360 team announces discovery blockchain e
quantum chain
Recently, Vulcan team of 360 company found a series of high-risk security vulnerabilities in EOS, a blockchain platform. It is verified that some of the vulnerabilities can remotely execute arbitrary code on EOS nodes, that is, they can directly control and take over all nodes running on EOS through remote attacks
In the early morning of May 29, 360 reported this kind of vulnerability to EOS official for the first time, and assisted it to repair the security risks. The person in charge of the EOS network said that the EOS network will not be officially launched until these problems are fixed
EOS super node attack: the virtual currency transaction is completely controlled
in the attack, the attacker will construct and publish a smart contract containing malicious code, and the EOS super node will execute the malicious contract and trigger the security vulnerability. The attacker then uses the super node to pack the malicious contract into a new block, resulting in the remote control of all nodes in the network (alternative super node, exchange recharge withdrawal node, digital currency wallet server node, etc.)
because the system of the node has been completely controlled, the attacker can "do whatever he wants", such as stealing the key of the EOS super node and controlling the virtual currency transaction of the EOS network; Obtain other financial and privacy data in the participating node system of EOS network, such as digital currency in the exchange, user key stored in the wallet, key user information and privacy data, etc
What's more, an attacker can turn a node in the EOS network into a member of a botnet, launch a network attack, or become a free "miner" to extract other digital currency
source: Science and Technology News
first, ask the respondents how many people have played this pocc
Second, all the projects are fake at the beginning. believe me. Only in the process of doing it successfully, it's true
Third, bitcoin is successful, with a market size of $1 trillion today. If it fails, it is a liar
Fourth, in addition to the mainstream digital currency, the risk is smaller (not without risk), similar to bitcoin, TEDA currency, ether currency, etc. Other small-scale counterfeit currencies are highly risky. How to determine the scale of a digital currency, or the market value, and recommend a software (non trumpet)< No need to think about supervision. There is no guarantee. It all depends on your control and understanding of the project. The brave starve the timid< 6. To judge whether a project is safe or not, it is necessary to have an in-depth understanding and communicate with the team. You need to know what the team wants to do, whether it's running for money or really want to do something< How to judge the quality of a project
there are roughly two points: the way of admission, the rate of return of offline development
is it simply to give money to the project party? Is sharing the benefits of offline development very outrageous
as far as I know, pocc mode is to spend money to buy digital currency, POC is using POC to replace mining machine, mining machine proces ore, and sells it in the exchange. The model is similar to bitcoin, but different. Moreover, in the process of transaction, the project party can't receive any money at all, and they all transfer their own business. This greatly limits the project side to circle money. And basically a miner can be realized once in about 6 days. It's also very secure for money. Secondly, the development of offline, can get about 3 poccs a day, this should not be outrageous
1. At present, the supervision of all digital currencies is not perfect, including bitcoin, Ethereum EOS and other top digital currencies in the world
2. Clearly reply that you are not a MLM company. You can understand pocc as a start-up company. It wants to go public (make it into a big currency like bitcoin Ethereum EOS). If you succeed, everyone will benefit. If you fail, your investment will not be affected, because you can recover the cost in six months
3. For those who say they have been cheated, publish their ID or your currency address, and the platform will query the records for you to see if you have been cheated
4. Pocc skin shrimp public chain, with (non small) can query the relevant information, non small is a professional third-party information website, all digital currency can query
5. As far as I know, there are a group of professional spurts on the Internet. One is to release negative news to attract attention and improve their own traffic. The second is to blackmail the platform for sealing fees
6. Since September 2018, there has been no loss and it is still running steadily. The benefits are consistent. Your friend tried, earned, recommended to you, you are still hesitant, to the Internet to find those who have not played the project, do reference, you will never earn money
7. Many people have been cheated by blockchain and various kinds of funds. You've heard about it and seen it. But you just didn't get involved
8, those who say pull the head, the tiktok speed version of the top page speed version does not pull the head? Wechat does not attract people in the initial stage? Alipay didn't pull the plug at the beginning? The network does not pull the head in the initial stage
9. Any project can't do without fans. Only fans can grow and last, and fans can only gain profits without loss, just like stocks. Those who hold the original stocks can make profits, but the loss is the secondary market
10. I hope those who talk nonsense blindfolded can experience it. Here's the screenshot BB.
On June 8, 360 exposed the high-risk vulnerability of EOS, which caused a lot of hot discussion among networks. In the early morning of June 2, Beijing time, EOS officially acknowledged to the 360 security team and offered a reward of US $30000, strongly calling on the security community to work together to ensure the continuous improvement of EOS software security
360 exposed EOS vulnerability, if exploited, can control every node and every server in the EOS network, not only take over the virtual currency, various transactions and applications in the network, but also take over all participating servers in the node. It can be said that if someone makes a malicious smart contract, all the digital currencies in it can be taken away directly
the attack of EOS vulnerability can spread among multiple nodes and super nodes at the speed of seconds. The continuous propagation from the control node to the generation of new blocks is a continuous and chain explosion action. It is likely to take over all nodes and complete the operation in 20 seconds
imagine that when the attacker has obtained the supreme authority in the entire EOS network, it is equivalent to mieba putting together all six cosmic protoliths, and can change rapidly in the universe and do whatever he likes
source: China News
the suggestion is to redo the system, and then find the guardian God to reinforce the system security for you, so as to completely plug the loopholes.
2, transaction. At present, the transaction of IP assets is solid, and the transaction and authorization operations are more complex
3
please log in to Jingdong financial app, and the operation process is as follows: