NFT EveningNFT Evening

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    NFTs By Lacollection.io x MFA To Feature Degas and Monet Artworks

    June 25, 2022

    Snoop Dogg and Eminem Drop A New Track At Apefest

    June 25, 2022

    Yuga Labs Files Lawsuit Against Ryder Ripps Bored Apes (RRBAYC) NFT

    June 25, 2022
    Facebook Twitter Instagram Reddit
    NFT Evening NFT Evening
    • Home
    • News
    • Crypto Art
    • Collectibles
    • Blockchain games
    • Interviews
    • Guides
    • NFT Calendar
    • NFT Conferences
    NFT EveningNFT Evening
    News

    Polygon White Hat Hacker wins $2 Million Bounty for Outing Fatal Flaw

    By TheoOctober 22, 20213 Mins Read
    Share
    Twitter WhatsApp Reddit Email Facebook LinkedIn

    Ethereum scaling solution Polygon awarded $2 Million, the biggest bounty in the history of DeFi, to a white hat hacker. This is the reward of  Gerhard Wagner for discovering a vulnerability in the Polygon Plasma Bridge on October 5. Based on projection, the total exposure of Polygon was a whopping $850,000 so he definitely deserved every cent of the bounty.

    White hackers are the good guys of computer security also known as ethical hackers. Basically, they use their skills to spot system vulnerabilities then endorse them for fixing instead of exploiting them.

    Polygon White Hacker
    Polygon dodged a major security attack thanks to a white hat hacker! Credit: MakeUseOf

    How the Polygon White Hacker Saved the Day

    The Polygon Plasma bridge is a key aspect of the network because it supports interoperability between Polygon and Ethereum. Basically, this trustless transaction channel allows users to move tokens between the two chains.

    The vulnerability allowed an attacker to exit his burn transaction from the bridge multiple times—up to 223 times. To illustrate the magnitude of this issue, having just $100,000 with which to launch an attack, would result in a loss of $22.3 million. Thus, a full string of attacks would lead to total damage of approximately $850 Million.

    Polygon certainly dodged a bullet thanks to Wagner’s fine work.

    After Wagner submitted his report, Polygon acted promptly. In just 30 minutes, the network began fixing the issue. Thankfully, the bug was promptly patched with zero damage and impact to users’ funds.

    The Role of Bounty Programs

    Polygon launched its bounty program on Immunefi in September as the team sought to eliminate potential security flaws. The company is the leading bug bounty and security services platform in the DeFi space. Currently, it is in charge of protecting $50 Billion in user funds.

    Essentially, a bounty program also called a vulnerability rewards program (VRP), is a crowdsourcing initiative that rewards individuals for discovering and reporting bugs and issues. Projects often initiate bug bounty programs to supplement internal code audits and penetration tests.

    In the case of Polygon, Security researchers will be rewarded for their efforts based on Immunefi’s Vulnerability Severity Classification System. Basically, this is the platform’s way of ranking threats according to the severity of the issues. The lowest possible payout is $1000 while critical issues, like in Wagner’s case, warrant million-dollar rewards.

    Jaynti Kanani, a co-founder of Polygon, is inviting other platforms to adopt their approach. He said, “We hope this bounty on Immunefi sets an example for other web 3.0 projects and attracts Giga brains from the white hat security research community to contribute to web 3.0 and make it more resilient from future security threats.”

    Polygon’s foresight saved them from what could have been a catastrophic situation. Exchanges and platforms lose their shirt over vulnerabilities at this level. Two weeks ago, OpenSea fixed vulnerabilities in its platform that could’ve let hackers steal someone’s crypto after sending them a maliciously crafted NFT. Security firm Check Point Research found the issue after users started complaining on Twitter.


    Are you tired of missing important NFT drops?

    Check out our NFT Calendar!

    Receive the biggest NFT news of the day & recommendations in our Daily newsletter. 

    • All of our news is being sent daily on Telegram
    • We summarize the biggest news daily on Twitter & Instagram 
    • Learn with video tutorials and subscribe to our Youtube Channel 

     


    All investment/financial opinions expressed by NFTevening.com are not recommendations.

    This article is educational material.

    As always, make your own research prior to making any kind of investment.

    Bounty Program Polygon White Hacker
    Share. Facebook Twitter Pinterest LinkedIn Email Reddit WhatsApp
    Theo
    • LinkedIn

    Theo is NFTevening co-founder. He has been in the digital marketing & Media industry for the past 7 years and is involved in several big publishing companies - Reaching 35Millions users monthly across 20 different countries. He is a nostalgic gamer, a Witcher-fan and a huge NFT-enthusiast !

    More great NFT Evening content:

    NFTs By Lacollection.io x MFA To Feature Degas and Monet Artworks

    June 25, 2022 News

    Snoop Dogg and Eminem Drop A New Track At Apefest

    June 25, 2022 News

    Yuga Labs Files Lawsuit Against Ryder Ripps Bored Apes (RRBAYC) NFT

    June 25, 2022 News

    Jay Chou x Paris Saint-Germain Tiger Champs NFT: What You Should Know

    June 24, 2022 News
    Latests NFT News

    NFTs By Lacollection.io x MFA To Feature Degas and Monet Artworks

    June 25, 2022

    Snoop Dogg and Eminem Drop A New Track At Apefest

    June 25, 2022

    Yuga Labs Files Lawsuit Against Ryder Ripps Bored Apes (RRBAYC) NFT

    June 25, 2022

    Jay Chou x Paris Saint-Germain Tiger Champs NFT: What You Should Know

    June 24, 2022



    • Follow @NFTevening


    By signing up, you agree to the our terms and our Privacy Policy agreement

    NFT evening is the biggest website for NFT news. We are dedicated to supporting mainstream NFT adoption by making content fun & accessible. Learn about NFT collectibles, NFT art and the best blockchain games that even let you earn free crypto! Whether you want to invest in NFTs, create NFTs or simply collect them, NFTevening is the first stop for all the NFT news you need!

    Facebook Twitter Instagram YouTube
    Article Categories
    • Blockchain games
    • Collectibles
    • Crypto Art
    • Guides
    • Interviews
    • Metaverse
    • News
    • Sponsored Content
    NFT Calendar
    • Today’s NFT Drops
    • Upcoming NFT Drops
    • Solana NFT Drops
    • NFT Calendar
    • NFT Calendar : Add Your NFT Event
    Get In Touch
    • Advertise (Media Kit)
    • Collaboration and Press Releases
    • Job Opportunities
    • About Us
    • Contact Us
    NFT Beginners Guides
    • How to Sell NFT Art
    • How to Create NFT Art
    • How to Display NFT Art
    • How To Make Passive Income With NFTs
    • Best Crypto Wallet
    • Best NFT Coins
    • Best NFT Rarity Tools
    • What is a DAO ?
    • What Are Crypto Gas Fees ?

    Type above and press Enter to search. Press Esc to cancel.