Cointime

Download App
iOS & Android

Election Fraud? Double Voting in Celer’s State Guardian Network

Jump Crypto has discovered a vulnerability in Celer's State Guardian Network, which could have allowed a malicious validator to compromise the network and applications dependent on it. The issue was privately reported to the Celer team and has since been fixed. The vulnerability involved fraudulent voting, where a malicious validator could vote multiple times on the same update, effectively multiplying their voting power and potentially tipping the vote in favor of an invalid or malicious update. This would allow them to spoof arbitrary onchain events such as bridge transfers, message emissions, or staking and delegation on Celer’s main SGN contract. While there are defense-in-depth protections in place that make a complete theft of all funds locked in its bridge unlikely, an attacker could exfiltrate tokens with a value of around $30 million before contracts are halted.

Comments

All Comments

Recommended for you