• bitcoinBitcoin (BTC) $ 66,524.00
  • ethereumEthereum (ETH) $ 3,560.63
  • tetherTether (USDT) $ 0.999677
  • bnbBNB (BNB) $ 606.42
  • solanaSolana (SOL) $ 145.04
  • staked-etherLido Staked Ether (STETH) $ 3,559.52
  • usd-coinUSDC (USDC) $ 0.999942
  • xrpXRP (XRP) $ 0.492120
  • dogecoinDogecoin (DOGE) $ 0.135711
  • the-open-networkToncoin (TON) $ 8.00
  • cardanoCardano (ADA) $ 0.415785
  • shiba-inuShiba Inu (SHIB) $ 0.000021
  • avalanche-2Avalanche (AVAX) $ 30.01
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 66,557.00
  • tronTRON (TRX) $ 0.115321
  • chainlinkChainlink (LINK) $ 15.02
  • uniswapUniswap (UNI) $ 11.48
  • polkadotPolkadot (DOT) $ 6.23
  • bitcoin-cashBitcoin Cash (BCH) $ 431.66
  • nearNEAR Protocol (NEAR) $ 5.62
  • litecoinLitecoin (LTC) $ 79.12
  • matic-networkPolygon (MATIC) $ 0.616104
  • wrapped-eethWrapped eETH (WEETH) $ 3,697.68
  • leo-tokenLEO Token (LEO) $ 5.84
  • daiDai (DAI) $ 0.999338
  • pepePepe (PEPE) $ 0.000012
  • internet-computerInternet Computer (ICP) $ 9.18
  • ethereum-classicEthereum Classic (ETC) $ 25.32
  • kaspaKaspa (KAS) $ 0.155560
  • fetch-aiFetch.ai (FET) $ 1.45
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,544.51
  • aptosAptos (APT) $ 7.83
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • moneroMonero (XMR) $ 173.17
  • render-tokenRender (RNDR) $ 8.04
  • hedera-hashgraphHedera (HBAR) $ 0.085111
  • filecoinFilecoin (FIL) $ 5.20
  • mantleMantle (MNT) $ 0.888431
  • stellarStellar (XLM) $ 0.098843
  • blockstackStacks (STX) $ 1.93
  • cosmosCosmos Hub (ATOM) $ 7.18
  • okbOKB (OKB) $ 46.15
  • crypto-com-chainCronos (CRO) $ 0.099180
  • arbitrumArbitrum (ARB) $ 0.916806
  • immutable-xImmutable (IMX) $ 1.72
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.998739
  • dogwifcoindogwifhat (WIF) $ 2.51
  • injective-protocolInjective (INJ) $ 25.11
  • suiSui (SUI) $ 0.939818
  • optimismOptimism (OP) $ 2.07
  • the-graphThe Graph (GRT) $ 0.234970
  • makerMaker (MKR) $ 2,354.61
  • bittensorBittensor (TAO) $ 309.28
  • vechainVeChain (VET) $ 0.029113
  • notcoinNotcoin (NOT) $ 0.020304
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,948.62
  • flokiFLOKI (FLOKI) $ 0.000202
  • arweaveArweave (AR) $ 28.15
  • lido-daoLido DAO (LDO) $ 2.06
  • fantomFantom (FTM) $ 0.627663
  • jasmycoinJasmyCoin (JASMY) $ 0.036099
  • ondo-financeOndo (ONDO) $ 1.19
  • theta-tokenTheta Network (THETA) $ 1.70
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,683.05
  • bonkBonk (BONK) $ 0.000025
  • bitget-tokenBitget Token (BGB) $ 1.16
  • thorchainTHORChain (RUNE) $ 4.68
  • celestiaCelestia (TIA) $ 7.83
  • based-brettBrett (BRETT) $ 0.151157
  • coredaoorgCore (CORE) $ 1.55
  • whitebitWhiteBIT Coin (WBT) $ 9.63
  • eosEOS (EOS) $ 0.660104
  • pyth-networkPyth Network (PYTH) $ 0.353866
  • algorandAlgorand (ALGO) $ 0.155210
  • sei-networkSei (SEI) $ 0.414038
  • aaveAave (AAVE) $ 84.84
  • ethenaEthena (ENA) $ 0.759774
  • starknetStarknet (STRK) $ 0.940952
  • quant-networkQuant (QNT) $ 82.82
  • galaGALA (GALA) $ 0.033110
  • jupiter-exchange-solanaJupiter (JUP) $ 0.873086
  • flare-networksFlare (FLR) $ 0.027037
  • cheeleeCheelee (CHEEL) $ 20.17
  • gatechain-tokenGate (GT) $ 8.55
  • flowFlow (FLOW) $ 0.723390
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,594.26
  • kucoin-sharesKuCoin (KCS) $ 10.44
  • axie-infinityAxie Infinity (AXS) $ 6.74
  • bittorrentBitTorrent (BTT) $ 0.000001
  • bitcoin-svBitcoin SV (BSV) $ 49.40
  • ordinalsORDI (ORDI) $ 45.47
  • beam-2Beam (BEAM) $ 0.019300
  • tokenize-xchangeTokenize Xchange (TKX) $ 11.73
  • zebec-protocolZebec Protocol (ZBC) $ 0.018258
  • dydx-chaindYdX (DYDX) $ 1.53
  • chilizChiliz (CHZ) $ 0.101406
  • elrond-erd-2MultiversX (EGLD) $ 33.22
  • neoNEO (NEO) $ 12.70
  • the-sandboxThe Sandbox (SAND) $ 0.384731
  • roninRonin (RON) $ 2.57
  • gnosisGnosis (GNO) $ 327.05
  • pendlePendle (PENDLE) $ 5.45
  • worldcoin-wldWorldcoin (WLD) $ 3.43
  • wormholeWormhole (W) $ 0.454309
  • oasis-networkOasis Network (ROSE) $ 0.121826
  • akash-networkAkash Network (AKT) $ 3.37
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,554.94
  • tezosTezos (XTZ) $ 0.814874
  • singularitynetSingularityNET (AGIX) $ 0.616354
  • conflux-tokenConflux (CFX) $ 0.187309
  • msolMarinade Staked SOL (MSOL) $ 173.51
  • nexoNEXO (NEXO) $ 1.35
  • mina-protocolMina Protocol (MINA) $ 0.659882
  • ethereum-name-serviceEthereum Name Service (ENS) $ 23.34
  • usddUSDD (USDD) $ 0.996946
  • ecasheCash (XEC) $ 0.000037
  • livepeerLivepeer (LPT) $ 22.02
  • decentralandDecentraland (MANA) $ 0.386926
  • dexeDeXe (DEXE) $ 12.63
  • havvenSynthetix Network (SNX) $ 2.18
  • dog-go-to-the-moon-runeDOG•GO•TO•THE•MOON (Runes) (DOG) $ 0.007041
  • book-of-memeBOOK OF MEME (BOME) $ 0.010288
  • fasttokenFasttoken (FTN) $ 2.21
  • frax-etherFrax Ether (FRXETH) $ 3,541.25
  • safeSafe (SAFE) $ 1.60
  • lido-staked-solLido Staked SOL (STSOL) $ 171.65
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.51
  • klay-tokenKlaytn (KLAY) $ 0.179889
  • apecoinApeCoin (APE) $ 1.06
  • aioz-networkAIOZ Network (AIOZ) $ 0.595213
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,820.43
  • fraxFrax (FRAX) $ 0.997590
  • mantra-daoMANTRA (OM) $ 0.768368
  • iotaIOTA (IOTA) $ 0.191191
  • swethSwell Ethereum (SWETH) $ 3,762.85
  • kavaKava (KAVA) $ 0.557689
  • nervos-networkNervos Network (CKB) $ 0.013101
  • tether-goldTether Gold (XAUT) $ 2,332.70
  • heliumHelium (HNT) $ 3.43
  • rocket-poolRocket Pool (RPL) $ 27.77
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000102
  • staked-frax-etherStaked Frax Ether (SFRXETH) $ 3,871.12
  • constitutiondaoConstitutionDAO (PEOPLE) $ 0.109010
  • theta-fuelTheta Fuel (TFUEL) $ 0.081367
  • magaMAGA (TRUMP) $ 11.44
  • axelarAxelar (AXL) $ 0.768341
  • aevo-exchangeAevo (AEVO) $ 0.629336
  • illuviumIlluvium (ILV) $ 79.51
  • 1inch1inch (1INCH) $ 0.416470
  • blurBlur (BLUR) $ 0.310750
  • ioio.net (IO) $ 5.43
  • xdce-crowd-saleXDC Network (XDC) $ 0.034070
  • bitcoin-goldBitcoin Gold (BTG) $ 28.69
  • true-usdTrueUSD (TUSD) $ 0.997274
  • corgiaiCorgiAI (CORGIAI) $ 0.001364
  • woo-networkWOO (WOO) $ 0.247279
  • iotexIoTeX (IOTX) $ 0.049351
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.11
  • stader-ethxStader ETHx (ETHX) $ 3,665.51
  • ether-fiEther.fi (ETHFI) $ 3.99
  • raydiumRaydium (RAY) $ 1.71
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000021
  • astarAstar (ASTR) $ 0.078847
  • arkhamArkham (ARKM) $ 1.88
  • pax-goldPAX Gold (PAXG) $ 2,331.46
  • golemGolem (GLM) $ 0.432144
  • polymeshPolymesh (POLYX) $ 0.405488
  • memecoin-2Memecoin (MEME) $ 0.021187
  • apenftAPENFT (NFT) $ 0.00000043
  • aerodrome-financeAerodrome Finance (AERO) $ 0.843498
  • paypal-usdPayPal USD (PYUSD) $ 0.998509
  • manta-networkManta Network (MANTA) $ 1.27
  • echelon-primeEchelon Prime (PRIME) $ 10.01
  • dydxdYdX (ETHDYDX) $ 1.53
  • ocean-protocolOcean Protocol (OCEAN) $ 0.627246
  • usdbUSDB (USDB) $ 0.997974
  • stepnGMT (GMT) $ 0.192098
  • compound-ethercETH (CETH) $ 71.57
  • osmosisOsmosis (OSMO) $ 0.600641
  • kusamaKusama (KSM) $ 26.44
  • wemix-tokenWEMIX (WEMIX) $ 1.09
  • biconomyBiconomy (BICO) $ 0.487660
  • pepecoin-2PepeCoin (PEPECOIN) $ 3.29
  • curve-dao-tokenCurve DAO (CRV) $ 0.306584
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.004276
  • mx-tokenMX (MX) $ 3.80
  • safepalSafePal (SFP) $ 0.799948
  • compound-governance-tokenCompound (COMP) $ 53.13
  • radixRadix (XRD) $ 0.034730
  • zilliqaZilliqa (ZIL) $ 0.019616
  • celoCelo (CELO) $ 0.671852
  • aragonAragon (ANT) $ 9.06
  • holotokenHolo (HOT) $ 0.002023
  • superfarmSuperVerse (SUPER) $ 0.793991
  • dymensionDymension (DYM) $ 2.01
  • terra-luna-2Terra (LUNA) $ 0.513651
  • altlayerAltLayer (ALT) $ 0.231444
  • ankrAnkr Network (ANKR) $ 0.034731
  • zcashZcash (ZEC) $ 22.85
  • jito-governance-tokenJito (JTO) $ 2.82

Resonance Security flags concerns over potential metadata misuse in Runes

0 22

Resonance Security flags concerns over potential metadata misuse in Runes

  crypto.news 1 h

Resonance Security flags concerns over potential metadata misuse in Runes

Resonance Security analysts uncovered a potential vulnerability in the Runes protocol, highlighting concerns of exploitation by bad actors in the crypto space.

The Runes protocol, which operates as a native Bitcoin protocol aiming to streamline the creation of fungible tokens on the Bitcoin network, appears to have a significant red flag in its functionality, opening doors for potential misuse, according to a research report conducted by Resonance Security and seen by crypto.news.

Unlike its counterpart, the Ordinals protocol, which inscribes data to individual satoshis on the chain, Runes focuses on creating interchangeable tokens through the use of the Unspent Transaction Output (UTXO) model.

Resonance Security flags concerns over potential metadata misuse in Runes

An example Runestone struct capable of inputting a URL into the token’s metadata | Source: Resonance Security

Despite its promising functionality, the protocol apparently allows the inclusion of URLs in the metadata of Runes tokens, making it possible for potential exploitation by malicious actors, the security experts warn.

“[…] malicious URLs are often involved in phishing attacks, malware infections, and many other cyber violations. So, what’s stopping the bad guys from using this metadata allowance for their own nefarious purposes? Nothing.”

Resonance Security

You might also like: Runes is making Bitcoin fun and accessible again | Opinion

The experts said that because of blockchain’s unchangeable and clear way of recording data, malicious URL links can stay around forever, making the problem worse.

Illustrating the potential threat, the Resonance Security team outlined a hypothetical scenario where an attacker could embed a malicious URL within a Runes token and initiate an airdrop campaign to distribute the token widely. Unsuspecting users, enticed by promised rewards, could fall victim to phishing sites upon clicking the URL, compromising their sensitive information.

“While the emergence of protocols like Runes brings exciting opportunities for expanding the functionality, development, and ecosystems of Bitcoin, and blockchain technology as a whole, it also underscores the importance of remaining vigilant in the face of potential cybersecurity risks.”

Resonance Security

Although the Resonance Security team didn’t attribute any malicious intent to the creators of the Runes protocol, they highlighted the critical importance of identifying and addressing potential cybersecurity risks in developing blockchain protocols.

Read more: Bitcoin Runes activity drops significantly, weeks after generating $135m in fees

Source

Leave A Reply

Your email address will not be published.