* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, January 31, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Sundance Film Festival to name 2026 award winners – LancasterOnline

    Unforgettable Adventures Await in Texarkana This Weekend: January 30 & 31

    AMC Entertainment Gains New Debt Refinancing Flexibility and Reveals Preliminary Q4 and Full Year 2025 Results

    Live Nation, DF Entertainment, and Dale Play Live Join Forces for Long-Term Partnership with Club Atlético River Plate at Mâs Monumental Stadium

    O’Dowd, Dolphin Entertainment CEO, buys $4.9k in DLPN stock – Investing.com

    Sacramento Boosts Small Businesses with Exciting Live Entertainment Opportunities

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Pentagon CTO Taps Six Defense Tech Veterans to Lead Key Innovation Areas

    How Technology and Consumer Trends Are Set to Revolutionize Hospitality in 2025

    David Simpson Joins Technology Council to Propel Innovation at Drax Technology

    The Next Frontier of AI: Unveiling Technology, Infrastructure, and Policy Trends for 2025-2026

    Expanding advanced heart rhythm care with updated technology – news.llu.edu

    Columbus School Launches Innovative Music Technology Program

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Sundance Film Festival to name 2026 award winners – LancasterOnline

    Unforgettable Adventures Await in Texarkana This Weekend: January 30 & 31

    AMC Entertainment Gains New Debt Refinancing Flexibility and Reveals Preliminary Q4 and Full Year 2025 Results

    Live Nation, DF Entertainment, and Dale Play Live Join Forces for Long-Term Partnership with Club Atlético River Plate at Mâs Monumental Stadium

    O’Dowd, Dolphin Entertainment CEO, buys $4.9k in DLPN stock – Investing.com

    Sacramento Boosts Small Businesses with Exciting Live Entertainment Opportunities

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Pentagon CTO Taps Six Defense Tech Veterans to Lead Key Innovation Areas

    How Technology and Consumer Trends Are Set to Revolutionize Hospitality in 2025

    David Simpson Joins Technology Council to Propel Innovation at Drax Technology

    The Next Frontier of AI: Unveiling Technology, Infrastructure, and Policy Trends for 2025-2026

    Expanding advanced heart rhythm care with updated technology – news.llu.edu

    Columbus School Launches Innovative Music Technology Program

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Business

What Mastodon’s Critical Bug Fixes Say About Crypto’s Security Vulnerabilities

July 10, 2023
in Business
What Mastodon’s Critical Bug Fixes Say About Crypto’s Security Vulnerabilities
Share on FacebookShare on Twitter

Several critical bugs on the Twitter-like social media platform Mastodon were patched last week, after researchers funded by the Mozilla Foundation tipped their hat to the vulnerabilities. The situation shows one of the fundamental tradeoffs in open-source software development: that publicly available code can be reviewed and exploited by anyone.

Sometimes that means bugs are found by so-called white hat hackers, and sometimes they’re left open to be exploited. In Mastodon’s case, Mozilla paid German security firm Cure53 to pen test the social network, after announcing plans it would be using Mastodon for some corporate communications.

This is an excerpt from The Node newsletter, a daily roundup of the most pivotal crypto news on CoinDesk and beyond. You can subscribe to get the full newsletter here.

Especially in the post-Elon-Musk-buyout Twitter era, Mastodon has become one of the most popular decentralized applications used by everyday folk. Mastodon calls itself a “federation” because it consists of several thousand separate “instances” that serve people content (unlike at companies like Twitter or Facebook, which maintain their own servers). Anyone can run their own or ask to join another instance, which can set their own moderation standards.

Not much has been revealed about the five bugs that were patched, though independent security researcher Kevin Beaumont, writing on Mastodon, said one potential exploit dubbed #TootRoot could have given hackers root access to Mastodon instances – which could have caused all types of issues including compromised accounts and other phishing schemes.

Mastodon gGmbH, the organization that maintains Mastodon’s open source software, rated one other bug as critical and the three others as high and medium in severity. Large servers were also sent pre-announcements about the security holes in recent weeks, so they could be ready to quickly deploy a patch when it went live, according to Ars Technica.

As far as I can tell, none of Mastodon’s 14.5 million users were affected by the bad lines of code, which seem to have been unexploited. But the situation does raise some uncomfortable concerns, including how long the critical issues would have sat dormant had Mozilla not been interested in paying to see if Mastodon was secure. And whether a bad actor could have gotten to it first.

These are live issues in the world of free and open source software, including (and perhaps especially) in crypto. Putting aside the challenges of making sure everyone downloads a patch or is running the latest software – (if you’re a Mastodon user, check that the instance you’re using is on version 4.1.3 or later or hound the server to update) – the security of shared networks is totally subject to market forces.

Financial incentives cut both ways for hackers, who can sometimes receive a bug bounty for properly disclosing an issue or turn around and sell the malicious information on a darknet market. And there isn’t always a Mozilla out there willing to pay for in-depth audits to make sure these systems are secure.

The problem is only complicated by crypto, which turns applications into “multimillion dollar bug bounties” or grab bags for hackers looking to make a quick buck. Some $3.1 billion was stolen from decentralized finance (DeFi) protocols alone last year. And even when protocol foundations or users banded together pay for code reviews, it’s not always clear an auditor’s stamp of approval can be trusted (often due as much to incompetence as greed).

Diyahir Campos, a crypto user and developer who says he lost out after the multi-million dollar attack of Euler Finance, recently revealed a DeFi “circuit breaker” that would pause protocols seeing abnormal withdrawals. This would be an “opt-in thing,” which admittedly wouldn’t offer users complete security but could minimize the amount of money lost in hacks.

Solutions like this are admirable, even if there are no easy fixes to crypto’s problems (and definitely not a “one-size-fits-all” option). And, of course, there’s a baseline risk in using any computer program whether or not it’s open source. Lest we forget even the most competent seeming institutions like the U.S. Department of Defense or Microsoft are not immune to catastrophic bugs.

The FOSS community fosters a real culture of solidarity and shared responsibility, where the respect garnered from finding and disclosing issues is often worth more than the money they could have earned. Let that be cold comfort to crypto, whether or not institutions like Mozilla are on the way to adoption.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : CoinDesk – https://www.coindesk.com/consensus-magazine/2023/07/10/what-mastodons-critical-bug-fixes-say-about-cryptos-security-vulnerabilities/?utm_medium=referral&utm_source=rss&utm_campaign=headlines

Tags: businesscriticalMastodon’s
Previous Post

Grayscale Bitcoin Trust Discount Narrows to Lowest Since May 2022

Next Post

DOJ Charges Moroccan Man With Stealing $450K in OpenSea Spoofing Scam

Pentagon CTO Taps Six Defense Tech Veterans to Lead Key Innovation Areas

January 31, 2026

Patriots QB Drake Maye Sits Out Friday Practice Amid Illness and Right Shoulder Injury

January 31, 2026

Scientists Reveal Surprising Behavior of Micro- and Nanoplastics in City Landscapes

January 30, 2026

U.S. Economy Set to Experience Robust Growth This Year

January 30, 2026

Sundance Film Festival to name 2026 award winners – LancasterOnline

January 30, 2026

Discover the Most Important Safety Insights from October 2025

January 30, 2026

Military Police & Ten Commandments Bills Advance at Session Midpoint | Crossroads Politics – WTHR

January 30, 2026

Potential Tool Use by Wolves ( Canis lupus ): Crab Trap Pulling in Haíɫzaqv Nation Territory – Wiley Online Library

January 30, 2026

Dermatologists say collagen supplements aren’t the skin fix people expect – ScienceDaily

January 30, 2026

Could Your Genes Hold the Secret to a Longer Life? Scientists Think So

January 30, 2026

Categories

Archives

January 2026
M T W T F S S
 1234
567891011
12131415161718
19202122232425
262728293031  
« Dec    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,048)
  • Economy (1,065)
  • Entertainment (21,944)
  • General (19,629)
  • Health (10,107)
  • Lifestyle (1,080)
  • News (22,149)
  • People (1,074)
  • Politics (1,082)
  • Science (16,282)
  • Sports (21,568)
  • Technology (16,049)
  • World (1,057)

Recent News

Pentagon CTO Taps Six Defense Tech Veterans to Lead Key Innovation Areas

January 31, 2026

Patriots QB Drake Maye Sits Out Friday Practice Amid Illness and Right Shoulder Injury

January 31, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version