Researchers have uncovered details about a critical flaw currently being patched in the Move virtual machine that powers the Aptos blockchain network.

The vulnerability “can crash Aptos nodes and cause a denial of service,” says Singapore-based Numen Cyber โ€‹โ€‹Labs. Said In a technical article published earlier this month.

Aptos is Newcomer in the blockchain space launch this is mainnet October 17, 2022. It has its roots in the Diem stablecoin payment system proposed by Meta (formerly Facebook), Novi.

cyber security

The network is built using a platform-agnostic programming language. movea Rust-based system. design Implement and execute smart contracts in a secure manner runtime environmentMove Virtual Machine (aka MoveVM).

of Vulnerability Identified by Numen Cyber โ€‹โ€‹Labs is the Move language validation module (“stack_usage_verifier.rs“), the component to verify bytecode instructions Before running on MoveVM.

cyber security

In particular, Integer overflow vulnerability in the stack base Web3 programming language that causes undefined behavior and can crash.

Since this vulnerability occurs in the Move execution module, when the bytecode code is executed against any node on the chain, [Denial-of-Service] attack,โ€ the cybersecurity firm explained.

โ€œIn severe cases, the Aptos network could come to a complete outage, causing immeasurable damage and severely impacting node stability.โ€

cropped-BTA_Logo-B-1-scaled-1
YOUR FUTURE STARTS HERE.

BLUE TRAINING ACADEMY

Register now for our membership to gain access to our elite training program and fast forward your career today!

Newsletter

Subscribe my Newsletter for new blog posts, tips & new photos. Let's stay updated!

cropped-BTA_Logo-B-1-scaled-1
Security Blog

Blue Training Academy

Blue Training Academy was developed in 2018 as a educational and training facility for continuing education and certification courses. Blue Training Academy is an educational institution that allows for all sectors of the public and Criminal Justice field to gain ongoing training and education.

Copyright ยฉ๏ธ All rights reserved. | Blue Training Academy Blog