Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert
Zero fees, no slippage
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
The Optimism Foundation reverts to permissioned fraud proofs following security vulnerabilities

The Optimism Foundation reverts to permissioned fraud proofs following security vulnerabilities

CryptopolitanCryptopolitan2024/08/18 16:00
By:By Collins J. Okoth

Share link:In this post: After community-driven audits revealed security vulnerabilities, the Optimism Foundation reverted its network to a permissioned state. Protocol engineer Mofi Taiwo proposed a “Granite” hard fork for September 10th to fix the vulnerabilities. None of the vulnerabilities were exploited, according to a protocol engineer.

After community-driven audits uncovered security vulnerabilities involving two contracts, the Optimism Foundation reverted its network to its permissioned state. A representative of Optimism contributor OP Labs and protocol engineer Mofi Taiwo proposed a “Granite” hard fork for September 10th to fix the vulnerabilities.

Optimism’s permissionless fraud-proof system went live two months ago. However, the foundation announced reverting to its original permissioned state after community audits revealed vulnerabilities of varying levels of severity in the new system. 

The audits revealed two major vulnerabilities that, according to Optimism’s ImmuneFi bounty scale, would have wreaked havoc upon exploitation.

Audits uncover vulnerabilities in Optimism fraud-proof contracts

The identified bugs were related to the MIPS contracts in the fraud-proof systems, which were never picked up by Optimism’s audit scope. The contracts were wrongly identified in the Posing Life and Reputational risk category and, therefore, did not attract formal audits in line with the project’s guidelines.

The Ethereum layer 2 scaling solution launched the permissionless fraud-proof system on June 10th. it incorporated the upgrade to allow users to challenge potentially incorrect or fraudulent transactions in a more decentralized manner.

According to an announcement by the Optimism Foundation, the rollback was initiated as a precautionary measure to avoid instability in the network and protect user funds. The announcement also mentioned that Optimism was fixing the bugs, and the process is anticipated to last three weeks.

See also 2024 US Elections: Trump and JD Vance might be holding $5.5M in Bitcoin

The foundation emphasized that vulnerabilities were identified before attackers could exploit them, and assets were not at risk. According to Optimism, any pending withdrawals were reset and will be required to undergo the proving process again.

Permissioned fraud-proof systems are more centralized since only trusted proposers are tasked with the ability to challenge fraudulent or incorrect transactions. The Optimism Foundation initiated the new system to deconcentrate the L2 scaling solution and achieve Stage 1 decentralization, according to Ethereum co-founder Vitalik Buterin. 

A layer 2 scaling solution needs an effective fraud-proof system secured by a multisig of trusted parties to achieve Stage 1 decentralization.

Protocol engineer Mofi Taiwo proposes a hard fork upgrade to fix the bugs

Following the network reversion to a permissioned L2 state, a representative of Optimism contributor OP Labs and protocol engineer Mofi Taiwo submitted a proposal to Optimism’s governance forum. 

“[…]However, out of an abundance of caution, the permissioned fallback mechanism has been activated in order to avoid any potential instability while the vulnerabilities are patched.” 

Mofi Taiwo

The proposal suggested activating the fallback system and highlighting the vulnerabilities in the affected contracts. He also mentioned that none of the bugs were exploited, and assets were not at risk.

In the proposal, Taiwo also suggested a hard fork upgrade dubbed “Granite,” scheduled for September 10th at 16:00:01 UTC. The hard fork is yet to undergo a formal audit. However, OP Labs launched an internal security review that concluded the changes were low-risk.

See also Crypto community eyes election as Circle CEO warns of U.S. risking global lead
0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Locked for new tokens.
APR up to 10%. Always on, always get airdrop.
Lock now!