Polygon's chief of security says his department now employs 10 experts to ensure top-notch cyber security practices are adopted, recommending other crypto firms do the same.

Polygon Chief Security Officer Mudit Gupta has urged Web3 companies to hire traditional security experts to put an end to easily preventable hacks, arguing that perfect code and cryptography are not enough. 

Speaking to Cointelegraph, Gupta outlined that several of the recent hacks in crypto were ultimately a result of Web2 security vulnerabilities such as private key management and phishing attacks to gain logins, rather than poorly designed blockchain tech.

Adding to his point, Gupta emphasized that getting a certified smart contract security audit without adopting standard Web2 cybersecurity practices is not sufficient to protect a protocol and user's wallets from being exploited:

I've been pushing at least all of the major companies to get a dedicated security person who actually knows that key management is important.

“You have API keys that are used for decades and decades. So there are proper best practices and procedures one should be following. To keep these keys secure. There should be proper audit trail logging and proper risk management around these things. But as we've seen these crypto companies just ignored all of it,” he added.

While blockchains are often decentralized on the backend, “users interact with [applications] through a centralized website,” so implementing traditional cybersecurity measures around factors such as Domain Name System (DNS), web hosting and email security should always “be taken care of,” said Gupta.

Gupta also emphasized the importance of private key management, citing the $600 million Ronin bridge hack and $100 million Horizon bridge hack as textbook examples of the need to tighten private key security procedures:

Those hacks had nothing to do with blockchain security, the code was fine. The cryptography was fine, everything was fine. Except the key management was not. The private keys [...] were not securely kept, and the way the architecture worked was if the keys got compromised, the whole protocol got compromised.

Gupta suggested that the current sentiment from blockchain and Web3 firms is that if “you fall for a phishing attack, it's your problem,” but argued that “if we want mass adoption,” Web3 companies have to take more responsibility rather than doing the bare minimum.

For us [...] we don't want just the minimum safety that keeps the liability away. We want our product to be actually safe for users to use it [...] so we think about what traps they might fall into and try to protect users against them.

Polygon is an interoperability and scaling framework for building Ethereum-compatible blockchains, which enables developers to build scalable and user-friendly decentralized applications.

With a team of 10 security experts now employed at Polygon, Mudit now wants all Web3 companies to take the same approach.

Following the $190 million Nomad bridge hack in August, crypto hacks have now surpassed the $2 billion mark, according to blockchain analytics firm Chainalysis.


Information on these pages contains forward-looking statements that involve risks and uncertainties. Markets and instruments profiled on this page are for informational purposes only and should not in any way come across as a recommendation to buy or sell in these assets. You should do your own thorough research before making any investment decisions. FXStreet does not in any way guarantee that this information is free from mistakes, errors, or material misstatements. It also does not guarantee that this information is of a timely nature. Investing in Open Markets involves a great deal of risk, including the loss of all or a portion of your investment, as well as emotional distress. All risks, losses and costs associated with investing, including total loss of principal, are your responsibility. The views and opinions expressed in this article are those of the authors and do not necessarily reflect the official policy or position of FXStreet nor its advertisers.

Join Telegram

Recommended content


Recommended Content

Editors’ Picks

Ripple on-chain metrics show bullish signs amidst legal struggle with SEC, XRP eyes recovery

Ripple on-chain metrics show bullish signs amidst legal struggle with SEC, XRP eyes recovery

Ripple made a comeback above $0.48 on Tuesday and hovers above that level in Wednesday’s European session. Ripple on-chain metrics such as transaction volume and Network Realized Profit/Loss have turned bullish, supporting a recovery in the altcoin. 

More Ripple News

Bitcoin price falls amidst German government transfers, miners activity

Bitcoin price falls amidst German government transfers, miners activity

Bitcoin (BTC) extends correction on Wednesday and hovers around $61,000 after finding resistance near the $64,000 level on Monday. Recent on-chain data indicates heightened selling activity from Bitcoin miners early in the week. 

More Bitcoin News

Crypto Today: Bitcoin erases gains from end of June, Ethereum declines while Ripple holds

Crypto Today: Bitcoin erases gains from end of June, Ethereum declines while Ripple holds

Bitcoin wipes out gains from the last week of June and falls below $60,000 on Wednesday. Ethereum and top altcoins ranked by market capitalization erased gains as the inflation outlook worsened. Ripple holds on to recent gains and hovers above $0.48 on Wednesday. 

More Cryptocurrencies News

Three reasons why altcoins could shake off losses this week

Three reasons why altcoins could shake off losses this week

On-chain data from Santiment shows that altcoins are currently in the opportunity zone, or generating buy signals. The top three altcoins in the buy zone are Basic Attention Token (BAT), Chromia (CHR), and Highstreet (HIGH), per Santiment. 

More Altcoins News

Bitcoin: BTC price correction could end in July, according to seasonal data

Bitcoin: BTC price correction could end in July, according to seasonal data

Bitcoin (BTC) price appears poised for a decline this week, influenced by slight outflows in US spot ETFs, selling activity among BTC miners, and a combined transfer of 4,690.28 BTC to centralized exchanges by the US and German governments.

Read full analysis

BTC

ETH

XRP