BTCPay Server Flags Critical Vulnerability Under Active Exploitation, Tells Admins to Upgrade

AI Market Summary
BTCPay Server disclosed a critical vulnerability under active exploitation that could enable unauthorized access and potential fund losses, urging immediate upgrades or shutdowns plus credential rotation and wallet migration. While impact is localized to merchants and self-hosted payment processors, the event raises near-term operational and security risk across Bitcoin commerce and Lightning-linked backends. Lack of disclosed scope or confirmed losses adds uncertainty and can dampen sentiment.
Impact level
● Medium
Affected assets
BTC/USDT+1.31%
AI Insight · BTC/USDTAI Insight
▼ Bearish
Trade now
⚠️ AI-generated insights are based on news content and are provided for informational purposes only. They do not constitute investment advice or represent the views of BingX. Investing involves risk. Please trade responsibly.
BTCPay Server said on X on Aug. 8 that it has identified a critical vulnerability in its Bitcoin payment processing platform that is currently being actively exploited, potentially enabling unauthorized access and leading to losses of funds, according to ChainThink. The project is instructing administrators to upgrade to version 2.4.2 and verify the update is complete by checking the server footer. If an immediate upgrade is not possible, BTCPay Server recommends temporarily shutting down the service to reduce exposure. BTCPay Server also advised users to rotate potentially exposed macaroon credentials, rebuild the macaroons.db file, and refresh authentication strings for other Lightning Network backends. For users running a hot wallet created within BTCPay Server, the guidance is to move funds out and recreate the wallet. BTCPay Server has not disclosed technical details of the flaw, when the attacks began, how many servers are affected, or whether any funds have been stolen. The issue was reported by a member of the Bitcoin Red Team.