movement-labs

1 article
sort: new top best
clear filter
0 8/10
vulnerability

A critical logic flaw in Movement Labs' full node software lacked height-based fork-choice logic, allowing two blocks at the same height with different IDs to be processed and permanently splitting the chain. The vulnerability required missing a height check in the process_block_from_da function, enabling double-spend attacks and necessitating a hard fork to resolve.

Movement Labs Yunus Emre Sarıtoprak Immunefi Celestia execute_settle.rs process_block_from_da
medium.com · Yunus Emre Sarıtoprak · 17 hours ago · details