FinanceLane
crypto
  • Funding
    • Equity Funding
    • Debt Funding
    • Crowdfunding
    • Real Estate Funding
  • Investing
    • Stocks
    • Bonds
    • Mutual Funds
    • Commodities
    • Forex
    • Private Equity
    • Real Estate
    • Crypto Investing
  • Lending
    • Personal Loan
    • Business Loan
    • Mortgage
    • Credit Card
    • Microfinance
    • Peer-to-Peer Lending
  • Insurance
    • Life Insurance
    • Health Insurance
    • Auto Insurance
    • Education Insurance
    • General Insurance
  • Banking
    • Individual Banking
    • Business Banking
    • Investment Banking
    • Neo Banking
    • Payments Bank
  • Wealth
    • Earning
    • Savings
    • Investments
    • Budgeting
    • Credit Management
    • Tax Planning
    • Retirement
  • Fintech
    • Payments
    • Digital Banks
    • Alternative Financing
    • Asset Management
    • Softwares
  • Startup
    • Startup Ecosystem
    • Merging & Acquisition
    • Equity Investing
    • Franchising
    • Business Offers
  • Crypto
    • Crypto Coins
    • Crypto Trading
    • Bitcoin
    • Blockchain
    • DAPP
    • Crypto Investing
  • Login
No Result
View All Result
FinanceLane
  • Home
  • Funding
  • Investing
  • Lending
  • Insurance
  • Banking
  • Wealth
  • Crypto
  • Newsletters
  • Feedback
Home Crypto Blockchain

Conflux (CFX) Network Addresses Security Vulnerability in Latest Upgrade

Blockchainby Blockchain
March 24, 2025

Darius Baruo Mar 24, 2025 09:28

Conflux (CFX) Network has completed a significant security upgrade to address a vulnerability in its EVM, enhancing the safety of user assets and reinforcing ecosystem security.

Conflux (CFX) Network Addresses Security Vulnerability in Latest Upgrade

The Conflux (CFX) Network has successfully executed a critical security upgrade, version 2.5, on March 17, 2025, following the discovery of a vulnerability in its Ethereum Virtual Machine (EVM). This vulnerability was initially identified by the GraFun team, according to Conflux Forum.

Background of the Incident

The vulnerability, reported on February 13, 2025, involved the CREATE2 opcode, which permitted the redeployment of contracts at existing addresses, potentially resetting their state. This flaw deviated from the standard Ethereum EVM behavior, where such redeployment is prohibited.

Security Impact Assessment

A comprehensive security impact assessment revealed that most factory contracts, like Swappi factories, were unaffected due to additional address conflict checks. However, Gnosis Safe contracts lacked these checks, posing a risk of state reset and enabling replay attacks on previously signed transactions.

The security assessment involved examining approximately 30 Gnosis Safe contracts, revealing that while most funds were secure, a minority might be at risk.

Security Response Process

Conflux acted swiftly to mitigate the threat by notifying ecosystem partners and facilitating the transfer of at-risk assets. The security upgrade process involved several phases:

  • Vulnerability Fix and Integration Testing: Completed by February 21.
  • Internal Testnet Upgrade: Conducted on February 24.
  • Public Testnet Upgrade: Announced February 25, effective March 3.
  • Mainnet Upgrade Deployment: Announced March 3, effective March 17.

Postmortem Analysis

The vulnerability stemmed from the Conflux EVM’s original code ported from OpenEthereum, which contained misleading comments and lacked clear error definitions. These factors led to a misunderstanding of Ethereum’s CREATE2 behavior, resulting in the omission of critical checks in Conflux’s implementation.

Bug Bounty Reward

Recognizing the severity of the vulnerability, Conflux awarded the GraFun team a total bounty of 60,000 CFX, acknowledging their timely report and the prevention of potential losses.

Follow-Up Actions and Security Enhancements

Looking ahead, Conflux plans to synchronize with Ethereum EVM features and integrate official test cases to prevent similar vulnerabilities. This move aims to enhance Conflux’s security and compatibility with Ethereum’s ecosystem.

The Conflux team remains dedicated to transparency and rapid response, ensuring the security of its ecosystem and the protection of user interests.

Image source: Shutterstock Read The Original Article on Blockchain.News

Tags: BlockchainCONFLUXNewsSecurityUpgrade

Related Topics

Advisory

Here’s how you can protect your turf at work

Advisory

What should FD investors do now? RBI cuts repo rate by 50 bps, interest rates will fall further

Prev Next

You May Like

Advisory

Here’s how you can protect your turf at work

Advisory

What should FD investors do now? RBI cuts repo rate by 50 bps, interest rates will fall further

Advisory

Big savings for home loan borrowers as EMIs to fall significantly after RBI cuts repo rate by 50 bps

Advisory

Bakrid bank holiday today: Are banks open or closed in your state on June 6, 2025 for Id-ul-Ad’ha 2025

Advisory

HDFC Bank UPI and other services won’t be available on this date: Check details here

Advisory

Waiting list train ticket? Get ticket confirmation assurance with up to 3x money back guarantee from Ixigo, Redbus and MakeMyTrip

Advisory

Bank holiday on June 6, 2025 and June 7, 2025: Are banks closed tomorrow in your state for Bakrid?

Advisory

5 things you’re probably doing, that are pushing away success at your job

Financial News

Blockchain

Tether and Medoo Partner to Launch Blockchain Academy in Vietnam

Blockchain
by Blockchain
Advisory

Got an income tax notice? Here are common types of tax notices and what to do to avoid penalties

FinanceLane
by FinanceLane
Advisory

RIL shareholders: How to claim your unpaid dividends before they’re transferred to IEPF

FinanceLane
by FinanceLane
Investing

Is time in the market really better than timing the market?

FinanceLane
by FinanceLane
Advisory

IRCTC bans waiting list passengers from Sleeper and AC travel starting May 1, 2025

FinanceLane
by FinanceLane
Advisory

Employees of only 3,604 start-ups are eligible for tax relief on ESOPs: Will Budget 2025 extend this relief to all start-ups, unlisted companies?

FinanceLane
by FinanceLane
Blockchain News

GalaCoin Phases Out, Welcomes Players to Treasure Tapper

Blockchain
by Blockchain
Advisory

Paytm UPI statement download: Paytm UPI users can now download expense statement in PDF, Excel to track spending habits

FinanceLane
by FinanceLane
Advisory

Latest loan interest rates in January 2025: HDFC Bank, Bank of Baroda, PNB, Canara Bank, IDBI Bank

FinanceLane
by FinanceLane
Blockchain News

Render Network Explores Decentralized AI Future at ETH Denver 2025

Blockchain
by Blockchain
Advisory

This anime meme coin is likely to challenge Shiba Inu

FinanceLane
by FinanceLane
Advisory

New Tax Bill 2025: No Nil TDS certificate for all taxpayers including NRIs; What does it mean for Indians and NRIs?

FinanceLane
by FinanceLane
Load More
FinanceLane.com
  • Disclaimer
  • Privacy Policy
  • Terms of use
  • Subscribe
  • Contact

Subscribe to get the latest updates

Follow us on

© 2022 FinanceLane.com. All rights reserved.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
  • Home
  • Funding
    • Equity Funding
    • Debt Funding
    • Real Estate Funding
    • Crowdfunding
  • Investing
    • Stocks
    • Bonds
    • Mutual Funds
    • Private Equity
    • Merging & Acquisition
    • Real Estate
  • Lending
    • Personal Loan
    • Business Loan
    • Credit Card
    • Microfinance
    • Peer-to-Peer Lending
  • Insurance
    • Life Insurance
    • Auto Insurance
    • Education Insurance
    • Health Insurance
  • Banking
    • Business Banking
    • Payments Bank
    • Investment Banking
    • Individual Banking
  • Wealth
    • Earning
    • Savings
    • Investments
    • Budgeting
    • Credit Management
    • Tax Planning
    • Retirement
  • Fintech
    • Alternative Financing
    • Payments
    • Asset Management
    • Digital Banks
    • Softwares
  • Fintech
    • Alternative Financing
    • Asset Management
    • Digital Banks
    • Softwares
    • Payments
  • Crypto
    • Crypto Investing
    • Crypto Trading
    • Crypto Coins
    • Bitcoin
    • Blockchain
    • DAPP
  • Subscribe
  • Contact
  • Login

© 2022 FinanceLane - Terms and Conditions | Disclaimer | Privacy Policy

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.