Cryptoverse: Blockchain bridges fall into troubled waters | The Business Standard
Skip to main content
  • Home
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • World+Biz
  • Sports
  • Features
    • Book Review
    • Brands
    • Earth
    • Explorer
    • Food
    • Habitat
    • In Focus
    • Luxury
    • Mode
    • Panorama
    • Pursuit
    • Wheels
  • Epaper
    • GOVT. Ad
  • More
    • Subscribe
    • Videos
    • TBS Graduates
    • Thoughts
    • Splash
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • COVID-19
    • Long Read
    • Interviews
    • Offbeat
    • Tech
    • Magazine
  • বাংলা
The Business Standard

Saturday
December 02, 2023

Sign In
Subscribe
  • Home
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • World+Biz
  • Sports
  • Features
    • Book Review
    • Brands
    • Earth
    • Explorer
    • Food
    • Habitat
    • In Focus
    • Luxury
    • Mode
    • Panorama
    • Pursuit
    • Wheels
  • Epaper
    • GOVT. Ad
  • More
    • Subscribe
    • Videos
    • TBS Graduates
    • Thoughts
    • Splash
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • COVID-19
    • Long Read
    • Interviews
    • Offbeat
    • Tech
    • Magazine
  • বাংলা
SATURDAY, DECEMBER 02, 2023
Cryptoverse: Blockchain bridges fall into troubled waters

Global Economy

Reuters
09 August, 2022, 11:45 am
Last modified: 09 August, 2022, 11:47 am

Related News

  • ECB chief Lagarde admits her son lost crypto cash
  • Bitcoin soars to 1.5-year high on ETF bets
  • Crypto's role in financing armed groups
  • The art of enticing: How MTFE cryptocurrency Ponzi scheme deceived its users
  • EU states approve world's first comprehensive crypto rules

Cryptoverse: Blockchain bridges fall into troubled waters

At present, most digital tokens run on their own unique blockchain, essentially a public digital ledger that records crypto transactions

Reuters
09 August, 2022, 11:45 am
Last modified: 09 August, 2022, 11:47 am
Representations of cryptocurrency Bitcoin, Ethereum and Dash plunge into water in this illustration taken, May 23, 2022. REUTERS/Dado Ruvic/Illustration
Representations of cryptocurrency Bitcoin, Ethereum and Dash plunge into water in this illustration taken, May 23, 2022. REUTERS/Dado Ruvic/Illustration

Another day, another hack - and another blockchain bridge burned.

When thieves stole an estimated $190 million from US crypto firm Nomad last week, it was the seventh hack of 2022 to target an increasingly important cog in the crypto machine: Blockchain "bridges" - strings of code that help move crypto coins between different applications. 

So far this year, hackers have stolen crypto worth some $1.2 billion from bridges, data from London-based blockchain analysis firm Elliptic shows, already more than double last year's total.

The Business Standard Google News Keep updated, follow The Business Standard's Google news channel

"This is a war where the cybersecurity firm or the project can't be a winner," said Ronghui Hu, a professor of computer science at Columbia University in New York and co-founder of cybersecurity firm CertiK.

"We have to protect so many projects. For them (hackers) when they look at one project and there's no bugs, they can simply move on to the next one, until they find a one weak point."

At present, most digital tokens run on their own unique blockchain, essentially a public digital ledger that records crypto transactions. That risks projects using these coins becoming siloed, reducing their prospects for wide use.

Blockchain bridges aim to tear down these walls. Backers say they will play a fundamental role in "Web3" - the much-hyped vision of a digital future where crypto's enmeshed in online life and commerce.

Yet bridges can be the weakest link.

The Nomad hack was the eighth-biggest crypto theft on record. Other thefts from bridges this year include a $615 million heist at Ronin, used in a popular online game, and a $320 million theft at Wormhole, used in so-called decentralised finance applications. 

"Blockchain bridges are the most fertile ground for new vulnerabilities," said Steve Bassi, co-founder and CEO of malware detector PolySwarm.

ACHILLES HEEL

Nomad and others companies that make blockchain bridge software have attracted backing.

Just five days before it was hacked, San Francisco-based Nomad said it had raised $22.4 million from investors including major exchange Coinbase Global Nomad CEO and co-founder Pranay Mohan called its security model the "gold standard."

Nomad did not respond to requests for comment.

It has said it is working with law enforcement agencies and a blockchain analysis firm to track the stolen funds. Late last week, it announced a bounty of up to 10% for the return of funds hacked from the bridge. It said on Saturday it had recovered over $32 million of the hacked funds so far.

"The most important thing in crypto is community, and our number one goal is restoring bridged user funds," Mohan said. "We will treat any party who returns 90% or more of exploited funds as a white hats. We will not prosecute white hats," he said, referring to so-called ethical hackers.

Several cyber security and blockchain experts told Reuters that the complexity of bridges meant they could represent an Achilles' heel for projects and applications that used them.

"A reason why hackers have targeted these cross-chain bridges of late is because of the immense technical sophistication involved in creating these kinds of services," said Ganesh Swami, CEO of blockchain data firm Covalent in Vancouver, which had some crypto stored on Nomad's bridge when it was hacked.

For instance, some bridges create versions of crypto coins that make them compatible with different blockchains, holding the original coins in reserve. Others rely on smart contracts, complex covenants that execute deals automatically.

The code involved in all of these can contain bugs or other flaws, potentially leaving the door ajar for hackers.

BUG BOUNTIES

So how best to address the problem?

Some experts say audits of smart contracts could help to guard against cyber thefts, as well as "bug bounty" programmes that incentivise open-sourced reviews of smart contract code.

Others call for less concentration of control of the bridges by individual companies, something they say could bolster resiliency and transparency of code.

"Cross-chain bridges are an attractive target for hackers because they often leverage a centralized infrastructure, most of which lock up assets," said Victor Young, founder and chief architect at US blockchain firm Analog.

Tech / Top News / World+Biz

Blockchain / cryptocurrency

Comments

While most comments will be posted if they are on-topic and not abusive, moderation decisions are subjective. Published comments are readers’ own views and The Business Standard does not endorse any of the readers’ comments.

Top Stories

  • Will Bangladeshi garment exporters be able to meet EU's upcoming standards?
    Will Bangladeshi garment exporters be able to meet EU's upcoming standards?
  • A file photo of Election Commission building. Photo: Collected
    EC asks govt to transfer OCs, UNOs ahead of election
  • Illustration: TBS
    4 parties deny fielding candidates after EC data shows their contestants

MOST VIEWED

  • Illustration: TBS
    I am afraid even to post a thank you note on Facebook: Khadija
  • US dollar banknotes are seen in this illustration taken on 10 March 2023. Photo: Reuters
    Remittance dollar surges to Tk123, defying efforts to control it
  • The above shows a pediatric hospital in California in January 2021, when hospitals in the US were hit by a wave of sick children  Photo AFP by Getty Image
    What is White Lung Syndrome? Mysterious pneumonia fast striking children
  • Coxs Bazar express started for Dhakat at 12:40pm on 1 December. Photo: TBS
    Train to the sea: Dhaka-Cox's Bazar rail service begins
  • EU wants Bangladesh to act on labour rights as pledged
    EU wants Bangladesh to act on labour rights as pledged
  • The Merlion and Marina Bay Sands in Singapore.
Photo: Bloomberg
    These are the world's most expensive cities to live in right now

Related News

  • ECB chief Lagarde admits her son lost crypto cash
  • Bitcoin soars to 1.5-year high on ETF bets
  • Crypto's role in financing armed groups
  • The art of enticing: How MTFE cryptocurrency Ponzi scheme deceived its users
  • EU states approve world's first comprehensive crypto rules

Features

(From Left) Sahid Hossain Mustakim, Sadia Ahmmed and Jishanul Islam are from United International University while Aadiba Tasneem Anam, who was not present at the event, studies at North South University. PHOTO: COURTESY

IPBlockchainPro: An invention by Bangladeshi students that could revolutionise the IP landscape

12h | Pursuit
Infograph: TBS

Elevate your leadership skills with free online courses

14h | Pursuit
Girls outperform boys in SSC and HSC. What prevents them from climbing higher? 

Girls outperform boys in SSC and HSC. What prevents them from climbing higher? 

19h | Panorama
Kissinger’s foreign policy and courses of action during his active years in office altered the lives of millions across the world. PHOTO: COLLECTED

Kissinger: A quiet end to a bloody legacy

23h | Panorama

More Videos from TBS

Small parties make big buzz

Small parties make big buzz

13h | TBS Stories
Saudi PIF to buy 10% stake in Heathrow Airport

Saudi PIF to buy 10% stake in Heathrow Airport

9h | TBS Economy
Are these the most thrilling hotels?

Are these the most thrilling hotels?

14h | TBS World
Is USA the obstacle to WB's climate finance?

Is USA the obstacle to WB's climate finance?

1d | TBS Economy
EMAIL US
[email protected]
FOLLOW US
WHATSAPP
+880 1847416158
The Business Standard
  • About Us
  • Contact us
  • Sitemap
  • Privacy Policy
  • Comment Policy
Copyright © 2023
The Business Standard All rights reserved
Technical Partner: RSI Lab

Contact Us

The Business Standard

Main Office -4/A, Eskaton Garden, Dhaka- 1000

Phone: +8801847 416158 - 59

Send Opinion articles to - [email protected]

For advertisement- [email protected]