Bitcoin Forum
May 07, 2024, 04:40:28 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Lightning network vulnerability discovered, upgrade immediately  (Read 89 times)
Charles-Tim (OP)
Legendary
*
Offline Offline

Activity: 1540
Merit: 4849



View Profile
October 09, 2020, 06:58:06 AM
Merited by Upgrade00 (2), tyz (1), DdmrDdmr (1), nelson4lov (1)
 #1

Vulnerabilities has always been common in lightning network, but this recent one has been fixed, it requires an upgrade in the node version, the vulnerability was found in the LND versions 0.10.x and below which was disclosed to the Lightning Labs team. An upgrade is needed, node operators will have to upgrade to versions 0.11.0 or higher as soon as possible in order not to be affected by the vulnerability.

Lightning network node operators running LND versions prior to the Oct. 1 version 0.11 upgrade have been urged to upgrade immediately after a vulnerability was discovered affecting LND versions 0.10 and below. The vulnerability was made public in an Oct. 9 announcement from Lightning engineer Conner Fromknecht, Head of Cryptographic Engineering at Lightning Labs. Fromknecht said: “While we have no reason to believe these vulnerabilities have been exploited in the wild, we strongly urge the community to upgrade to lnd 0.11.0 or above ASAP,” Few details have been revealed so far, with Fromknecht assuring that the vulnerabilities will be disclosed in full on Oct. 20.
https://cointelegraph.com/news/lightning-network-vulnerability-discovered-upgrade-immediately

A vulnerability in LND versions 0.10.x and below has been disclosed to the Lightning Labs team, according to engineer Conner Fromknecht in the Lightning Network developer channel Thursday. In light of the disclosure, the firm is urging node operators to upgrade to versions 0.11.0 or higher as soon as possible.
https://www.coindesk.com/lightning-vulnerability-ind-node-operators-upgrade-asap?amp=1

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
1715056828
Hero Member
*
Offline Offline

Posts: 1715056828

View Profile Personal Message (Offline)

Ignore
1715056828
Reply with quote  #2

1715056828
Report to moderator
1715056828
Hero Member
*
Offline Offline

Posts: 1715056828

View Profile Personal Message (Offline)

Ignore
1715056828
Reply with quote  #2

1715056828
Report to moderator
You can see the statistics of your reports to moderators on the "Report to moderator" pages.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
CryptocurencyKing
Hero Member
*****
Offline Offline

Activity: 1288
Merit: 504


View Profile
October 09, 2020, 08:48:08 AM
Last edit: October 09, 2020, 10:32:30 AM by CryptocurencyKing
Merited by DdmrDdmr (1)
 #2

In light of the recent developments on the possibilities on exposure of the financial information of bitcoin payments thought to be anonymous by the LN is rather a thing to be cautious of and adhered to when there is a warning such as this one.

Having delayed and chocked up payments were some the reasons for proposing the Lightning Network to improves in the areas speed, affordability and privacy of bitcoin payments while ensuring anonymity by broadcasting transactions off the bitcoin blockchain and routed in encrypted communications. According to a report in January from cryptocurrency exchange BitMEX, 72.2 percent of Lightning Network channels are publicly announced, and 27.8 percent are kept private.
With the advent of cyber attacks haven't been found to improve on in it's technicalities and schemes, researchers warns in March-April academic publications of the possibilities of a straightforward cyber attack which might infiltrate on unravel balances, first and third parties datas on the Lightening Network through a hidden pathway. According to Ania Piotrowska a University of London Cryptographer, the Lightning Network opens the door for various attacks,”.
https://www.coindesk.com/researchers-surface-privacy-vulnerabilities-in-bitcoin-lightning-network-payments

This is rather dangerous, considering what is going on in the current kuCoin-exchange hack and other detrimental effects associated with privacy let loose.
The said date 20 Oct., Which I believe to be the day set aside to announcing the found vulnerability in the V.0.10 and below is going to raise the stakes on vulnerability high and would be a rather dangerous situation for those yet to upgrade to the said V.0.11 and all. Hence, the likelihood of the claim should be checked and appropriate measures put in place to ensure a tight security.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!