Cointime

Download App
iOS & Android

Polygon zkEVM: Results of Hexens' Security Audit

Validated Project

A comprehensive security audit of Polygon zkEVM began in December. Two security teams have been independently stress-testing all components, including the prover and smart contracts for Polygon zkEVM.

The result of the audit by one of those security teams, Hexens, is now available. (You can view the full report here.) In keeping with Polygon zkEVM’s built-in-public ethos, we wanted to outline the findings.

‍In total, Hexens found nine vulnerabilities, ranging in severity from critical to low—and seven additional recommendations related to informational gaps in Polygon zkEVM’s documentation.

‍As of this writing, all 16 issues have been fixed.

Those fixes related to the network were made available on the audit-upgraded testnet that went live earlier this month.

Polygon zkEVM: Setting the Standard

The security audit for Polygon zkEVM has been thorough, rigorous, and is not even finished. In addition to Hexens, another security team, Spearbit, conducted a parallel audit of Polygon zkEVM’s smart contracts. The Polygon Hermez team also conducted its own internal audit. Last week, Spearbit began yet another audit, focused on the ZK circuits and cryptography.

‍No technology, especially novel technology like Polygon zkEVM, can be entirely de-risked. However, Polygon Labs is establishing best practices for securing zkEVMs. When Mainnet Beta for Polygon zkEVM launches, all 35 components will have been audited three times, by 26 researchers, over the course of nearly four months. ‍

In the coming weeks, we will share the findings of the remaining audits as the reports are finalized.

Audit Scope

Hexens’ security review focused on the client stack. This includes the RPC node, sequencer, and aggregator, where proofs are generated. Hexens also reviewed PIL, the language for creating polynomial identities, and the smart contract for bridging assets to Ethereum.

Audit Findings

In total, four critical vulnerabilities were found in Hexens’ audit. One relied on an exploitation of the mechanism that makes Polygon zkEVM censorship resistant. Another used the extended features of ERC-777 tokens to launch a re-entrancy attack on the bridge smart contract. The other two critical vulnerabilities relied on manipulation of missing binary constraints: one in the Storage state machine and one in the ROM.

The remaining vulnerabilities were non-critical. Two in particular are worth highlighting because they illustrate the technical complexity of designing a rollup that increases Ethereum’s throughput without sacrificing EVM-equivalence.

In the EVM, the ecrecover function is used to recover the public key of a transaction sender from the transaction signature. This is an important function for verifying the authenticity of a transaction. A discrepancy with how ecrecover is implemented in zkASM, the assembly language used to implement the EVM in Polygon zkEVM, could have allowed a dishonest user to generate a proof for a transaction that is not compliant with the EVM.

Another non-critical vulnerability would have relied on a difference in the maximum size allowed for gas limits and chain IDs between Polygon zkEVM and EVM implementations, allowing a dishonest user to spam the sequencer and potentially interrupt the network’s availability.

For a comprehensive resource on Polygon zkEVM, check out the documentation wiki. And if you’re interested in (or perplexed by) Zero Knowledge, follow Polygon Labs’ dedicated ZK handle, @0xPolygonZK, and head over to our ZK forum.

Read more: https://polygon.technology/blog/polygon-zkevm-results-of-hexens-security-audit

Comments

All Comments

Recommended for you

  • Telegram Renames Gram Wallet to Money and Launches for All Users

    On October 9, Telegram officially renamed its previously limited-access wallet service 'Gram wallet' to 'Money' and launched it to over one billion users across the platform. 'Money' is an integrated wallet for the Gram token, supporting storage, transfers, and purchases of platform gifts and collectible usernames. Additionally, the accompanying trading platform 'Walt' offers services for over 300 assets, including tokenized stocks, precious metals, perpetual contracts, and wealth management projects. Users can make instant transfers from 'Walt' to the 'Money' wallet without incurring network fees. The official statement also cautions that investing in crypto assets carries associated risks.

  • Blockchain.com Seeks Approval for Prediction Markets and Cryptocurrency Derivatives Trading

    On October 9, the crypto asset platform Blockchain.com submitted an application to the U.S. Commodity Futures Trading Commission (CFTC) seeking to obtain licenses for a designated contract market (DCM) and a futures commission merchant (FCM) to offer event contracts (prediction markets) and cryptocurrency derivatives trading services to U.S. users.

  • US May Seize Approximately $1 Billion in Cryptocurrency Related to Iran This Week

    U.S. Treasury Secretary Bencet stated at the NPolicy Summit held by Newsmax in Washington on Thursday that we may seize $1 billion in cryptocurrency this week, adding, "We know where it is, and we are isolating them." Bencet noted that the Trump administration's approach to Iran has shifted from 'maximum pressure' to 'absolute isolation,' with measures including maritime blockades, restrictions on air travel, and the cutting off of land routes. The UAE and Oman are cooperating with the U.S., which is also working with Pakistan and Turkey to cut off all land routes in and out of Iran.

  • Zcash Development Team Plans to Introduce Quantum-Resistant Signatures in January

    The development team of the privacy cryptocurrency Zcash (ZEC) plans to introduce post-quantum signature opcodes to the network in January next year, supporting hash-based signature technology to defend against potential quantum computing attacks. This solution primarily targets the transparent (public) payment pool, where approximately 70% of ZEC is currently stored. Although the developers have set January as the target deadline, the specific network activation time has not yet been finalized. This upgrade aims to prevent attackers from using existing public keys to reverse-engineer private keys and forge payment authorizations. Additionally, the Zcash node validator Zakura has launched a wallet tool based on Private Information Retrieval (PIR), allowing users to query balances across multiple addresses without revealing the correlation between those addresses to the server. Previously, Ethereum researcher Justin Drake warned that artificial intelligence could accelerate the cracking of traditional encryption algorithms and urged cryptocurrency holders to prepare for potential security threats.

  • BTC Surpasses $83,000

    Market data shows that BTC has surpassed $83,000, currently priced at $83,017.3, with a 24-hour increase of 0.66%. The market is highly volatile, so please ensure proper risk management.

  • Central Committee and State Council: Comprehensive Implementation of 'AI+' Initiative

    On October 9, the Central Committee of the Communist Party of China and the State Council issued the 'Opinions on Developing New Quality Productive Forces.' The opinions mention the comprehensive implementation of the 'AI+' initiative. This includes promoting the transformation of traditional industries through artificial intelligence, accelerating the development of new-generation intelligent terminal applications such as smart connected new energy vehicles, AI smartphones and computers, and humanoid robots. It aims to speed up innovation in digital intelligence technologies like artificial intelligence, break through foundational theories and core technologies, and strengthen the efficient supply of computing power, algorithms, and data. The strategy involves tailored approaches based on local conditions and industry-specific policies to layout national pilot bases for AI industry applications and high-value application scenarios, vigorously promoting the application of AI across various sectors. Additionally, it emphasizes the establishment of a technology monitoring, risk warning, and emergency response system to ensure that artificial intelligence is safe, reliable, and controllable.

  • U.S. Government-Related Wallet Deposits 17,733 BTC and 750 WBTC to Coinbase Prime

    On October 9, according to monitoring by Lookonchain, wallets associated with the U.S. government have deposited 17,733 BTC (worth $1.48 billion) and 750 WBTC (worth $62 million) into Coinbase Prime over the past three days. According to tagging data from Arkham, these wallets currently hold cryptocurrency assets valued at $25.4 billion, with Bitcoin alone valued at $25.3 billion.

  • ETH Falls Below $2500

    Market data shows that ETH has fallen below $2500, currently priced at $2499.87, with a 24-hour decline of 2.55%. The market is experiencing significant volatility, so please ensure proper risk management.

  • ETH Surpasses $2500

    Market data shows that ETH has surpassed $2500, currently priced at $2500.13, with a 24-hour decline of 2.21%. The market is experiencing significant volatility, so please ensure proper risk management.

  • BTC Surpasses $82,000

    Market data shows that BTC has surpassed $82,000, currently priced at $82,002.01, with a 24-hour decline of 1.47%. The market is highly volatile, so please ensure proper risk management.