Logo
Cardano Ecosystem

The Defiant

07/01/2022

·

768 views


Polygon and Fantom Services Restored After Phishing Attack 

Blockchain networks Polygon and Fantom suffered a DNS attack Friday that directed users to malicious websites created to steal the keys to their digital wallets. 

Polygon and Fantom Services Restored After Phishing Attack 

Blockchain networks Polygon and Fantom suffered a DNS attack Friday that directed users to malicious websites created to steal the keys to their digital wallets. 

Safe access to the crypto platforms’ websites was restored shortly before noon Friday, according to the co-founder of Ankr, an infrastructure firm. Ankr provides Polygon and Fantom with public RPC gateways, computer programs that allow crypto wallets and web browsers to communicate with Ethereum validator nodes. 

The attack began with a breach at Ankr’s DNS provider, Gandi, according to Ankr co-founder Chandler Song.

“The attacker basically social-engineered the customer service [at Gandi] and pretended to be an Ankr employee,” Song explained in an interview with The Defiant, and “had the entire corporate email address changed on Gandi.” 

Ankr Nodes Affected

The attack affected a pair of nodes that Ankr offers the Polygon and Fantom communities at no cost, “simply out of goodwill to the developer community and the users,” Song said. The attacker was then able to send users an error message directing them to a website where they were instructed to connect their crypto wallets. 

“It’s obviously a phishing scam,” Song said. “Hopefully not a single person clicked on those websites, but so far I’ve not heard of anyone clicking on those websites.”

Polygon co-founder Sandeep Nailwal took to Twitter to assure users the Polygon blockchain was running without issues, and to direct them to alternative RPC providers, such as Infura and Alchemy. 

Gandi Security Practices 

Song slammed Gandi’s security practices, saying it was too easy for the attacker to successfully impersonate an Ankr employee. He added that Ankr had already ditched Gandi as it DNS provider for its free Polygon and Fantom RPC service. 

It wasn’t the only change discussed in light of Friday’s incident. 

Polygon is looking into longer-term solutions that would prevent a repeat of Friday’s breach, according to chief information security officer Mudit Gupta. 
“We are also working on a more decentralized alternative as a research project and a foundation owned RPC node for more reliability,” he tweeted.

AD

SNEKbot by DexHunter on CARDANO

Cardano's Telegram Trading Bot live on Cardano mainnet!TRADE NOW!


Read Original Article on The Defiant

ORIGINAL SOURCE

https://thedefiant.io/polygon-fantom-phi...

Disclaimer: Cardano Feed is a Decentralized News Aggregator that enables journalists, influencers, editors, publishers, websites and community members to share news about the Cardano Ecosystem. User must always do their own research and none of those articles are financial advices. The content is for informational purposes only and does not necessarily reflect our opinion.


Genius Yields DEX Launched!

More from The Defiant

See more
Synapse to Roll Out Blockchain as Part of Major Upgrade
The Defiant
Synapse to Roll Out Blockchain as Part of Major Upgrade

07/31/2022

·

761 views

Related News

See more
Genius Yields DEX Launched!

Featured News

See more



    DEFAULTENGLISH (EN)SPANISH (ES)RUSSIAN (RU)GERMAN (DE)ITALIAN (IT)POLISH (PL)HUNGARIAN (HU)JAPANESE (JA)THAI (TH)ARABIC (AR)VIETNAMESE (VI)PERSIAN (FA)GREEK (EL)INDONESIAN (ID)ROMANIAN (RO)KOREAN (KO)FRENCH (FR)CZECH (CS)PORTUGUESE (PT)TURKISH (TR)