|

Ethereum Merge makes network more vulnerable to attack – Security expert

The security expert said that while PoS isn’t “theoretically” as secure as PoW, he admits it still has “sufficient practical security.”

Despite the Ethereum Merge being touted as a major upgrade to the blockchain network, its transition to proof-of-stake theoretically makes it more vulnerable to exploit.

Speaking to Cointelegraph, the security researcher explained that unlike proof-of-work (PoW) systems, a proof-of-stake (PoS) system informs node validators in advance what blocks they will validate, thus enabling them to plan attacks.

The security expert, who asked not to be named, is a blockchain developer and security researcher working on a proof-of-stake layer-2 blockchain.

The researcher explained that an exploit could theoretically occur on the post-Merge Ethereum blockchain if validators manage to line up two consecutive blocks to validate.

If you control two consecutive blocks, you can start an exploit on block N and finish it on block N+1 without having any arbitrage bot coming in and fixing the price that you have manipulated in between.

“From an economic security standpoint, [this vulnerability] makes these attacks relatively easier to pull off.”

The expert said that while it’s also possible for miners to validate consecutive blocks in PoW networks – that comes down to “pure luck” and gives the miner no time to plan an attack.

As a result, the security researcher argues that Ethereum will be forgoing some strength in security when the Merge takes effect:

As we stand right now [with] the Ethereum proof-of-work versus Ethereum proof-of-stake, Ethereum proof-of-work does have stronger security [...] and economic guarantees.

“But that being said [...] proof-of-stake [still] has sufficient practical security [and] it doesn't really matter that it's theoretically not as secure as proof-of-work. It's still a very secure system,” he added.

The security expert added that “Ethereum is working on fixing [the consecutive block issue].

It is a hard problem to solve, but if that gets done, then proof-of-stake security will [further] increase [as] they’ll have protection against those attack vectors.”

Ethereum validators are subject to slashing in PoS, as the consensus rules were designed to economically incentivize validators to correctly validate incoming transactions and any conduct to the contrary would see their ETH stake slashed.

The Ethereum Merge is finally set to take place on Sept. 15 at about 2:30am UTC, according to Blocknative’s Ethereum Merge Countdown. The transition to PoS is set to make the Ethereum network more scalable and energy-efficient.

Author

Cointelegraph Team

Cointelegraph Team

Cointelegraph

We are privileged enough to work with the best and brightest in Bitcoin.

More from Cointelegraph Team
Share:

Markets move fast. We move first.

Orange Juice Newsletter brings you expert driven insights - not headlines. Every day on your inbox.

By subscribing you agree to our Terms and conditions.

Editor's Picks

AAVE slips below $186 as bearish signals outweigh the SEC investigation closure

Aave (AAVE) price continues its decline, trading below $186 at the time of writing on Wednesday after a rejection at the key resistance zone. Derivatives positioning and momentum indicators suggest that bearish forces still dominate in the near term.

Hyperliquid stabilizes amid plans to burn assistance fund

Hyperliquid (HYPE) stabilizes above $26 at press time on Wednesday after three straight days of losses. Hyperliquid Foundation has started a validator vote to reduce supply by burning the assistance fund, which holds over 37 million HYPE tokens.

Top 3 Price Prediction: Bitcoin, Ethereum, Ripple extend correction as bearish momentum builds

Bitcoin, Ethereum, and Ripple remain under pressure as the broader market continues its corrective phase into midweek. The weak price action of these top three cryptocurrencies by market capitalization suggests a deeper correction.

Ethereum Price Forecast: Active addresses plunge to May levels amid resumption in US selling pressure

Ethereum (ETH) weekly active addresses have plunged sharply in December, declining from 440K to 324K, levels last visited in May. The decline in active addresses has also pushed down the number of transactions on the network to July lows.

Orange Juice Newsletter – Smart insights by real people. Every day.

A free newsletter highlighting key market trends to help traders stay a step ahead. Daily insights on the most relevant trading topics, compiled by our experts in an easy-to-read format so you never miss an important move.

Bitcoin: Fed delivers, yet fails to impress BTC traders

Bitcoin (BTC) continues de trade within the recent consolidation phase, hovering around $92,000 at the time of writing on Friday, as investors digest the Federal Reserve’s (Fed) cautious December rate cut and its implications for risk assets.