Home web3.0 Bittensor Suspends Network Operations after a Series of Wallet Hacks, Loses $19M

Bittensor Suspends Network Operations after a Series of Wallet Hacks, Loses $19M

Jul 16, 2024 am 01:59 AM

In a recent incident, Bittensor, a prominent AI-focused project, was forced to suspend its network operations following a series of wallet hacks

Bittensor Suspends Network Operations after a Series of Wallet Hacks, Loses M

Prominent AI-focused project Bittensor was recently forced to suspend its network operations following a series of wallet hacks, resulting in a loss of at least $8 million in TAO, Bittensor’s native token.

The incident comes just a month after another wallet breach that led to a loss of $11 million. The Bittensor team has now released a detailed report shedding light on the developments surrounding these attacks.

According to the report, at 7:41 PM UTC on Wednesday, the decision was made to place the Opentensor Chain Validators behind a firewall and activate safe mode on Subtensor due to the attack that affected multiple participants in the Bittensor community.

The attack timeline indicates that the attacker initiated fund transfers from wallets to their wallet, which was detected by the Opentensor Foundation (OTF).

A “war room” was reportedly established to respond to the abnormality in transfer volume. Eventually, the attack was neutralized by placing the Opentensor chain validators behind a firewall and activating safe mode. This action halted all transactions, allowing for a comprehensive situational analysis of the attack.

The root cause of the attack was traced back to the PyPi Package Manager version 6.12.2, where a malicious package was uploaded, compromising user security.

This malicious package, disguised as a legitimate Bittensor file, contained code to steal unencrypted coldkey details. When users downloaded the package and decrypted their coldkeys, the decrypted bytecode was sent to a remote server controlled by the attacker.

The vulnerability is believed to have affected individuals who used Bittensor 6.12.2 and performed operations involving the decryption of hotkeys or coldkeys.

Furthermore, those who downloaded the Bittensor PyPi package between May 22, 7:14 PM UTC, and May 29, 6:47 PM UTC, and performed any relevant operations were also likely impacted.

Immediate mitigation steps were taken by the OTF team, including removing the malicious 6.12.2 package from the PyPi Package Manager repository. So far, no other vulnerabilities have been identified, but a comprehensive assessment of all potential attack vectors is ongoing.

The Bittensor team has collaborated with several exchanges to provide attack details, trace the attacker, and potentially recover funds.

As the code review nears completion, Opentensor plans to gradually resume normal operations of the Bittensor blockchain, allowing transactions to flow again.

The team emphasizes taking precautions, such as creating new wallets and transferring funds once the blockchain is operational. Upgrading to the latest version of Bittensor is strongly advised to enhance security measures.

Bittensor plans to investigate the breach with the PyPi maintainers and implement enhancements to prevent future incidents.

These enhancements include stricter access and verification processes for packages uploaded to PyPi, increased frequency of security audits, implementation of best practices in public security policies, and heightened monitoring and logging of package uploads and downloads.

At the time of writing, the project’s native token TAO is trading at $224, down over 42% in the last 30 days alone. However, the token still has significant gains of over 386% year-to-date.

The above is the detailed content of Bittensor Suspends Network Operations after a Series of Wallet Hacks, Loses $19M. For more information, please follow other related articles on the PHP Chinese website!

Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Roblox: Bubble Gum Simulator Infinity - How To Get And Use Royal Keys
4 weeks ago By 尊渡假赌尊渡假赌尊渡假赌
Nordhold: Fusion System, Explained
4 weeks ago By 尊渡假赌尊渡假赌尊渡假赌
Mandragora: Whispers Of The Witch Tree - How To Unlock The Grappling Hook
3 weeks ago By 尊渡假赌尊渡假赌尊渡假赌

Hot Tools

Notepad++7.3.1

Notepad++7.3.1

Easy-to-use and free code editor

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)

Hot Topics

Java Tutorial
1675
14
PHP Tutorial
1278
29
C# Tutorial
1257
24
Metaplanet Expands Its Bitcoin Treasury Holdings by Another 319 BTC Metaplanet Expands Its Bitcoin Treasury Holdings by Another 319 BTC Apr 15, 2025 am 11:20 AM

In an announcement made earlier today, Japanese firm Metaplanet revealed it has acquired another 319 Bitcoin (BTC), pushing its total corporate holdings beyond 4,500 BTC.

Bitwise Announces the Listing of Four of Its Crypto ETPs on the London Stock Exchange (LSE) Bitwise Announces the Listing of Four of Its Crypto ETPs on the London Stock Exchange (LSE) Apr 18, 2025 am 11:24 AM

Bitwise, a leading digital asset manager, has announced the listing of four of its crypto Exchange-Traded Products (ETPs) on the London Stock Exchange (LSE).

As Binance Coin (BNB) Gains Momentum Toward a $1,000 Breakout, New Altcoin RCO Finance (RCOF) Is Stirring Conversations As Binance Coin (BNB) Gains Momentum Toward a $1,000 Breakout, New Altcoin RCO Finance (RCOF) Is Stirring Conversations Apr 15, 2025 am 09:50 AM

As Binance Coin (BNB) gains momentum toward a $1,000 breakout

Central banks across the world are ramping up their gold purchases Central banks across the world are ramping up their gold purchases Apr 15, 2025 am 11:00 AM

According to a report by The Kobeissi Letter on X, mentioning data from IMS IFS and the Global Gold Council, nations accumulated 24 tonnes of gold in February

Bitcoin (BTC) drifts upwards as the broader market adjusts favorably to trade-related news Bitcoin (BTC) drifts upwards as the broader market adjusts favorably to trade-related news Apr 15, 2025 am 11:14 AM

The largest cryptocurrency was up 1.6% in the last 24 hours and is now trading just shy of $85,000. Ether (ETH), meanwhile, rose 2.7%

Movement Labs and the Movement Network Foundation have launched an independent investigation into recent market-making irregularities related to the MOVE token. Movement Labs and the Movement Network Foundation have launched an independent investigation into recent market-making irregularities related to the MOVE token. Apr 16, 2025 am 11:16 AM

nt Labs and the Movement Network Foundation Launch Independent Investigation into MOVE Token Market-Making Irregularities

A wave of capital is flowing out of Ethereum [ETH] and into Tron [TRX] A wave of capital is flowing out of Ethereum [ETH] and into Tron [TRX] Apr 16, 2025 am 11:14 AM

With $1.52 billion in stablecoins migrating to Tron, investors appear to be favoring lower-cost chains and diversifying beyond traditional USD-backed assets.

The Pi Network token price has increased by more than 14% over the past week. The Pi Network token price has increased by more than 14% over the past week. Apr 16, 2025 am 11:22 AM

As of press time, Pi is trading at $0.6711 after its integration with Chainlink on April 12th. The announcement caused a surge in the price of Pi