IOTA exploit gets worse

tl;dr: IOTA is so batshit crazy they managed to turn a theoretical one-time-signature vulnerability into an actual, practical to exploit one. (pulled from https://twitter.com/peterktodd/status/973361493386215424)

This is a very interesting but technical read. http://blog.lekkertech.net/blog/2018/03/07/iota-signatures/

with this news in mind i think i’m going to liquidate my iota bags until they make moves to improve security.

3 Likes

IOTA is vulnerable to replay attacks but has no intention of fixing the flaw

"Still, it is worth noting that, while the vulnerability is similar to the signature issue previously disclosed by Neha Narula from the MIT Digital Currency Initiative (DCI), this is a newly discovered flaw.

The good thing, the author highlights, is that the glitch is relatively easy to eliminate.

IOTA developer Lewis Freiberg has since confirmed the issue is indeed authentic in a statement on Reddit. Still, the developer downplayed the severity of the vulnerability, adding that the company has no intention of tweaking the core architecture of the network to “accommodate this edge case.”

In any case, the decision not to patch the exploit is odd – especially because both Rebstock and Freiberg agree it is a pretty “simple fix.”

I’m not afan of the way IOTA goes about things at all,never could convince myself to invest.

2 Likes

💰 YEN · YouTube ·️ YEN.CAMP 🧠