How blockchain applications can be hacked, and what you can do to prevent it

Page 1

How Blockchain Applications Can Be Hacked, And What You Can Do To Prevent It Despite much of the early hype, blockchain applications are not “unhackable.” In the last year, a handful of highly visible attacks against blockchain-based tools served as a reminder that there’s no such thing as flawless security. Luckily, none of the recent blockchain compromises have done lasting damage to its overall public image. In fact, cryptocurrency is more popular than ever before. With this in mind, spreading awareness of blockchain security issues has become a key task for the crypto community. Following these highly public incidents, developers and end users alike are discussing ways in which cryptocurrency security can be compromised, and the various countermeasures most effective against it. The most notable cases of blockchain hacking have shown that it suffers from the same security issues of older technologies. These attacks did not result from the vulnerabilities in the blockchain itself, but the ways it was implemented by a particular company or initiative. In other words, the issue was not related to the technical protocol, but weaknesses introduced by external developers. This was certainly true in the case of Bitfinex, whose August 2016 hack resulted in the total theft of $60 million worth of BTC. The issue here was not the blockchain on which it was based, but the exchange’s specific encryption strategy. Bitfinex used multi-signature wallets for its user accounts. This works by distributing private keys between a numbers of different parties in order to minimize the risk associated with centralizing key storage. One of the keys that were distributed was obtained by a bad actor that proceeded to drain Bitfinex accounts. This not only hurt individual investors, but sent the price of Bitfinex stock tumbling by almost twenty percent. Bitfinex made early promises to repay all of its investors in full, a goal it was able to meet by April 2017. This helped to quell speculation that the exchange was compromised from within and helped rebuild its overall reputation. The repayment and overall recovery of Bitfinex marks it a success story, and today the Hong Kong-based exchange has reasserted itself as a leading cryptocurrency trading platform. The takeaway from the attack on Bitfinex is that well-known hacking methods are very much present in the cryptocurrency realm, no matter how strong the


Turn static files into dynamic content formats.

Create a flipbook
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.