深度|智能合约漏洞引忧患,君士坦丁堡硬分叉再延
摘要:记者冼俐君/台北编译报导以太坊(Ethereum)君士坦丁堡硬分叉再次因智能合约漏洞而暂缓推迟,西方媒体连续追踪报导本次分叉大事件,主要因分叉后,以太坊将进入两种共识机制并行的链,工作量验证(PoW)

记者冼俐君/台北编译报导
以太坊(Ethereum)君士坦丁堡硬分叉再次因智能合约漏洞而暂缓推迟,西方媒体连续追踪报导本次分叉大事件,主要因分叉后,以太坊将进入两种共识机制并行的链,工作量验证(PoW)、权益证明(PoS),并解决「难度炸弹」问题。
君士坦丁堡硬分叉原订于 16 日 进行,然而就在网络升级前夕,区块链安全研究公司 Chain Security 发现君士坦丁堡中的编码 EIP 1283 存在安全漏洞。因此主导此次硬分叉升级的以太坊基金会团队负责人 Peter Szilagyi 提出升级延后。

据 《Cointelegraph》报导「Ethereum Team Lead: Constantinople Hard Fork to Activate in Late February」,文中点出:
“The upgrade is now set to be implemented at ETH block 7,280,000, as announced by a team lead at Ethereum, Peter Szilagyi.
以太坊基金会团队负责人 Peter Szilagyi 宣布,君士坦丁堡硬分叉确定延至 2 月 27 日,预计将在区块高度 7,280,000 进行。”

“The vulnerability purportedly allows a potential attacker to steal cryptocurrency from a smart contract on the network by repeatedly requesting funds from it while feeding it false data about the malicious actor’s actual ETH balance.
该漏洞有可能会让部分智能合约受到「可重入攻击」,允许攻击者透过反覆请款的方式从网络中盗取加密货币,同时又在其实际以太坊账户余额中呈现捏造数据。”
新闻网《Coindesk》相关报导「Ethereum Devs Propose Activating Constantinople Hard Fork in Late February」,则点出:
“This strategy – first suggested by Szilágyi during call – is meant to ensure that test networks and private networks that have already implemented the full Constantinople upgrade can easily implement a fix without rolling back any blocks.
Szilágyi 于电话会议中首次提出须优先确保君士坦丁堡升级在测试网络,以及私有网络中可轻松实行网络修复,且不会产生交易区块取消情况。”
主流财经媒体彭博社《Bloomberg》同步关注以太坊硬分叉升级,于「Ethereum’s Split Pushed Back Until After Valentine’s Day」一文中,点出透过君士坦丁修改奖励机制来延缓难度炸弹:
“The so-called fork will reduce rewards paid to miners to two coins from three per block, and it should reduce inflation and bring more stability to the Ether digital coin. The upgrade is designed to stave off the so-called difficulty bomb, which would make the network unusable unless regular software upgrades are made.
所谓硬分叉成功执行后将减少支付矿工奖励,从每个区块 3 枚以太币矿工费减少为 2枚,该升级旨在降低以太坊产生通膨,同时增加以太币稳定性。另外,君士坦丁堡也将延迟触发以太坊「难度炸弹」,因此,除非矿工进行常规软件升级,否则将无法继续使用网络。”
尽管以太方基金会敦促矿工升级后才能继续使用网络,但据《CCN》报导「Ethereum Postponed its Hard Fork, But Some Miners Didn’t Listen」,文中点出:
“Not everyone made the appropriate changes, however, and there is a currently a parallel universe of Ethereum mining. A “chain split” has occurred, and some miners are mining the unofficial Constantinople chain without consensus from the majority of the network.
然而截至目前为止,仍有部分以太坊矿工尚未安装最新版本的以太坊软件来延迟系统升级,意味着这些矿工在还没得到网络共识的前提下,就已经在非官方的君士坦丁堡链上挖矿,假装以太坊已经成功进行硬分叉。”
矿工利之所趋的特性,仍旧持续考验以太坊等公有区块链未来走向。
- 免责声明
- 世链财经作为开放的信息发布平台,所有资讯仅代表作者个人观点,与世链财经无关。如文章、图片、音频或视频出现侵权、违规及其他不当言论,请提供相关材料,发送到:2785592653@qq.com。
- 风险提示:本站所提供的资讯不代表任何投资暗示。投资有风险,入市须谨慎。
- 世链粉丝群:提供最新热点新闻,空投糖果、红包等福利,微信:juu3644。

币圈观察



