bitcoin
Bitcoin (BTC) $ 37,864.14
ethereum
Ethereum (ETH) $ 2,037.91
tether
Tether (USDT) $ 1.00
bnb
BNB (BNB) $ 227.73
xrp
XRP (XRP) $ 0.609266
solana
Solana (SOL) $ 60.03
usd-coin
USDC (USDC) $ 1.00
staked-ether
Lido Staked Ether (STETH) $ 2,038.24
cardano
Cardano (ADA) $ 0.386344
dogecoin
Dogecoin (DOGE) $ 0.081285
tron
TRON (TRX) $ 0.103748
the-open-network
Toncoin (TON) $ 2.44
chainlink
Chainlink (LINK) $ 14.62
avalanche-2
Avalanche (AVAX) $ 21.07
matic-network
Polygon (MATIC) $ 0.760803
polkadot
Polkadot (DOT) $ 5.22
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 37,878.15
dai
Dai (DAI) $ 1.00
litecoin
Litecoin (LTC) $ 69.94
shiba-inu
Shiba Inu (SHIB) $ 0.000008
uniswap
Uniswap (UNI) $ 6.08
bitcoin-cash
Bitcoin Cash (BCH) $ 224.15
leo-token
LEO Token (LEO) $ 3.97
okb
OKB (OKB) $ 55.63
stellar
Stellar (XLM) $ 0.119319
monero
Monero (XMR) $ 166.07
true-usd
TrueUSD (TUSD) $ 0.999268
kaspa
Kaspa (KAS) $ 0.129022
cosmos
Cosmos Hub (ATOM) $ 9.21
ethereum-classic
Ethereum Classic (ETC) $ 18.73
crypto-com-chain
Cronos (CRO) $ 0.091924
filecoin
Filecoin (FIL) $ 4.46
hedera-hashgraph
Hedera (HBAR) $ 0.060184
internet-computer
Internet Computer (ICP) $ 4.50
lido-dao
Lido DAO (LDO) $ 2.26
aptos
Aptos (APT) $ 7.01
thorchain
THORChain (RUNE) $ 6.45
near
NEAR Protocol (NEAR) $ 1.82
binance-usd
BUSD (BUSD) $ 1.00
mantle
Mantle (MNT) $ 0.522177
immutable-x
Immutable (IMX) $ 1.27
vechain
VeChain (VET) $ 0.021553
bittensor
Bittensor (TAO) $ 264.88
optimism
Optimism (OP) $ 1.68
injective-protocol
Injective (INJ) $ 16.95
quant-network
Quant (QNT) $ 98.42
maker
Maker (MKR) $ 1,543.17
aave
Aave (AAVE) $ 96.87
the-graph
The Graph (GRT) $ 0.144463
arbitrum
Arbitrum (ARB) $ 1.01

Solana hoses down ‘inaccurate’ CertiK report on Saga phone security flaws

0

A recent video from blockchain security firm CertiK made a series of “inaccurate” claims about a potential security vulnerability in Solana’s crypto-enabled Saga phone, Solana Labs has said. 

In a Nov. 15 post on X (formerly Twitter), CertiK claimed the Saga phone contained a “critical vulnerability” known as a “bootloader unlock” attack which would supposedly allow a malicious actor to install a hidden backdoor in the phone.

In a report sent to Cointelegraph, CertiK claimed the bootloader unlock would “allow an attacker with physical access to a phone to load custom firmware containing a root backdoor.”

“We demonstrate that this can compromise the most sensitive data stored on the phone, including cryptocurrency private keys,” CertiK’s report said.

However, a Solana Labs spokesperson told Cointelegraph that CertiK’s claims are inaccurate, and its video did not reveal any legitimate threat to the Saga device.

“The CertiK video does not reveal any known vulnerability or security threat to Saga holders.”

Android’s internal Open Source Project documentation shows unlocking a bootloader can be performed across a wide range of Android devices.

Solana Labs said to unlock the bootloader and install custom firmware, an attacker would have to go through multiple steps, which can only be performed after unlocking the device with the user’s passcode or fingerprint.

“Unlocking the bootloader wipes the device, which users are alerted about multiple times when unlocking the bootloader, so it’s not a process that can take place without users’ active participation or awareness,” Solana Labs said.

Related: Making real-world blockchain solutions possible — Solana co-founder Raj Gokal

Additionally, if anyone proceeds to unlock the bootloader on an Android device, they’re subjected to a series of warnings about the implications of the process.

If they ignore these warnings, the device will be wiped along with their private keys.

The Solana Saga phone was released in April 2022 for a $1,099 price tag. The phone offers a Web3-native DApp store in a bid to integrate crypto apps into tech hardware.

Four months after launch, however, Solana slashed its price to $599 — following a steep decline in sales.

CertiK did not immediately respond to a request for comment on Solana Labs’ rebuttal.

Magazine: I spent a week working in VR. It was mostly terrible, however…



Source link

Leave A Reply

Your email address will not be published.

Shares