Zano exploiter created 36.9M unauthorized ZANO before blockchain rollback
What happened
Zano revealed that the attacker who exploited its Gateway Address vulnerability over the last month used it to create 36.9 million Zano (ZANO), along with Freedom Dollar (fUSD) tokens, before the decision was made to roll the blockchain back by a month. In a post-mortem published Thursday, Zano said the attacker first exploited the vulnerability on Aug.
Cointelegraph reached out to Zano for comment. The unauthorized coins were indistinguishable from legitimate ZANO, leaving the team unable to remove them without rolling back the blockchain.
The attacker repeated the exploit on Sept. The team said a portion entered the Zano ecosystem.
“These coins functioned as authentic ZANO and could be spent normally,” the team wrote in its post-mortem. The figures shed light on why the Zano team called for a rollback of about a month of blockchain history, including legitimate transactions.
The team acknowledged that the rollback would hurt trust but argued it was necessary to remove unauthorized supply as it could not be distinguished from legitimate coins. The attacker registered a Gateway Address on Aug.
Sources & evidence
- Cointelegraph Reporting source
Zano exploiter minted more than a quadrillion fUSD before blockchain rollback ↗
https://cointelegraph.com/news/zano-exploiter-created-369m-unauthorized-zano-before-blockchain-rollback