logo
  • menu
  • Markets
  • ETFs
  • Live
  • Spot
  • Futures
  • Learn
  • Sign In
  • Sign Up
  • Downloads
  • English
  • |
  • USD
  • |
Sign Up
Crypto PricesLearnLatest NewsDownloadsMarketsSpotAnnouncements
Home/
Latest News/
Industry

Libra-linked Sui blockchain fixes critical bug that put 'billions' at risk

By Wayne Ingram
May 18, 2023
3.9 
★
★
★
★
★
★
★
★
★
★
 75 User Rating
Share

According to a May 16 announcement from Zellic, the security firm hired to audit the network's security, the Sui blockchain network has quietly fixed a vulnerability that could have put “billions of dollars” at risk. The bug resides in a dependency of the bytecode ver filter , which ensures that the human-readable Move language used to write smart contracts on Sui is correctly transcribed into machine code during deployment. If the vulnerability is not fixed, it could "allow an attacker to bypass multiple security attributes, resulting in potentially significant financial loss," the announcement said.

In a statement to Cointelegraph, Mysten Labs confirmed that the bug has been fixed in the SUI version of MOVE.

Zellic claimed that the vulnerability may also exist in other Move-based networks, including Aptos and Starcoin. However, according to the Zellic team, they said their Aptos version was removed via a patch on April 10. In conversation with Cointelegraph, a representative from the Move-based 0L network stated that the bug does not affect its Move version. On May 15th, 0L added a series of tests to their GitHub, proving that the 0L version cannot exploit the vulnerability. The Starcoin team told Cointelegraph that their version was phased out on April 5.

Sui is a blockchain network developed by Mysten Labs and founded by former Meta Platforms engineers. It is a fork of the open-source Libra project created by Facebook parent company Meta. Libra shut down in 2019.

Some developers like the Move smart contract language because of its security features that are particularly beneficial to blockchains. For example, it allows developers to create custom data types, including "coin" types that cannot be copied or deleted. Like other blockchains networks, Sui doesn't store code in the same language it was written in. Instead, it converts this code from the web's human-readable language to machine-readable bytecode.

When doing this translation, Sui goes through a series of verifications to ensure that the translated code doesn't violate the security properties of the network. For example, it ensures that coins cannot be deleted or copied.

According to Zellic's explanatory blog post, it was hired by Mysten Labs to conduct a security assessment of the validator. It doesn't find bugs in the validator itself. However, it found an error in the "control flow graph" or "CFG" file that the verifier uses to accomplish many of its tasks. Because of the way it is written, CFG can allow certain lines of code to be hidden from validators, allowing code that violates cybersecurity principles to be stored and run without detection. In its explanation, the team said the most obvious way the bug could be exploited is flash loans by malicious borrowers. When implementing flash loans on a Move-based network, the lending protocol typically sends the borrower an asset that cannot be deleted. If borrowers can delete that asset, they “can successfully obtain a flash loan without having to repay the borrowed funds,” the team said. Since the vulnerability allows a violation of fundamental principles of Move security, other types of exploits are possible as well. As a result, the security firm said in its post, "[putting] potentially billions of dollars at risk."

The mobile-based web and its apps have been making waves in the fundraising world lately. On May 8, a decentralized exchange called Cetus raised more than $6 million in one minute. The company behind Aptos is also raising more than $150 million in July 2022.

Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of BitKan. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. BitKan shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. Products mentioned in this article may not be available in your region.

Related News

  • SBI’s $289M Bitbank Deal Signals Japan Crypto Consolidation

    SBI’s $289M Bitbank Deal Signals Japan Crypto Consolidation

    SBI Holdings has solidified its domestic dominance by agreeing to acquire all shares of Bitbank in a transaction valued at ¥46.7 billion ($289 million), according to the company’s official disclosure.
    Cornell Rachel
    Jun 29, 2026
  • Invesco Files for Tokenized Fund to Back Stablecoin Reserves

    Invesco Files for Tokenized Fund to Back Stablecoin Reserves

    Invesco has officially filed with the U.S. Securities and Exchange Commission (SEC) to launch the Invesco Stablecoin Reserves Onchain Fund, a new vehicle designed to offer stablecoin issuers a compliant way to manage their collateral.
    Martha Grizzard
    Jun 26, 2026
  • Spark and Uniswap Target $4T Market with New FX Infrastructure

    Spark and Uniswap Target $4T Market with New FX Infrastructure

    Uniswap and the decentralized finance protocol Spark have launched a shared liquidity infrastructure designed to function as a foreign-exchange network for the growing number of stablecoin issuers.
    Wayne Ingram
    Jun 26, 2026

Latest News

Industry

Cryptocurrency

Airdrop

Markets

  • SBI’s $289M Bitbank Deal Signals Japan Crypto Consolidation

    SBI’s $289M Bitbank Deal Signals Japan Crypto Consolidation

    SBI Holdings has solidified its domestic dominance by agreeing to acquire all shares of Bitbank in a transaction valued at ¥46.7 billion ($289 million), according to the company’s official disclosure.
    Cornell Rachel
    Jun 29, 2026
  • Invesco Files for Tokenized Fund to Back Stablecoin Reserves

    Invesco Files for Tokenized Fund to Back Stablecoin Reserves

    Invesco has officially filed with the U.S. Securities and Exchange Commission (SEC) to launch the Invesco Stablecoin Reserves Onchain Fund, a new vehicle designed to offer stablecoin issuers a compliant way to manage their collateral.
    Martha Grizzard
    Jun 26, 2026
  • Spark and Uniswap Target $4T Market with New FX Infrastructure

    Spark and Uniswap Target $4T Market with New FX Infrastructure

    Uniswap and the decentralized finance protocol Spark have launched a shared liquidity infrastructure designed to function as a foreign-exchange network for the growing number of stablecoin issuers.
    Wayne Ingram
    Jun 26, 2026
  • Ethereum Foundation to Cut Budget by 40% in Major Restructuring

    Ethereum Foundation to Cut Budget by 40% in Major Restructuring

    The Ethereum Foundation (EF) has announced a comprehensive reorganization that includes a 40% reduction in its 2026 budget and a 20% cut to its workforce, signaling a shift toward a leaner, endowment-style operational model for the blockchain ecosystem.
    Wayne Ingram
    Jun 25, 2026
  • Japan Regulators Greenlight Ripple’s RLUSD Stablecoin Launch

    Japan Regulators Greenlight Ripple’s RLUSD Stablecoin Launch

    The Japan Financial Services Agency (JFSA) approved RLUSD under the Payment Services Act.
    Wayne Ingram
    Jun 25, 2026
View more data 
BTCBTC(BTC)
$0
--(Last 24h)
SpotFutures

Top

View more
  1. 1S&P 500 Reclaims 200-Day Moving Average, Bitcoin Gains
  2. 2Trump Softens His Stance on Reciprocal Tariffs, US Stocks and Crypto Markets Rise
  3. 3Vitalik Buterin : The current price of ETH has not been affected by the merger event
  4. 4Vibhu Norby : Solana Spaces store to bring 100K people to Solana per month
  5. 5CZ: compared with the record high nine months ago, the current situation of the industry is much better

Top Gainers

View more
TAC
TACTAC

$0.0564

+161.46%
Lobster
Lobster龙虾

$0.0129

+38.68%
Unibase
UnibaseUB

$0.1084

+29.82%
The Black Bull
The Black BullANSEM

$0.1040

+28.12%
Ordinals
OrdinalsORDI

$4.0650

+27.87%

Top Trending

View more
Ordinals
OrdinalsORDI

$4.0750

+28.18%
SK Hynix Inc
SK Hynix IncSKHYNIX

$1,687.45

-6.95%
LAB
LABLAB

$15.4200

-11.14%
Block Street
Block StreetBSB

$0.2523

+4.43%
TAC
TACTAC

$0.0564

+161.46%

Recently added

View more
Cap
CapCAP

$0.0230

-4.95%
The Black Bull
The Black BullANSEM

$0.1040

+28.12%
Nesa
NesaNES

$0.1764

+1.09%
Arcium
ArciumARX

$0.2746

+2.27%
Ambire AdEx
Ambire AdExADX

$0.0554

-1.42%

Learn

View more
  1. 1Crypto Trading Bots: What Are They and How Do They Work?
  2. 2What Are Appchains? How Do Application-Specific Blockchains Work?
  3. 3What Is Chain Abstraction? What Are the Advantages and Challenges?
  4. 4What Are Intent-Based Transactions? How Do They Work?
  5. 5What Are Modular Blockchains? How Do They Scale Networks?
About Us
  • About BitKan
  • Contact Us
  • Announcements
  • VIP Program
  • BitKan Ambassador
  • Institutional Services
Products
  • Spot
  • Futures
  • Crypto Prices
  • Learn
  • News
  • Markets
  • How to Buy Crypto
  • BTC to USD Calculator
  • Reward
Help
  • Help Center
  • Email Us
  • Live Chat
  • Download APP
  • Listing Application
  • Buy Bitcoin
  • Buy Ethereum
  • Buy Dogecoin
  • Buy Altcoins
Terms
  • Terms of Use
  • Privacy Policy
  • Trading Rules
  • Fee
K-Site
English
About Us
+
  • About BitKan
  • Contact Us
  • Announcements
  • VIP Program
  • BitKan Ambassador
  • Institutional Services
Products
+
  • Spot
  • Futures
  • Crypto Prices
  • Learn
  • News
  • Markets
  • How to Buy Crypto
  • BTC to USD Calculator
  • Reward
Help
+
  • Help Center
  • Email Us
  • Live Chat
  • Download APP
  • Listing Application
  • Buy Bitcoin
  • Buy Ethereum
  • Buy Dogecoin
  • Buy Altcoins
Terms
+
  • Terms of Use
  • Privacy Policy
  • Trading Rules
  • Fee
K-Site
+
  • Twitter
  • Facebook
  • Telegram
  • YouTube
  • Instagram
  • Medium
  • Linkedin
@2012-2026 BITKAN.com