EVM â Cosmos Convergence Research From Security Base: Part 3
ID: 24137fbc-619c-5eac-8eee-457521d301cc
STIX ID: report--24137fbc-619c-5eac-8eee-457521d301cc
Feed Name: CertiK Blog
This blog analyzes the post‑Merge layered blockchain model (Execution Layer, Consensus Layer, Engine API) and examines attempts to swap Ethereum's Gasper FFG for CometBFT (e.g., BeaconKit). It highlights security risks from implementation discrepancies — specifically a ProcessProposal design that accepts invalid proposals and a duplicate KZG commitment detection bug — which could allow invalid execution payloads to be processed or enable a malicious actor to halt a chain by submitting two identical blob transactions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
