speakers
  • Insights
    • Tokens Talk
      • Community Discussions
      • Guest Posts
      • Opinion Pieces
    • Artificial Intelligence
      • AI in Blockchain
      • AI Security
      • AI Trading Bots
  • Learn
    • Projects
      • Ethereum
      • Solana
      • SUI
      • Memecoins
    • Educational
      • Beginner Guides
      • Advanced Strategies
      • Glossary Terms
No Result
View All Result
Crypto Endevr
No Result
View All Result

Liminal says infrastructure was not responsible for WazirX hack, blames compromised devices

Liminal says infrastructure was not responsible for WazirX hack, blames compromised devices
Share on FacebookShare on Twitter

Liminal’s Post-Mortem Report on WazirX Hack

Background

Multiparty computation (MPC) wallet provider Liminal has released a post-mortem report on the recent hack of India-based crypto exchange WazirX. The report details the events surrounding the breach, which resulted in an estimated $235 million loss.

Liminal’s Infrastructure Remains Safe

Liminal’s infrastructure remains safe and was not compromised in the hack. The firm’s statement in its post-mortem report attributes the breach to compromised devices within WazirX’s network, clarifying that Liminal’s user interface (UI) was not responsible.

WazirX’s Devices Compromised

According to Liminal, the July 18 breach occurred because three of WazirX’s devices were compromised. The firm’s report explains that its multi-signature wallet system was configured to provide a fourth signature if three valid signatures were received from WazirX. This setup allowed the attacker to exploit the compromised devices.

The Attack

The attack began when one of WazirX’s compromised devices initiated a legitimate transaction involving Gala Games tokens (GALA). Liminal’s server verified the transaction’s validity by issuing a “safeTxHash.” However, the attacker replaced this hash with an invalid one, causing the transaction to fail.

Liminal’s Response

Liminal’s report detailed that the attack continued with the attacker extracting the signatures from the failed transactions to initiate a new, fourth transaction, which was crafted to appear legitimate to Liminal’s system. Because this fourth transaction used valid details and the nonce from a previously failed transaction, it was approved by Liminal’s server, resulting in the transfer of funds from the multisig wallet to the attacker’s Ethereum account.

Refuting WazirX Claims

Liminal refuted WazirX’s claims that its servers caused incorrect information to be displayed, asserting that the compromised WazirX devices sent malicious payloads. The firm said, “Given that three devices of the victim’s shared transactions sent out malicious payloads to Liminal’s server, we have reason to believe that the local machines were compromised.”

Conclusion

The post-mortem report highlights the importance of robust security measures and the need for vigilance in the face of sophisticated attacks. Liminal’s system was configured to provide a fourth signature if three valid signatures were received from WazirX, which allowed the attacker to exploit the compromised devices. The report also leaves some critical questions unanswered, including how the attacker initially gained access to the three WazirX devices.

FAQs

Q: What was the cause of the WazirX hack?

A: The hack was caused by compromised devices within WazirX’s network.

Q: Was Liminal’s infrastructure compromised?

A: No, Liminal’s infrastructure remains safe and was not compromised in the hack.

Q: What was the impact of the hack?

A: The hack resulted in an estimated $235 million loss.

Q: How did the attacker exploit Liminal’s system?

A: The attacker exploited Liminal’s system by using compromised devices within WazirX’s network to initiate a new, fourth transaction, which was crafted to appear legitimate to Liminal’s system.

Q: What is Liminal’s response to the hack?

A: Liminal has released a post-mortem report detailing the events surrounding the breach and has refuted WazirX’s claims that its servers caused incorrect information to be displayed.

Q: What is WazirX’s response to the hack?

A: WazirX has stated that it has reached out to law enforcement and is pursuing “additional legal actions” to trace the stolen funds and conduct a “deeper analysis” of the breach.

cryptoendevr

cryptoendevr

Related Stories

Bitcoin supply near total profitability as institutional demand drives value flows

Bitcoin supply near total profitability as institutional demand drives value flows

May 22, 2025
0

rewrite this content What is CryptoSlate Alpha?CryptoSlate Alpha requires a one-time purchase of our membership NFT using SOL, the native...

Active DeFi loans hit all-time high at .7B as TVL nears pre-tariff levels

Active DeFi loans hit all-time high at $23.7B as TVL nears pre-tariff levels

May 22, 2025
0

rewrite this content Active loans across decentralized lending applications climbed to a record $23.723 billion on May 21, based on...

Strategy seeks to raise .1 billion from STRF stock offering to bolster its Bitcoin holdings

Strategy seeks to raise $2.1 billion from STRF stock offering to bolster its Bitcoin holdings

May 22, 2025
0

rewrite this content Strategy (formerly MicroStrategy) has unveiled plans to raise $2.1 billion via sales of its Series A Perpetual...

Nobody cares – Fear I Already Missed Out may be overpowering FOMO in Bitcoin market

Nobody cares – Fear I Already Missed Out may be overpowering FOMO in Bitcoin market

May 22, 2025
0

rewrite this content Bitcoin trades above $110,000 today, while Google Trends data for “bitcoin” sits at 38.This afternoon, a Midtown...

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

The Week Ahead: Bitcoin’s Next Move, Altcoins I’m Buying, Key Dates & More

The Week Ahead: Bitcoin’s Next Move, Altcoins I’m Buying, Key Dates & More

May 21, 2025
World Foundation secures 5M via token sales to expand biometric Orb-verified IDs globally

World Foundation secures $135M via token sales to expand biometric Orb-verified IDs globally

May 21, 2025
Open-Source Automated Red Teaming Engine for Kubernetes, APIs, and AI

Open-Source Automated Red Teaming Engine for Kubernetes, APIs, and AI

May 21, 2025
AI Still Doesn’t Understand the Word ‘No,’ MIT Study Finds

AI Still Doesn’t Understand the Word ‘No,’ MIT Study Finds

May 21, 2025
Top Crypto Websites to Follow for Latest News and Insights in 2025 – Analytics Insight

Top Crypto Websites to Follow for Latest News and Insights in 2025 – Analytics Insight

May 21, 2025

Our Newsletter

Join TOKENS for a quick weekly digest of the best in crypto news, projects, posts, and videos for crypto knowledge and wisdom.

CRYPTO ENDEVR

About Us

Crypto Endevr aims to simplify the vast world of cryptocurrencies and blockchain technology for our readers by curating the most relevant and insightful articles from around the web. Whether you’re a seasoned investor or new to the crypto scene, our mission is to deliver a streamlined feed of news and analysis that keeps you informed and ahead of the curve.

Links

Home
Privacy Policy
Terms and Services

Resources

Glossary

Other

About Us
Contact Us

Our Newsletter

Join TOKENS for a quick weekly digest of the best in crypto news, projects, posts, and videos for crypto knowledge and wisdom.

© Copyright 2024. All Right Reserved By Crypto Endevr.

No Result
View All Result
  • Top Stories
    • Latest News
    • Trending
    • Editor’s Picks
  • Media
    • YouTube Videos
      • Interviews
      • Tutorials
      • Market Analysis
    • Podcasts
      • Latest Episodes
      • Featured Podcasts
      • Guest Speakers
  • Insights
    • Tokens Talk
      • Community Discussions
      • Guest Posts
      • Opinion Pieces
    • Artificial Intelligence
      • AI in Blockchain
      • AI Security
      • AI Trading Bots
  • Learn
    • Projects
      • Ethereum
      • Solana
      • SUI
      • Memecoins
    • Educational
      • Beginner Guides
      • Advanced Strategies
      • Glossary Terms

Copyright © 2024. All Right Reserved By Crypto Endevr