ChainLight has discovered a soundness bug in the ZK circuit of the zkSync Era mainnet, and Matter Labs has deployed a fix.
On November 3rd, security company ChainLight disclosed that its researchers discovered a soundness bug in the ZK circuit of the zkSync Era mainnet on September 15th, and reported it on the 19th. The bug could potentially drain all tokens passed through cross-chain bridges, allowing malicious provers to generate proofs for invalidly executed blocks, which would be accepted by the verifier smart contracts on L1. Matter Labs has deployed a fix for the issue and awarded ChainLight 50,000 USDC as a reward.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
STABLEUSDT now launched for futures trading and trading bots
Martingale bot upgraded–simpler setup, more flexible features
Stock Futures Rush (phase 9): Trade popular stock futures and share $240,000 in equivalent tokenized shares. Each user can get up to $5000 META.
CandyBomb x POWER: Trade to share 4,387,500 POWER
