Categories: Uncategorized

Coinbase Merchant Error Causes Major Exploit on Overstock

Recently, it was made public that retail giant Overstock.com had fallen victim to a huge exploit involving Coinbase’s merchant API. This is another issue on top of many others that customers and businesses have made apparent affecting the leading Bitcoin exchange.

On January 5, independent researchers discovered a massive exploit in Overstock’s cryptocurrency payment gateway, which is offered through Coinbase’s merchant functionality. This exploit allowed Overstock customers to purchase items with Bitcoin Cash (BCH) instead of Bitcoin, which effectively resulted in an almost 85% discount.

The even greater issue that emerged was the ability to return purchases made with the discounted BCH and receive Bitcoin in return. Malicious users could pay for an order in Bitcoin Cash and be refunded an equal amount of Bitcoin. This exploit emerged when Coinbase first implemented Bitcoin Cash support on December 19, and existed for almost three weeks.

Coinbase claims that the bug emerged due to improper implementation of its merchant API by Overstock. According to the exchange, Overstock was the only partner out of dozens of merchants that experienced this issue. Furthermore, Coinbase stated that it worked alongside Overstock to solve the problem.

Related Post

However, Overstock’s statement contradicted Coinbase, asserting that the issue was entirely the fault of the exchange. The online retailer asserted that it had changed no code on its website, and that only Coinbase’s merchant API had been tweaked.

It is unclear to what extent this bug was exploited, if at all. However, if just one malicious user came across this bug during the time it existed, they would have the potential to steal hundreds of thousands or even millions of dollars worth of Bitcoin from the retailer.

Overstock.com represents one of the first major companies to support Bitcoin. Since 2014, it has accepted cryptocurrency as payment for any of its items. Additionally, Overstock accepts Ethereum, Litecoin, Monero, NEM, and Dash. Overstock’s CEO has been outspoken about cryptocurrency throughout this time period, and has even considered liquidating the retail portion of the business to fund blockchain-based ventures.

Since first accepting Bitcoin in 2014, Overstock has held onto a portion of its Bitcoin profits, seeing the coin rise from just a few hundred dollars to a high of US$20,000 during this time period. As an outspoken Bitcoin supporter, Overstock’s stock has also performed incredibly in conjunction with the ongoing cryptocurrency surge.

 

Zane Huffman

Zane is a crypto enthusiast who has been involved since August 2013. He is a trader and writer of all things cryptocurrency. He is very excited for the role cryptocurrency will play in the future, especially in regards to the videogaming industry.

Share
Published by
Zane Huffman

Recent Posts

UpOnly Redefines How Crypto Assets Are Designed

  Bootstrapped Project Processes $5M in Trading Volume Within Two Weeks, Proving Viability of ALM…

13 hours ago

Polymarket Acquires Brahma To Strengthen Crypto Infrastructure

Prediction market platform Polymarket is making another move to deepen its crypto roots, announcing the…

1 day ago

Ethereum Could Get Near-Instant Transaction Certainty With New Proposal

Ethereum co-founder Vitalik Buterin has introduced a new idea that could quietly change how people…

1 day ago

Tempo Mainnet Goes Live With Machine Payments Protocol, Paving the Way for Agent-First Payments

Tempo’s mainnet is officially live, and from today, developers can start building directly on the…

1 day ago

UK Court Allows $172 Million Bitcoin Theft Case To Move Forward

A UK High Court has given the green light for a high-profile crypto theft case…

2 days ago

PIPPIN Drops Over 50% in a Day as $200M Wiped Out Amid Heavy Wallet Selling

It’s been a rough day for PIPPIN holders. The token plunged 52.8% within hours, wiping…

2 days ago