Syscoin Discloses Vulnerability Caused by Cross-Layer Interpretation Mismatch

iconKuCoinFlash
Share
AI summary iconSummary

According to ME News, on June 16 (UTC+8), Syscoin released a report on the previously exploited incident, revealing that the vulnerability stemmed from a cross-layer interpretation mismatch between Syscoin Core and the NEVM relay. The malicious UTXO destruction transaction contained duplicate asset commitments targeting the same output index. Syscoin Core and the NEVM relay interpreted this ambiguous payload differently: Core may have treated the output as the attacker’s custom asset, while the relay interpreted the same transaction as native SYS/SYSX assets. Syscoin stated that the maliciously minted funds have been returned to Syscoin’s official recovery address and subsequently burned as standard OP_RETURN tokens, rendering them unspendable by the protocol and restoring the reported token supply to its intended level. The bridge remains suspended while final reviews and fixes are still underway. (Source: Foresight News)

Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.