Express

Two Polygon RPCs Exploited in DNS Hijack Attack; Accounts Quickly Recovered

Tyler Irvin

Summary: Two remote procedure call (RPC) interfaces for Polygon (polygon-rpc.com) and Fantom (rpc.ftm.tools) were exploited in a domain name system (DNS) hijack attack on Friday, according to Polygon chief information security officer Mudit Gupta.  Gupta said “Gandi (customer agent compromise?) transferred control of Ankr’s account to the attacker and that was the root cause of the ...

Two remote procedure call (RPC) interfaces for Polygon (polygon-rpc.com) and Fantom (rpc.ftm.tools) were exploited in a domain name system (DNS) hijack attack on Friday, according to Polygon chief information security officer Mudit Gupta. 

1.png

Gupta said “Gandi (customer agent compromise?) transferred control of Ankr’s account to the attacker and that was the root cause of the DNS Hijack.” 

2.png

He continued saying Ankr was able to act quickly and regained access to the account. So at the time of writing, the accounts were with their correct owners. 

RPC is a set of protocols that allow a client to interact with a blockchain. On the contrary, DNS hijacking is a type of cyber attack where hijackers manipulate queries and redirect users to malicious sites. 

Gupta continued via Twitter saying, “We’ll work closely with Ankr to ensure this does not happen again. 

3.png

Author: Tyler Irvin

Last Update:

Tags: ,,
Link: Two Polygon RPCs Exploited in DNS Hijack Attack; Accounts Quickly Recovered   [Copy]
  • Why a "One-Size-Fits-All" Approach to Stablecoin Issuance Fails Given Diverse Fiat Curr... 14 hours ago
  • BitFuFu’s VP on Mining Leadership, Corporate Crypto Treasuries, the Stablecoin Act, and... 6 days ago
  • BTC Weekly Outlook: A Bullish Week, but Signs Point to a Shift to Defensive Play 7 days ago
  • Figma's IPO Triumph and Crypto Bet: How a Design Disruptor Stunned Wall Street After a ... 17 days ago
  • When Stablecoins Tear Down Banks’ Interest Margin Moats — A Third Look at the U.S. “Ge... 19 days ago
  • You need to login to comment.