Hey SageSwap, after the coldcard attack, instant-exchange services like boltz are also being attacked and having flaws exploited, how can you protect yourself from this (more details in the tweet below)?
Is there any contingency plan?
To be clear: this is not a response to a single incident. Over the past months we have seen a steady rise in automated, AI-assisted probing of our infrastructure, and we have dealt with several exploits. Each was contained, but the pattern is clear: attackers now iterate faster than a team our size can find and patch. In the past few days alone we saw a drastic acceleration, and we do not believe this asymmetry will reverse. After reviewing the results of our own recent security scans, we cannot responsibly re-enable Boltz swaps, especially as we are being actively targeted by what appear to be multiple resourceful groups while we race to deploy fixes.
Hey, over the past 5 days we've run several independent pen-tests, which is why some of you may have had trouble creating transactions for a few hours over the past few days.
The tests didn't reveal anything other than one minor error that had absolutely no impact on our reserves, transactions, or affiliate related matters.