Injective Fixed Critical Flaw After White Hat Hacker Reported $500 Million Risk

White hat hacker f4lc0n said the vulnerability could have exposed more than $500 million in on-chain assets, and that Injective patched it through a mainnet upgrade vote the day after the March 16 Immunefi report.

INJ

Summary

White hat hacker f4lc0n said he discovered a critical Injective vulnerability that could have enabled the extraction of more than $500 million in on-chain assets. According to his account, he submitted the issue through Immunefi on March 16, and Injective fixed it the next day through a mainnet upgrade vote. f4lc0n is also disputing a $50,000 bounty, saying it remains unpaid.

Terms & Concepts
  • White hat hacker: A security researcher who identifies and responsibly reports vulnerabilities so they can be fixed rather than exploited.
  • On-chain assets: Digital assets recorded directly on a blockchain, with balances and transfers visible and verifiable on the network.
  • Mainnet upgrade: A change deployed to a live blockchain network, often used to patch vulnerabilities or modify protocol behavior.