CertiK Discovers Critical Vulnerability in Solana Phone, Allowing Assets to be Drained Within Second

요약:CertiK Discovers Critical Vulnerability in Solana Phone, Allowing Assets to be Drained Within Seconds

In recent days, CertiK has identified a critical bootloader vulnerability in Solana Phone. CertiK's testing experts successfully jailbroke the phone within a minute and swiftly looted all assets stored on the device through a few simple steps.

The fundamental issue of this vulnerability lies in an insecure “bootloader unlock” feature. Apart from stealing users' assets, this vulnerability also exposes all personal data stored on the device. Over 2,100 devices have been at serious risk since early April.

Given the complexity of the vulnerability and the necessity of physical access, CertiK has informed Solana and publicly issued this vulnerability warning to safeguard Web3 users and encourage them to take effective measures to protect their assets.

CertiK released a video on November 15, providing a detailed analysis of this vulnerability. They emphasize that this vulnerability is not exclusive to Solana Phone and recommend that relevant projects and developers take immediate action to strengthen bootloader protection.

면책 성명

본 기사의 견해는 저자의 개인적 견해일 뿐이며 본 플랫폼은 투자 권고를 하지 않습니다. 본 플랫폼은 기사 내 정보의 정확성, 완전성, 적시성을 보장하지 않으며, 개인의 기사 내 정보에 의한 손실에 대해 책임을 지지 않습니다.
전편

로빈후드, 2분기에 이익 반전...그러나 암호화폐 수익은 감소

다음

실시간 시장: 워쉬 발언 및 경제 지표에 힘입어 비트코인 60,000달러 반등