Lightning Network first faced the vulnerability, Lightning Labs stressed no update or risk of losing money

On September 11, according to lightning network developers, the old version of Lightning Network software has serious security vulnerabilities. If users do not update, they may lose money.

As early as August 30, Lightning Network developer Rusty Russel first disclosed the vulnerability , and on Wednesday, Lighto Labs chief technology officer Olaoluwa Osuntokun confirmed this.

It is unclear whether there are losses to users (or, if any, how much), and how many users are affected (Note: One of the characteristics of Lightning Networks is that it is anonymous).

Osuntokun warned on the developer mailing list that multiple versions of lightning network nodes are vulnerable to attack and they should be updated immediately, adding that:

"We have confirmed instances where CVE vulnerabilities have been abused."

As of now, Lightning Network is an experimental layer-2 expansion solution designed to allow for almost no-cost transactions, making it possible to purchase daily transactions such as coffee with bitcoin.

However, the existence of CVE vulnerabilities suggests that this technology still has problems with any code financial products.

“Security issues have been discovered in various lightning network products, which can cause users to lose money,” Russel wrote in his initial post. “All details will be released within 4 weeks (2019-09-27), please Upgrade before this."

Osuntokun stressed that the lightning network is still in its infancy.

P4

"Please upgrade to the latest version because they are not risky. These new software are:

  1. Lnd 0.7.1
  2. C-lightning 0.7.1
  3. Eclair 0.3.1

This is also a good opportunity to remind us of the limitations of the Lightning Network to mitigate the losses of funds in the early stages, and vulnerabilities generally exist. (Translator's Note: Developers have imposed a limit on the number of lightning networks in the early days, the purpose is to prevent the immature lightning network from causing users to lose too much money, which is also a foresight .)

Don't invest more than the amount of money you can afford on the lightning network! It is reported that the affected lightning network software includes all LND 0.70 and below, C-Lightning 0.70 and below and E Clair 0.3 and below.

We will continue to update Blocking; if you have any questions or suggestions, please contact us!

Share:

Was this article helpful?

93 out of 132 found this helpful

Discover more

Blockchain

When bitcoin "rules" the cryptocurrency market, will everything get better?

Recently, there have been some voices in the industry that "bitcoin has to dominate the cryptocurrency market.&q...

Blockchain

Research | What is the relationship between the difficulty of bitcoin mining and its price?

Most quantitative analysts will review the past bitcoin bubble and predict the approximate timing and consequences of...

Blockchain

Is it time for the exchange to access the lightning network transaction?

Bitcoin evangelist Pierre Rochard launched a vote on Twitter to discuss whether Lightning Networks is suitable for bi...

Market

Research says Bitcoin consumes 64 billion kWh a year more than the whole of Switzerland

Sina US stock news Beijing time on the 5th, according to the latest estimates released by Cambridge University resear...

Blockchain

The road that Bitcoin has traveled

A few days ago, my bitcoin skyrocketed and the market was in a jubilant mood. I posted on a social media:" Withi...

Market

Bitcoin sees a positive start in July, will it reach $40,000 soon?

Bitcoin price broke through $31,000 during Monday's US stock trading session, triggering bullish sentiment among inve...