Skip to content
Pyrupay

Pyrupay

Cryptocurrency | ICO | IEO | Entrepreneur Blog

  • Updates
  • Press Release
  • ICO/IEO List with Us
  • Newsletter
  • Crytpo Rates
  • Toggle search form
  • New Report From Dacxi Finds Lack of Crypto Education Stops Over 57% of People From Investing Press Release
  • Adult Film Star Lana Rhoades Deletes Twitter Account After NFT Project Was Criticized Updates
  • Billionaire Investor Bill Miller Sees Fresh Opportunities for Bitcoin Amid Sell-off Updates
  • DCG Subsidiary to Acquire Bitcoin Mining Facilities and Other Assets From Compute North Updates
  • Financial Guru Dave Ramsey Weighs in on FTX Collapse — Reiterates His Crypto Warning Updates
  • Binance Organizes Crypto Consortium to Revive Trust in Blockchain Industry Updates
  • ‘Self-Custody Should Mean the Ownership of Everything About You’ Says Sharering’s Tim Bos Updates
  • While DeFi Total Value Locked Fell by 51% Since the End of Q1, Arrakis Finance Amassed $1 Billion TVL Press Release

Emergency Hotfix Deployed to Prevent Disruption to the Lightning Network

Posted on November 2, 2022 By Nandan Kumar

After the recent v0.15.3. update to the Lightning Network, a critical security vulnerability was discovered by independent cybersecurity researchers that would potentially allow bad actors to stop lnd nodes from parsing transactions.
A Lightning Network Daemon (lnd) is a full implementation of a Lightning Network Node, along with the services and plug-ins that allow it to connect to the rest of the Lightning network, a Layer-2 blockchain for Bitcoin that enables smart contracts to be run on the BTC network.
Update Released Mere Hours After Discovery
Thanks to watchful community member Burak’s work and responsive devs, hotfix v0.15.4-beta was released about three hours after the bug was discovered.
If left unattended, the bug could have stopped transactions going through if the nodes responsible for parsing them had been attacked by bad actors.
“This is an emergency hot fix release to fix a bug that can cause lnd nodes to be unable to parse certain transactions that have a very large number of witness inputs.”
Devs using the Lightning Network now have two weeks to apply the update. Afterward, channel timelocks currently in place will expire and leave the nodes vulnerable again.
Second Critical Bug in a Month, Discovered by Burak
The most recent bug, which affected the btcd wire parsing library of the Lightning Network, was discovered and announced by Burak on Twitter.

Sometimes to find the light, we must first touch the darkness.https://t.co/dhCwF0DxpE
— Burak (@brqgoo) November 1, 2022

In the blockchain transaction used to demonstrate the bug, the developer left a tongue-in-cheek message indicating the root cause of the problem: “you’ll run cln. And you’ll be happy.”
The developer was also responsible for uncovering a similar bug on the 9th of October. In that instance, Burak created a 998-out-of-999 multisig transaction that was promptly rejected by both LND and btcd nodes. This resulted in the entirety of the block the transaction was recorded in being rejected, leading to a measly transaction fee of only $5.16.
Although this bug may have made many in the Bitcoin community happy, it was still technically an exploit of the system and was patched shortly after.
This vulnerability had also allegedly been reported by white hat hacker Anthony Towns, who forwarded the info to a lead Lightning Network dev.

For what it’s worth, I also noticed this bug and disclosed it to @roasbeef about two weeks ago. The btcd repo doesn’t seem to have a reporting policy for security bugs, so not sure if anyone else working on btcd found out about it.
— Anthony Towns (@ajtowns) November 1, 2022

In spite of the speedy resolution to these two bugs, they led to calls for a bug bounty program for the Lightning Network – as these were reported due to nothing more than good faith. Without incentives for ethical hackers to discover and report similar bugs, there’s no telling who may discover future issues first.
The post Emergency Hotfix Deployed to Prevent Disruption to the Lightning Network appeared first on CryptoPotato.

Updates

Post navigation

Previous Post: Philippines Financial Institution Unionbank Now Provides Crypto Custody and Trading Services
Next Post: Democrats and Republicans Agree Cryptocurrency Is the Future of Finance, Survey Shows

Related Posts

  • Bitcoin Network’s Mining Difficulty Rises to All-Time High, Making Block Discovery More Challenging Updates
  • Technical Analysis: Cosmos Down 10%, as ANC Extends Recent Gains Updates
  • Reported First Real Estate Purchase Made With Bitcoin in Chile Updates
  • European Regulators Blast Federal Reserve for SVB Depositor Bailout Updates
  • BUSD Stablecoin Drops from Top 10 Crypto Assets Amid Significant Decrease in Dominance Updates
  • Biggest Movers: DASH, CVX and ALGO Lead Monday’s Gainers, APE Falls Further Updates

Like Us On Facebook

Facebook Pagelike Widget

Like Us On Facebook

Facebook Pagelike Widget

Recent Posts

  • Billionaire ‘Bond King’ Jeffrey Gundlach Predicts the Fed Will Cut Rates Substantially Soon
  • SEC Issues Warning Against Investing in Crypto Asset Securities
  • Moody’s Warns of Potential Financial Disruption Spillover Beyond US Banking Sector
  • Nasdaq to Offer Crypto Custody Services by Mid 2023
  • Shares of Deutsche Bank, Other Euro Lenders Tumble

Recent Comments

  • Sathya Shankar on Cryptocurrency Prices Today On June 21: Bitcoin, XRP, Binance Coin
  • binance bkstg angellist bitcoin on Cryptocurrency Prices Today On June 21: Bitcoin, XRP, Binance Coin

Archives

  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • August 2021
  • July 2021
  • June 2021
  • May 2021

Categories

  • Currency
  • Press Release
  • Updates

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org

Like Us On Facebook

Facebook Pagelike Widget

News

  • Survey: More Than 70% of Salvadorans Believe the Bitcoin Law Has Not Improved Their Personal Finances Updates
  • Bitcoin, Ethereum Technical Analysis: BTC Edges Closer to $18,800 Support Level on Saturday Updates
  • Report: South Sudan Government Bans US Dollar Transactions Updates
  • 10,000 Financial Institutions Can Now Let Customers Buy, Sell, Hold Bitcoin Through Their Bank Accounts Updates
  • Kraken Winds Down Staking Program, Pays $30 Million to Settle Unregistered Offering of Staking Services Case With SEC Updates
  • Report: Morocco Central Bank Discusses Crypto Regulation Best Practices With IMF and World Bank Updates
  • Following Long Consolidation, BTC Now Facing Huge Resistance: Bitcoin Price Analysis Updates
  • Argentinian Regulator to Propose Anti-Money Laundering Measures for Crypto Firms Updates

Copyright © 2023 Pyrupay.

Powered by Pyrumas