* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, April 25, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    How The Cars That Made Us Perfectly Blends Education and Entertainment

    What the controversial Michael Jackson movie leaves out – The Washington Post

    Mini golf, 24/7 golf simulator bring new entertainment to Temple – The Killeen Daily Herald

    Nashoba Symphonic Band Marks 10 Years with Two Exciting Free Concerts

    Los Lorcas and Pat Byrne at Stage 33 Live – Brattleboro Reformer

    Atlanta City Council Greenlights Exciting New World Cup Entertainment District

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    NSWC Crane Scientist Pioneers Breakthrough in Electromagnetic Spectrum Technology

    Foreign car companies bet on technology to hang onto once-lucrative China auto market – CNBC

    Kalispell Parking Advisory Board Proposes New Technology, Increased Fines, and Block Ordinance Changes

    The Surprising Ways Your Daily Habits Are Destroying Your Charging Cables

    Redwire Becomes Proud Drone Technology Partner of the Washington Commanders to Showcase Military Appreciation – Washington Commanders

    Toyota and Woven by Toyota Unveil Cutting-Edge AI Technologies to Revolutionize Kakezan

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    How The Cars That Made Us Perfectly Blends Education and Entertainment

    What the controversial Michael Jackson movie leaves out – The Washington Post

    Mini golf, 24/7 golf simulator bring new entertainment to Temple – The Killeen Daily Herald

    Nashoba Symphonic Band Marks 10 Years with Two Exciting Free Concerts

    Los Lorcas and Pat Byrne at Stage 33 Live – Brattleboro Reformer

    Atlanta City Council Greenlights Exciting New World Cup Entertainment District

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    NSWC Crane Scientist Pioneers Breakthrough in Electromagnetic Spectrum Technology

    Foreign car companies bet on technology to hang onto once-lucrative China auto market – CNBC

    Kalispell Parking Advisory Board Proposes New Technology, Increased Fines, and Block Ordinance Changes

    The Surprising Ways Your Daily Habits Are Destroying Your Charging Cables

    Redwire Becomes Proud Drone Technology Partner of the Washington Commanders to Showcase Military Appreciation – Washington Commanders

    Toyota and Woven by Toyota Unveil Cutting-Edge AI Technologies to Revolutionize Kakezan

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Business

What Mastodon’s Critical Bug Fixes Say About Crypto’s Security Vulnerabilities

July 10, 2023
in Business
What Mastodon’s Critical Bug Fixes Say About Crypto’s Security Vulnerabilities
Share on FacebookShare on Twitter

Several critical bugs on the Twitter-like social media platform Mastodon were patched last week, after researchers funded by the Mozilla Foundation tipped their hat to the vulnerabilities. The situation shows one of the fundamental tradeoffs in open-source software development: that publicly available code can be reviewed and exploited by anyone.

Sometimes that means bugs are found by so-called white hat hackers, and sometimes they’re left open to be exploited. In Mastodon’s case, Mozilla paid German security firm Cure53 to pen test the social network, after announcing plans it would be using Mastodon for some corporate communications.

This is an excerpt from The Node newsletter, a daily roundup of the most pivotal crypto news on CoinDesk and beyond. You can subscribe to get the full newsletter here.

Especially in the post-Elon-Musk-buyout Twitter era, Mastodon has become one of the most popular decentralized applications used by everyday folk. Mastodon calls itself a “federation” because it consists of several thousand separate “instances” that serve people content (unlike at companies like Twitter or Facebook, which maintain their own servers). Anyone can run their own or ask to join another instance, which can set their own moderation standards.

Not much has been revealed about the five bugs that were patched, though independent security researcher Kevin Beaumont, writing on Mastodon, said one potential exploit dubbed #TootRoot could have given hackers root access to Mastodon instances – which could have caused all types of issues including compromised accounts and other phishing schemes.

Mastodon gGmbH, the organization that maintains Mastodon’s open source software, rated one other bug as critical and the three others as high and medium in severity. Large servers were also sent pre-announcements about the security holes in recent weeks, so they could be ready to quickly deploy a patch when it went live, according to Ars Technica.

As far as I can tell, none of Mastodon’s 14.5 million users were affected by the bad lines of code, which seem to have been unexploited. But the situation does raise some uncomfortable concerns, including how long the critical issues would have sat dormant had Mozilla not been interested in paying to see if Mastodon was secure. And whether a bad actor could have gotten to it first.

These are live issues in the world of free and open source software, including (and perhaps especially) in crypto. Putting aside the challenges of making sure everyone downloads a patch or is running the latest software – (if you’re a Mastodon user, check that the instance you’re using is on version 4.1.3 or later or hound the server to update) – the security of shared networks is totally subject to market forces.

Financial incentives cut both ways for hackers, who can sometimes receive a bug bounty for properly disclosing an issue or turn around and sell the malicious information on a darknet market. And there isn’t always a Mozilla out there willing to pay for in-depth audits to make sure these systems are secure.

The problem is only complicated by crypto, which turns applications into “multimillion dollar bug bounties” or grab bags for hackers looking to make a quick buck. Some $3.1 billion was stolen from decentralized finance (DeFi) protocols alone last year. And even when protocol foundations or users banded together pay for code reviews, it’s not always clear an auditor’s stamp of approval can be trusted (often due as much to incompetence as greed).

Diyahir Campos, a crypto user and developer who says he lost out after the multi-million dollar attack of Euler Finance, recently revealed a DeFi “circuit breaker” that would pause protocols seeing abnormal withdrawals. This would be an “opt-in thing,” which admittedly wouldn’t offer users complete security but could minimize the amount of money lost in hacks.

Solutions like this are admirable, even if there are no easy fixes to crypto’s problems (and definitely not a “one-size-fits-all” option). And, of course, there’s a baseline risk in using any computer program whether or not it’s open source. Lest we forget even the most competent seeming institutions like the U.S. Department of Defense or Microsoft are not immune to catastrophic bugs.

The FOSS community fosters a real culture of solidarity and shared responsibility, where the respect garnered from finding and disclosing issues is often worth more than the money they could have earned. Let that be cold comfort to crypto, whether or not institutions like Mozilla are on the way to adoption.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : CoinDesk – https://www.coindesk.com/consensus-magazine/2023/07/10/what-mastodons-critical-bug-fixes-say-about-cryptos-security-vulnerabilities/?utm_medium=referral&utm_source=rss&utm_campaign=headlines

Tags: businesscriticalMastodon’s
Previous Post

Grayscale Bitcoin Trust Discount Narrows to Lowest Since May 2022

Next Post

DOJ Charges Moroccan Man With Stealing $450K in OpenSea Spoofing Scam

Hey Kids! Join Ecology in Creating a Fun Clean Water Coloring Book!

April 25, 2026

Who’s the Bigger Gold Digger: Men or Women? Science Finally Reveals the Truth

April 25, 2026

Delving into the Ethics of Longevity Science: A Thought-Provoking Exploration

April 25, 2026

How Phones Secretly Impact Our Mental Health-Even Without Social Media

April 25, 2026

Bigfoot: Unveiling the Ultimate Master of Hide-and-Seek

April 25, 2026

Six of Seven Former World Teamers Advance to Men’s Freestyle Finals as Davino Defeats Forrest in NCAA Finals Rematch

April 25, 2026

Can Trump Navigate the Iran Crisis While Battling a Slumping Economy?

April 25, 2026

How The Cars That Made Us Perfectly Blends Education and Entertainment

April 25, 2026

I Mostly Ignored Politics for 10 Months – Here’s What I Missed

April 25, 2026

NSWC Crane Scientist Pioneers Breakthrough in Electromagnetic Spectrum Technology

April 25, 2026

Categories

Archives

April 2026
M T W T F S S
 12345
6789101112
13141516171819
20212223242526
27282930  
« Mar    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,185)
  • Economy (1,205)
  • Entertainment (22,080)
  • General (21,158)
  • Health (10,237)
  • Lifestyle (1,215)
  • News (22,149)
  • People (1,205)
  • Politics (1,224)
  • Science (16,420)
  • Sports (21,703)
  • Technology (16,189)
  • World (1,195)

Recent News

Hey Kids! Join Ecology in Creating a Fun Clean Water Coloring Book!

April 25, 2026

Who’s the Bigger Gold Digger: Men or Women? Science Finally Reveals the Truth

April 25, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version