Opentensor Foundation Addresses Bittensor Security Breach

CN
2天前

On July 2, at 7:41 p.m. UTC, the Opentensor Foundation activated safe mode on Subtensor and placed Opentensor chain validators behind a firewall following a significant security breach. The incident involved a malicious package uploaded to the PyPi Package Manager, which compromised user security by stealing unencrypted coldkey details. The latest update noted that teams responded swiftly, halting transactions and initiating a comprehensive analysis of the situation.

The breach was identified shortly after it began at 7:06 p.m. UTC when an unusual transfer volume was detected. The Opentensor Foundation stated that the team quickly assembled a response team to address the issue, successfully neutralizing the attack within 35 minutes. The malicious package, masquerading as a legitimate Bittensor package, sent decrypted coldkey bytecode to a remote server controlled by the attacker, compromising users who had downloaded the affected version.

The foundation disclosed that participants impacted by this breach included those who used Bittensor version 6.12.2 and performed specific operations such as staking and transferring tokens. The foundation’s analysis suggests that users who did not engage in these operations or used third-party applications during the specified period were likely unaffected. Both teams continue to investigate the root cause and have implemented measures to prevent future incidents.

免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

分享