{"id":36128,"date":"2022-09-19T15:35:29","date_gmt":"2022-09-19T15:35:29","guid":{"rendered":"https:\/\/thecryptocurrencypost.net\/es\/?p=36128"},"modified":"2022-09-19T15:35:32","modified_gmt":"2022-09-19T15:35:32","slug":"ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni","status":"publish","type":"post","link":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/","title":{"rendered":"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni"},"content":{"rendered":"<p style=\"text-align: justify\"><strong>Ethereum Pow (ETHPoW)<\/strong>, la blockchain proof-of-work bifurcada de Ethereum que se puso en marcha inmediatamente despu\u00e9s del paso de Ethereum a proof-of-stake (PoS) la semana pasada, <strong>ha sido atacada por un exploit de repetici\u00f3n, que result\u00f3 en que el atacante drenara 200 tokens de ETHW.<\/strong><\/p>\n<p><!--more--><\/p>\n<p style=\"text-align: justify\">La causa principal del exploit, <a href=\"https:\/\/blocksecteam.medium.com\/reveal-the-message-replay-attacks-on-ethereumpow-64e4feee991c\" target=\"_blank\" rel=\"noopener noreferrer\">seg\u00fan Blocksec<\/a>, es que <strong>el puente Omni de la cadena PoW utiliza el antiguo ID de la cadena y no valida adecuadamente el ID real de la cadena del mensaje cruzado<\/strong>.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">1\/ Alert | BlockSec detected that exploiters are replaying the message (calldata) of the PoS chain on <a href=\"https:\/\/x.com\/EthereumPoW?ref_src=twsrc%5Etfw\">@EthereumPow<\/a>. The root cause of the exploitation is that the bridge doesn&#39;t correctly verify the actual chainid (which is maintained by itself) of the cross-chain message.<\/p>\n<p>&mdash; BlockSec (@BlockSecTeam) <a href=\"https:\/\/x.com\/BlockSecTeam\/status\/1571433997460459521?ref_src=twsrc%5Etfw\">September 18, 2022<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.x.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p style=\"text-align: center\">&#8220;<em>El 16 de septiembre de 2022, detectamos que algunos atacantes cosecharon con \u00e9xito lotes de ETHW reproduciendo el mensaje (es decir, los datos de llamada) de la cadena PoS en EthereumPoW (tambi\u00e9n conocida como la cadena PoW)<\/em>&#8220;, seg\u00fan ellos.<\/p>\n<p style=\"text-align: justify\">Seg\u00fan la entrada del blog, la compa\u00f1\u00eda inform\u00f3 r\u00e1pidamente al equipo oficial de EthereumPoW, que estaba ansioso por tomar medidas e intent\u00f3 interactuar con el Omni Bridge.<\/p>\n<h2 style=\"text-align: justify\">Ethereum PoW pierde 200 WETH<\/h2>\n<p style=\"text-align: justify\">El explotador comenz\u00f3 transmitiendo 200 WETH a trav\u00e9s del puente Omni de la cadena Gnosis antes de replicar el mensaje id\u00e9ntico en la cadena PoW, recogiendo otros 200ETHW. Como resultado, el saldo del contrato de la cadena puesto en la cadena PoW se vaci\u00f3.<\/p>\n<p style=\"text-align: justify\">La investigaci\u00f3n de BlockSec del c\u00f3digo fuente del puente Omni revel\u00f3 que <strong>la l\u00f3gica para comprobar el chainID estaba presente, pero el chainID confirmado utilizado en el contrato se recuperaba de un valor almacenado en el dep\u00f3sito designado unitStorage.<\/strong><\/p>\n<p style=\"text-align: justify\">El equipo observ\u00f3 que <strong>este no era el chainID correcto<\/strong> que se obten\u00eda utilizando el opcode CHAINID, tal y como recomienda el EIP-1344, y que empeor\u00f3 con la bifurcaci\u00f3n posterior a la fusi\u00f3n de Ethereum.<\/p>\n<p><img decoding=\"async\" class=\"alignnone wp-image-37176 size-full\" src=\"https:\/\/thecryptocurrencypost.net\/wp-content\/uploads\/2022\/09\/Ethereum-2.0-1.png\" alt=\"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni\" width=\"699\" height=\"280\" \/><\/p>\n<p style=\"text-align: justify\">Lo m\u00e1s probable es que esto se deba a que el c\u00f3digo es bastante antiguo (utiliza Solidity 0.4.24). <strong>Blocksec afirma que el c\u00f3digo funciona perfectamente hasta que la cadena PoW se bifurca.<\/strong><\/p>\n<p style=\"text-align: justify\">Seg\u00fan Blocksec, <strong>el atacante o atacantes podr\u00edan cosechar una gran cantidad de ETHW (as\u00ed como otros tokens propiedad del puente en la cadena PoW) y comerciar con ellos en varios Exchanges<\/strong>, como algunos centralizados (CEXs)<\/p>\n<p style=\"text-align: justify\">Sostienen que hacerlo puede tener un impacto en el precio de ETHW debido a un aumento de la liquidez. En consecuencia, se aconseja a los usuarios\/inversores que tengan precauci\u00f3n al comerciar con estos tokens en la cadena PoW.<\/p>\n<h3 style=\"text-align: justify\">EthPow ha ca\u00eddo bruscamente<\/h3>\n<p><img decoding=\"async\" class=\"alignnone wp-image-37175 size-full\" src=\"https:\/\/thecryptocurrencypost.net\/wp-content\/uploads\/2022\/09\/ETHPoW-chart.png\" alt=\"Ethereum PoW Lost 200 WETH in an Omni Bridge Replay Attack\" width=\"699\" height=\"280\" \/><\/p>\n<p style=\"text-align: justify\">Seg\u00fan datos de CoinMarketCap, <strong>el precio del token ETHW cay\u00f3 un 37% como resultado de la noticia<\/strong>, alcanzando un nuevo m\u00ednimo de 4,22 d\u00f3lares a primera hora del lunes. Actualmente cotiza a 5,58 d\u00f3lares, lo que supone un descenso del 25%.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ethereum Pow (ETHPoW), la blockchain proof-of-work bifurcada de Ethereum que se puso en marcha inmediatamente despu\u00e9s del paso de Ethereum a proof-of-stake (PoS) la semana pasada, ha sido atacada por un exploit de repetici\u00f3n, que result\u00f3 en que el atacante drenara 200 tokens de ETHW.<\/p>\n","protected":false},"author":21,"featured_media":36131,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[33,22,69],"tags":[140,94,142,565],"class_list":["post-36128","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-editors-picks","category-noticias-criptomonedas","category-noticias-ethereum","tag-criptomonedas","tag-ethereum","tag-noticias","tag-pow"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni The CryptoCurrency Post ESP<\/title>\n<meta name=\"description\" content=\"Ethereum Pow (ETHPoW), que result\u00f3 en que el atacante drenara 200 tokens de ETHW.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/\" \/>\n<meta property=\"og:locale\" content=\"es_ES\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni The CryptoCurrency Post ESP\" \/>\n<meta property=\"og:description\" content=\"Ethereum Pow (ETHPoW), que result\u00f3 en que el atacante drenara 200 tokens de ETHW.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/\" \/>\n<meta property=\"og:site_name\" content=\"The CryptoCurrency Post ESP\" \/>\n<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/josealalade\/\" \/>\n<meta property=\"article:published_time\" content=\"2022-09-19T15:35:29+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-09-19T15:35:32+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/09\/Ethereum-PoW-1.png\" \/>\n\t<meta property=\"og:image:width\" content=\"768\" \/>\n\t<meta property=\"og:image:height\" content=\"399\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Joseph Alalade\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@https:\/\/x.com\/josealalade\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Joseph Alalade\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutos\" \/>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni The CryptoCurrency Post ESP","description":"Ethereum Pow (ETHPoW), que result\u00f3 en que el atacante drenara 200 tokens de ETHW.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/","og_locale":"es_ES","og_type":"article","og_title":"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni The CryptoCurrency Post ESP","og_description":"Ethereum Pow (ETHPoW), que result\u00f3 en que el atacante drenara 200 tokens de ETHW.","og_url":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/","og_site_name":"The CryptoCurrency Post ESP","article_author":"https:\/\/www.facebook.com\/josealalade\/","article_published_time":"2022-09-19T15:35:29+00:00","article_modified_time":"2022-09-19T15:35:32+00:00","og_image":[{"width":768,"height":399,"url":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/09\/Ethereum-PoW-1.png","type":"image\/png"}],"author":"Joseph Alalade","twitter_card":"summary_large_image","twitter_creator":"@https:\/\/x.com\/josealalade","twitter_misc":{"Escrito por":"Joseph Alalade","Tiempo de lectura":"3 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/#article","isPartOf":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/"},"author":{"name":"Joseph Alalade","@id":"https:\/\/thecryptocurrencypost.net\/es\/#\/schema\/person\/7f2a9c16c725e14cae287bc0003e027b"},"headline":"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni","datePublished":"2022-09-19T15:35:29+00:00","dateModified":"2022-09-19T15:35:32+00:00","mainEntityOfPage":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/"},"wordCount":457,"publisher":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/#organization"},"image":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/#primaryimage"},"thumbnailUrl":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/09\/Ethereum-PoW-1.png","keywords":["criptomonedas","Ethereum","noticias","PoW"],"articleSection":["Editor's Picks","Noticias","Noticias Ethereum"],"inLanguage":"es"},{"@type":"WebPage","@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/","url":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/","name":"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni The CryptoCurrency Post ESP","isPartOf":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/#website"},"primaryImageOfPage":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/#primaryimage"},"image":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/#primaryimage"},"thumbnailUrl":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/09\/Ethereum-PoW-1.png","datePublished":"2022-09-19T15:35:29+00:00","dateModified":"2022-09-19T15:35:32+00:00","description":"Ethereum Pow (ETHPoW), que result\u00f3 en que el atacante drenara 200 tokens de ETHW.","breadcrumb":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/#primaryimage","url":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/09\/Ethereum-PoW-1.png","contentUrl":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/09\/Ethereum-PoW-1.png","width":768,"height":399,"caption":"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni"},{"@type":"BreadcrumbList","@id":"https:\/\/thecryptocurrencypost.net\/es\/ethereum-pow-perdio-200-weth-en-un-ataque-de-repeticion-del-puente-omni\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Noticias Criptomonedas","item":"https:\/\/thecryptocurrencypost.net\/es\/"},{"@type":"ListItem","position":2,"name":"Ethereum PoW Perdi\u00f3 200 WETH en un Ataque de Repetici\u00f3n del Puente Omni"}]},{"@type":"WebSite","@id":"https:\/\/thecryptocurrencypost.net\/es\/#website","url":"https:\/\/thecryptocurrencypost.net\/es\/","name":"The CryptoCurrency Post ESP","description":"Crypto News","publisher":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/thecryptocurrencypost.net\/es\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/thecryptocurrencypost.net\/es\/#organization","name":"The CryptoCurrency Post ESP","url":"https:\/\/thecryptocurrencypost.net\/es\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/thecryptocurrencypost.net\/es\/#\/schema\/logo\/image\/","url":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2026\/05\/TCP-favicon-dev.png","contentUrl":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2026\/05\/TCP-favicon-dev.png","width":280,"height":280,"caption":"The CryptoCurrency Post ESP"},"image":{"@id":"https:\/\/thecryptocurrencypost.net\/es\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/thecryptocurrencypost.net\/es\/#\/schema\/person\/7f2a9c16c725e14cae287bc0003e027b","name":"Joseph Alalade","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/04\/6B3E92F7FCBF4F48A785CF01FC86B1BC-150x150.jpg","url":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/04\/6B3E92F7FCBF4F48A785CF01FC86B1BC-150x150.jpg","contentUrl":"https:\/\/thecryptocurrencypost.net\/es\/wp-content\/uploads\/sites\/2\/2022\/04\/6B3E92F7FCBF4F48A785CF01FC86B1BC-150x150.jpg","caption":"Joseph Alalade"},"description":"Joseph Alalade covers blockchain, cryptocurrencies, and decentralized finance with a focus on regulatory context and structural developments within the digital asset space. His work aims to explain how technological innovation intersects with legal and institutional frameworks.","sameAs":["https:\/\/www.facebook.com\/josealalade\/","https:\/\/www.linkedin.com\/in\/josephalalade\/?originalSubdomain=ng","https:\/\/x.com\/https:\/\/x.com\/josealalade"],"url":"https:\/\/thecryptocurrencypost.net\/es\/author\/joseph\/"}]}},"_links":{"self":[{"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/posts\/36128","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/users\/21"}],"replies":[{"embeddable":true,"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/comments?post=36128"}],"version-history":[{"count":0,"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/posts\/36128\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/media\/36131"}],"wp:attachment":[{"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/media?parent=36128"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/categories?post=36128"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/thecryptocurrencypost.net\/es\/wp-json\/wp\/v2\/tags?post=36128"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}