CertiK Discovers Critical Vulnerability in Solana Phone, Allowing Assets to be Drained Within Second

概要:CertiK Discovers Critical Vulnerability in Solana Phone, Allowing Assets to be Drained Within Seconds

In recent days, CertiK has identified a critical bootloader vulnerability in Solana Phone. CertiK's testing experts successfully jailbroke the phone within a minute and swiftly looted all assets stored on the device through a few simple steps.

The fundamental issue of this vulnerability lies in an insecure “bootloader unlock” feature. Apart from stealing users' assets, this vulnerability also exposes all personal data stored on the device. Over 2,100 devices have been at serious risk since early April.

Given the complexity of the vulnerability and the necessity of physical access, CertiK has informed Solana and publicly issued this vulnerability warning to safeguard Web3 users and encourage them to take effective measures to protect their assets.

CertiK released a video on November 15, providing a detailed analysis of this vulnerability. They emphasize that this vulnerability is not exclusive to Solana Phone and recommend that relevant projects and developers take immediate action to strengthen bootloader protection.

免責事項

このコンテンツの見解は筆者個人的な見解を示すものに過ぎず、当社の投資アドバイスではありません。当サイトは、記事情報の正確性、完全性、適時性を保証するものではなく、情報の使用または関連コンテンツにより生じた、いかなる損失に対しても責任は負いません。
前へ

「11月13日」WikiBit速報まとめ

次へ

ライブ市場:ウォーシュ氏の発言および経済指標を受けて、ビットコインが60,000ドルに回復