Todayan hour ago
Project update
Polygon Silently Patched Severe Bugs That Could Stall Every Validator

Polygon Silently Patched Severe Bugs That Could Stall Every Validator

Polygon Labs disclosed it patched a batch of security vulnerabilities through two hard forks, Austin on its Bor client and Kyoto on Heimdall, both rolled out privately and validated on the Amoy testnet before mainnet activation.


The Austin fork closed two denial-of-service paths in block processing, including one where a malicious block producer could crash peer nodes by stuffing a block with an oversized data field. The Kyoto fork addressed a broader set of consensus-hardening issues, the most severe being a flaw that would have let an attacker force costly, coordinated work across the entire validator set from a single crafted transaction, cheap to build but expensive for the network to process. Polygon stressed that none of the flaws were seen exploited on mainnet and that all were resolved proactively. Both upgrades are now mandatory for node operators and already active, with no state migration or resync required.


The disclosure lands mid-overhaul for Polygon, which recently completed its MATIC to POL migration. POL was trading near $0.10, down about 6.8% on the week, leaving a market cap around $1.07B.


Partner Offers | Get Your Instant BTC Cashback | Your Gateway To Crypto | Arcus Private Whitelist