Polygon Discloses Security Flaws in Recent Hard Forks
Polygon has disclosed several previously private security vulnerabilities that could have disrupted its proof-of-stake network. The vulnerabilities, which included denial-of-service risks and validator resource exhaustion, affected Polygon's Bor and Heimdall clients.
The most severe issue involved Heimdall, where a specially crafted transaction could force validators to perform excessive processing work, potentially disrupting the network.
Polygon said the flaws were fixed through two recent hard forks: Austin and Kyoto. The fixes were deployed privately and tested before being activated on mainnet and publicly disclosed.
None of the vulnerabilities were observed being exploited on mainnet, according to Polygon, which said the fixes were deployed proactively before details were made public.