简体中文
繁體中文
English
Pусский
日本語
ภาษาไทย
Tiếng Việt
Bahasa Indonesia
Español
हिन्दी
Filippiiniläinen
Français
Deutsch
Português
Türkçe
한국어
العربية
Cryptoverse: Blockchain bridges fall into troubled waters
Abstract:Another day, another hack – and another blockchain bridge burned.

When thieves stole an estimated $190 million from U.S. crypto firm Nomad last week, it was the seventh hack of 2022 to target an increasingly important cog in the crypto machine: Blockchain “bridges” – strings of code that help move crypto coins between different applications.
So far this year, hackers have stolen crypto worth some $1.2 billion from bridges, data from London-based blockchain analysis firm Elliptic shows, already more than double last years total.
“This is a war where the cybersecurity firm or the project cant be a winner,” said Ronghui Hu, a professor of computer science at Columbia University in New York and co-founder of cybersecurity firm CertiK.
“We have to protect so many projects. For them (hackers) when they look at one project and theres no bugs, they can simply move on to the next one, until they find a one weak point.”
At present, most digital tokens run on their own unique blockchain, essentially a public digital ledger that records crypto transactions. That risks projects using these coins becoming siloed, reducing their prospects for wide use.
Blockchain bridges aim to tear down these walls. Backers say they will play a fundamental role in “Web3” – the much-hyped vision of a digital future where cryptos enmeshed in online life and commerce.
Yet bridges can be the weakest link.
The Nomad hack was the eighth-biggest crypto theft on record. Other thefts from bridges this year include a $615 million heist at Ronin, used in a popular online game, and a $320 million theft at Wormhole, used in so-called decentralised finance applications.
“Blockchain bridges are the most fertile ground for new vulnerabilities,” said Steve Bassi, co-founder and CEO of malware detector PolySwarm.
Achilles heel
Nomad and others companies that make blockchain bridge software have attracted backing.
Just five days before it was hacked, San Francisco-based Nomad said it had raised $22.4 million from investors including major exchange Coinbase Global. Nomad CEO and co-founder Pranay Mohan called its security model the “gold standard.”
Nomad did not respond to requests for comment.
It has said it is working with law enforcement agencies and a blockchain analysis firm to track the stolen funds. Late last week, it announced a bounty of up to 10% for the return of funds hacked from the bridge. It said on Saturday it had recovered over $32 million of the hacked funds so far.
“The most important thing in crypto is community, and our number one goal is restoring bridged user funds,” Mohan said. “We will treat any party who returns 90% or more of exploited funds as a white hats. We will not prosecute white hats,” he said, referring to so-called ethical hackers.
Several cyber security and blockchain experts told Reuters that the complexity of bridges meant they could represent an Achilles heel for projects and applications that used them.
“A reason why hackers have targeted these cross-chain bridges of late is because of the immense technical sophistication involved in creating these kinds of services,” said Ganesh Swami, CEO of blockchain data firm Covalent in Vancouver, which had some crypto stored on Nomads bridge when it was hacked.
For instance, some bridges create versions of crypto coins that make them compatible with different blockchains, holding the original coins in reserve. Others rely on smart contracts, complex covenants that execute deals automatically.
The code involved in all of these can contain bugs or other flaws, potentially leaving the door ajar for hackers.

Disclaimer:
The views in this article only represent the author's personal views, and do not constitute investment advice on this platform. This platform does not guarantee the accuracy, completeness and timeliness of the information in the article, and will not be liable for any loss caused by the use of or reliance on the information in the article.
Read more

Seaprimecapitals Withdrawal Problems: A Complete Guide to Risks and User Experiences
Worries about Seaprimecapitals withdrawal problems and possible Seaprimecapitals withdrawal delay are important for any trader. Being able to get your money quickly and reliably is the foundation of trust between a trader and their broker. When questions come up about this basic process, it's important to look into what's causing them. This guide will tackle these concerns head-on, giving you a clear, fact-based look at Seaprimecapitals' withdrawal processes, user experiences, and trading conditions. Most importantly, we'll connect these real-world issues to the single most important factor behind them: whether the broker is properly regulated. Understanding this connection is key to figuring out the real risk to your capital and making a smart decision.

iFX Brokers Review: Do Traders Face Withdrawal Issues, Deposit Credit Failures & Free Coupon Mess?
Have you had to pay several fees at iFX Brokers? Had your trading profit been transferred to a scamming website, causing you losses? Failed to receive withdrawals from your iFX Brokers trading account? Has your deposit failed to reflect in your trading account? Got deceived in the name of a free coupon? Did the broker officials not help you in resolving your queries? Your problems resonate with many of your fellow traders at iFX Brokers. In this iFX Brokers review article, we have explained these problems and attached traders’ screenshots. Read on!

NinjaTrader Exposed: Why Traders are Calling Out NinjaTrader’s Lifetime Plan & Chart Data
Did NinjaTrader onboard you in the name of the Lifetime Plan, but its ordinary customer service left you in a poor trading state? Do you witness price chart-related discrepancies on the NinjaTrader app? Did you have to go through numerous identity and address proof checks for account approval? These problems occupy much of the NinjaTrader review online. In this article, we have discussed these through complaint screenshots. Take a look!

Questrade Review Pros, Cons and Regulation
Is Questrade legit? Yes—CIRO regulated broker offering stocks, ETFs, forex, CFDs, bonds, and more with low fees and modern platforms.
