* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Friday, June 5, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    How Online Casinos Have Revolutionized Digital Entertainment

    10 Must-Watch Shows for Fans of ‘Spider-Noir

    Scott Pelley fired from ’60 Minutes,’ deepening turmoil at CBS News – Idaho State Journal

    Why Max Cady from ‘Cape Fear’ Continues to Haunt Audiences as a Timeless Nightmare

    Celebrate Pride Month 2026 with Seattle Pride in the Park and Exciting Events

    How to find free, low-cost concerts this summer in Louisville: A Q&A – The Courier-Journal

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    How Technology Is Revolutionizing the Future of the Restaurant Industry

    Innovative Chemical “Cage” Strategy Enables Precise Drug Delivery and Activation

    China has approved the world’s first invasive brain-computer chip—here’s what’s next – MIT Technology Review

    Is Marvell Technology (MRVL) Overhyped After Its Stunning Recent Rally?

    Voyager Technologies CEO on acquisition of Astrobotic Technology, demand for space investment – CNBC

    Anixa Biosciences Strengthens International Patent Protection for Ovarian Cancer Vaccine Technology with Canadian Notice of Allowance – PR Newswire

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    How Online Casinos Have Revolutionized Digital Entertainment

    10 Must-Watch Shows for Fans of ‘Spider-Noir

    Scott Pelley fired from ’60 Minutes,’ deepening turmoil at CBS News – Idaho State Journal

    Why Max Cady from ‘Cape Fear’ Continues to Haunt Audiences as a Timeless Nightmare

    Celebrate Pride Month 2026 with Seattle Pride in the Park and Exciting Events

    How to find free, low-cost concerts this summer in Louisville: A Q&A – The Courier-Journal

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    How Technology Is Revolutionizing the Future of the Restaurant Industry

    Innovative Chemical “Cage” Strategy Enables Precise Drug Delivery and Activation

    China has approved the world’s first invasive brain-computer chip—here’s what’s next – MIT Technology Review

    Is Marvell Technology (MRVL) Overhyped After Its Stunning Recent Rally?

    Voyager Technologies CEO on acquisition of Astrobotic Technology, demand for space investment – CNBC

    Anixa Biosciences Strengthens International Patent Protection for Ovarian Cancer Vaccine Technology with Canadian Notice of Allowance – PR Newswire

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Business

What Mastodon’s Critical Bug Fixes Say About Crypto’s Security Vulnerabilities

July 10, 2023
in Business
What Mastodon’s Critical Bug Fixes Say About Crypto’s Security Vulnerabilities
Share on FacebookShare on Twitter

Several critical bugs on the Twitter-like social media platform Mastodon were patched last week, after researchers funded by the Mozilla Foundation tipped their hat to the vulnerabilities. The situation shows one of the fundamental tradeoffs in open-source software development: that publicly available code can be reviewed and exploited by anyone.

Sometimes that means bugs are found by so-called white hat hackers, and sometimes they’re left open to be exploited. In Mastodon’s case, Mozilla paid German security firm Cure53 to pen test the social network, after announcing plans it would be using Mastodon for some corporate communications.

This is an excerpt from The Node newsletter, a daily roundup of the most pivotal crypto news on CoinDesk and beyond. You can subscribe to get the full newsletter here.

Especially in the post-Elon-Musk-buyout Twitter era, Mastodon has become one of the most popular decentralized applications used by everyday folk. Mastodon calls itself a “federation” because it consists of several thousand separate “instances” that serve people content (unlike at companies like Twitter or Facebook, which maintain their own servers). Anyone can run their own or ask to join another instance, which can set their own moderation standards.

Not much has been revealed about the five bugs that were patched, though independent security researcher Kevin Beaumont, writing on Mastodon, said one potential exploit dubbed #TootRoot could have given hackers root access to Mastodon instances – which could have caused all types of issues including compromised accounts and other phishing schemes.

Mastodon gGmbH, the organization that maintains Mastodon’s open source software, rated one other bug as critical and the three others as high and medium in severity. Large servers were also sent pre-announcements about the security holes in recent weeks, so they could be ready to quickly deploy a patch when it went live, according to Ars Technica.

As far as I can tell, none of Mastodon’s 14.5 million users were affected by the bad lines of code, which seem to have been unexploited. But the situation does raise some uncomfortable concerns, including how long the critical issues would have sat dormant had Mozilla not been interested in paying to see if Mastodon was secure. And whether a bad actor could have gotten to it first.

These are live issues in the world of free and open source software, including (and perhaps especially) in crypto. Putting aside the challenges of making sure everyone downloads a patch or is running the latest software – (if you’re a Mastodon user, check that the instance you’re using is on version 4.1.3 or later or hound the server to update) – the security of shared networks is totally subject to market forces.

Financial incentives cut both ways for hackers, who can sometimes receive a bug bounty for properly disclosing an issue or turn around and sell the malicious information on a darknet market. And there isn’t always a Mozilla out there willing to pay for in-depth audits to make sure these systems are secure.

The problem is only complicated by crypto, which turns applications into “multimillion dollar bug bounties” or grab bags for hackers looking to make a quick buck. Some $3.1 billion was stolen from decentralized finance (DeFi) protocols alone last year. And even when protocol foundations or users banded together pay for code reviews, it’s not always clear an auditor’s stamp of approval can be trusted (often due as much to incompetence as greed).

Diyahir Campos, a crypto user and developer who says he lost out after the multi-million dollar attack of Euler Finance, recently revealed a DeFi “circuit breaker” that would pause protocols seeing abnormal withdrawals. This would be an “opt-in thing,” which admittedly wouldn’t offer users complete security but could minimize the amount of money lost in hacks.

Solutions like this are admirable, even if there are no easy fixes to crypto’s problems (and definitely not a “one-size-fits-all” option). And, of course, there’s a baseline risk in using any computer program whether or not it’s open source. Lest we forget even the most competent seeming institutions like the U.S. Department of Defense or Microsoft are not immune to catastrophic bugs.

The FOSS community fosters a real culture of solidarity and shared responsibility, where the respect garnered from finding and disclosing issues is often worth more than the money they could have earned. Let that be cold comfort to crypto, whether or not institutions like Mozilla are on the way to adoption.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : CoinDesk – https://www.coindesk.com/consensus-magazine/2023/07/10/what-mastodons-critical-bug-fixes-say-about-cryptos-security-vulnerabilities/?utm_medium=referral&utm_source=rss&utm_campaign=headlines

Tags: businesscriticalMastodon’s
Previous Post

Grayscale Bitcoin Trust Discount Narrows to Lowest Since May 2022

Next Post

DOJ Charges Moroccan Man With Stealing $450K in OpenSea Spoofing Scam

Japan’s Prime Minister Vows to Defend the Yen by Boosting Economic Growth

June 5, 2026

Don’t Miss Packers Family Night – Friday, August 7!

June 5, 2026

How Online Casinos Have Revolutionized Digital Entertainment

June 5, 2026

Why California’s Slow Ballot Count Is Causing Concern – But Doesn’t Signal Rigged Elections

June 5, 2026

How Technology Is Revolutionizing the Future of the Restaurant Industry

June 5, 2026

Connecting Community With Science at Savannah River Ecology Laboratory – Department of Energy (.gov)

June 5, 2026

2026 World Cup Schedule: All Games, Dates, Matchups and How To Watch – FOX Sports

June 5, 2026

Parents Rally Together to Demand Stronger Science Education in Bar Harbor Schools

June 5, 2026

White House Launches Bold New Plan to Strengthen Oversight of Science Grants

June 5, 2026

Master Your Nutrition: Unlock Lasting Lifestyle Tips with Publix’s GLP-1 Guide

June 5, 2026

Categories

Archives

June 2026
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
2930  
« May    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,249)
  • Economy (1,272)
  • Entertainment (22,148)
  • General (21,909)
  • Health (10,306)
  • Lifestyle (1,282)
  • News (22,149)
  • People (1,273)
  • Politics (1,291)
  • Science (16,485)
  • Sports (21,769)
  • Technology (16,256)
  • World (1,262)

Recent News

Japan’s Prime Minister Vows to Defend the Yen by Boosting Economic Growth

June 5, 2026

Don’t Miss Packers Family Night – Friday, August 7!

June 5, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version