Zano Attacker Creates 36.9M Unauthorized Coins Before Blockchain Rollback
A recent post-mortem analysis by Zano has revealed that an attacker exploited its Gateway Address vulnerability to create approximately 36.9 million unauthorized ZANO over a month-long period before the blockchain was rolled back.
The attack occurred in two stages, with the first instance happening on August 29th when the attacker minted around 18.4 million ZANO in a single transaction, and the second instance occurring on September 25th, resulting in another 18.4 million ZANO being created.
The team acknowledged that the rollback of the blockchain by about a month would hurt trust but argued it was necessary to remove unauthorized supply as it could not be distinguished from legitimate coins.