Polygon Undergoes a Secret Bug Fix... But Not Before Losing $2 Million Worth Matic Tokens

View this thread on: d.buzz | hive.blog | peakd.com | ecency.com
·@xabi·
0.000 HBD
Polygon Undergoes a Secret Bug Fix... But Not Before Losing $2 Million Worth Matic Tokens
![image.png](https://images.hive.blog/DQme4Raie782gmsaQb4xXy4GiqDzoiwtLMRRxoK4dGFCLmx/image.png)[<sup>(Source)</sup>](https://en.cryptonomist.ch/2021/12/30/polygon-a-hard-fork-to-fix-a-critical-bug/)

#### Evening

Polygon development team announced yesterday that they have fixed a network vulnerability earlier this month, that have put $24 Billion worth network's native token at risk. 

The vulnerability was in network’s proof-of-stake Genesis contract, was highlighted by two white hat hackers via bug bounty program Immunefi, on Dec. 3 and Dec. 4. The critical vulnerability put 9.27 billion MATIC tokens that represent bulk of total network's token supply of 10 Billion tokens. 

The vulnerability was patched at block 22,156,660 through an Emergency Bor Upgrade of main net on Dec. 5 at around 7:27 am UTC. However, before the bug was patched a hacker managed to get away with 801,601 MATIC tokens worth $2.04 million.

As per [Polygon blogpost](https://blog.polygon.technology/all-you-need-to-know-about-the-recent-network-upgrade/):

> The Polygon core team engaged with the group and Immunefi’s expert team and immediately introduced a fix. The validator and full node communities were notified, and they rallied behind the core devs to upgrade 80% of the network within 24 hours without stoppage.

The patch was done secretly behind close doors as per Go Ethereum's Silent Patch guideline introduced last year. The Silent Patch policy advices the developers to report the bug fixes 6 to 8 weeks after the patch, thereby preventing the risk of exploit during the bug fix. Matic token remained resilient despite of the news of the exploit and bug fixing, highlighting another benefit of Silent Patch strategy.

Two white hat hackers responsible for identifying the vulnerability, will receive a total of $3.47 million worth tokens as a bug bounty. Polygon Foundation will cover the loss of stolen Matic tokens.

![image.png](https://images.hive.blog/DQmbrLvuKcUaQ6QGFh32C9g1XkCM5TpTJuMnVhVysT4SMTe/image.png)



<center>

![158817836372645504 45.png](https://files.peakd.com/file/peakd-hive/xabi/vzEZjOB9-1588178363726455042045.png)

</center>

Posted Using [LeoFinance <sup>Beta</sup>](https://leofinance.io/@xabi/polygon-undergoes-a-secret-bug-fix-but-not-before-losing-usd2-million-worth-matic-tokens)
👍 , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,