On March 21, the San Francisco based exchange Coinbase publicly revealed an ethereum balance glitch that allowed users to manipulate their account balances. Researchers noticed that, by utilizing a smart contract, a person could add as much ethereum as they wanted to their account.
Smart Contract Manipulation Allowed Unlimited Ethereum Balances on Coinbase

“The researchers noticed an issue with our ETH receiving code when receiving from a contract. This allowed sending of ETH to Coinbase to be credited even if the underlying contract execution failed,” explains the San Francisco trading platform.
The issue was fixed by changing the contract handling logic — Analysis of the issue indicated only accidental loss for Coinbase, and no exploitation attempts.
Not the Only Exchange With an Unlimited Coin Glitch

On Coinbase these transactions will not be reversed, meaning someone could add as much ether to their balance as they want.
Coinbase is not the only exchange that has suffered from glitches that allow people to manipulate balances. This past February the Japanese exchange Zaif had a bug that let users purchase BTC for zero dollars. A month prior to the Zaif incident, the company Overstock had an API glitch which allowed users to pay for goods using BCH for a product priced in BTC.
What do you think about the Coinbase bug found last December? Why do you think the exchange disclosed the bug this week? Let us know what you think in the comments below.
Images via Shutterstock, and Coinbase.
Source : bitcoin.com
No comments:
Post a Comment