Lightning network has security risks, users need to update the client as soon as possible

According to Trustnodes.com, August 31, Rusty Russell, developer of the Bitcoin Lightning Network, said:

Many lightning network related projects have security issues that can result in the loss of user funds.

In the post shared by the lightning network mailing list, he said that the "full details of the security issue will be announced within 4 weeks", presumably to prevent hackers from exploiting this vulnerability.

Russell urged all users running the Lightning Network to upgrade and publicly stated:

Everyone should complete the upgrade within a period of time, and make sure that the version of the client you are running the Lightning Network c-lightning is < 0.7.1, lnd < 0.7, eclair <= 0.3, and these versions are very vulnerable.

There are currently three vulnerabilities reserved in the Common Vulnerabilities Disclosure (CVE, a vulnerability dictionary recognized by security practitioners, which you can use here to find vulnerability information for different applications or systems). One of them said:

This vulnerability has been retained by an organization or individual. When the vulnerability is announced, we will provide more details about it.

Recently released a new version of the Lightning Network client, which is clearly not affected by the above vulnerability:

Screen Shot 2019-08-31 at 3.30.45 PM (Source: Twitter)

We are pleased to announce the #clightning 0.7.2 version, "Zhong Ben Cong was pre-approved by the US Congress" just released!

This release includes dynamic plugin management, support for upcoming signets, many performance improvements, and some minor fixes.

– Christian Decker, August 20, 2019 Now we don't know what happened. The above vulnerability is mainly aimed at the older lightning network nodes.

We will continue to update Blocking; if you have any questions or suggestions, please contact us!

Share:

Was this article helpful?

93 out of 132 found this helpful

Discover more

Market

What impact does BlackRock's submission of a physical Bitcoin ETF application have on the industry?

According to a public document, on the afternoon of June 15th, New York time, investment management giant BlackRock s...

Market

Get Ready for a Crypto Carnival - New Listings and Delistings!

Check out our latest rundown of notable digital asset listings, delistings, and trading pair updates from crypto exch...

Blockchain

OKEx CEO Jay Open Letter: The decision to launch Jumpstart is really tough

Yesterday, the dust settled. The participation rules of our Utility Token sales platform OK Jumpstart were officially...

Blockchain

A picture proves that there are a large number of cleaning transactions on the exchange

In order to more accurately depict trading activity, the "Real 10" indicator only considers the volume of t...

Blockchain

Fake foreign exchange platform to enter the currency circle: reverse shouting, tampering with data, investors become the biggest victims

After the spread of money and funds, there has been a new routine in the currency circle – a false exchange. Pu...

Blockchain

The coin was stolen for the first time, and the 7000BTC was missing.

On the morning of May 8, the world-renowned cryptocurrency exchange currency announced that the currency security was...