CDS Crypto News Serious Worldcoin Bug: Anybody Could Assume Orb Operator Role
Crypto News

Serious Worldcoin Bug: Anybody Could Assume Orb Operator Role

Worldcoin bug allowed anyone to become Orb Operator: CertiK.

705
Serious Worldcoin Bug: Anybody Could Assume Orb Operator Role

Crypto security firm CertiK recently discovered a vulnerability in the Worldcoin protocol that allowed attackers to bypass the verification process and become an Orb operators without meeting the necessary requirements.

Serious Worldcoin Bug: Anybody Could Assume Orb Operator Role

The vulnerability would have permitted anyone to become a Worldcoin Orb operator without being a legitimate company, undergoing proper ID verification, or passing a vetting interview. CertiK reported the issue to Worldcoin through standard whitehat disclosure, and the project’s security team promptly confirmed the vulnerability and issued a fix. CertiK verified that the fix effectively mitigated the threat. They plan to disclose the details of the finding and how the vulnerability was addressed in the future.

In a normal case, only legit businesses that pass the Worldcoin’s strict identification verification process can run an Orb operation, which collects user’s iris information.

CertiK

Interestingly, CertiK’s revelation came just a week after Worldcoin released a report on security audits conducted by Nethermind and Least Authority. The Nethermind audit found 26 items during the assessment, 24 of which were fixed after verification, one was mitigated, and one was acknowledged. Least Authority identified three issues and provided six suggestions, all of which have been resolved or have planned resolutions, according to Worldcoin.

As of now, both CertiK and Worldcoin have not responded to Decrypt’s requests for comment on the matter.

Serious Worldcoin Bug: Anybody Could Assume Orb Operator Role
Sources:decrypt.co
Written by
sevval

Şevval has been actively writing since 2022 and is a third-year mathematics student at Ankara University. Her interest in writing is shaped particularly around innovative technologies such as Web3, artificial intelligence, and blockchain. She closely follows developments in these fields and aims to convey complex topics to readers in a clear and engaging manner. She enjoys combining her mathematical knowledge with technology to create content and strives to raise awareness about the digital world of the future.

Leave a comment

Leave a Reply

Related Articles

Worst Ethereum Weekly Outflow: Are Smart Investors Buying the Dip?

For more comprehensive information on the worst Ethereum weekly outflow, please visit...

Next Mega Bitcoin Rally? Bold Monte Carlo Forecast Ignites Market Hype

For more comprehensive information on the next mega Bitcoin rally and BTC's...

Lufthansa Shares Plummet as Strikes Disrupt Air Travel Across Germany

For more comprehensive information on Lufthansa shares plummet as strikes in Germany...

Strategy Seeks $21 Billion to Boost Bitcoin Holdings!

Strategy, formerly known as MicroStrategy, has filed a prospectus with the Securities...