BTCPay Server Temporarily Limits Remote Lightning Access After Critical LND Flaw
AI مارکیٹ کا خلاصہ
BTCPay Server temporarily restricted public remote connections to Lightning nodes after a critical LND vulnerability enabled credential theft and unauthorized fund transfers. While patched via an upgrade that rotates macaroon credentials in standard setups, operators using custom exposure methods must manually rotate credentials and audit for suspicious activity. Reported compromises increase near-term operational and counterparty risk perceptions around Lightning infrastructure supporting Bitcoin payments.
اثر کی سطح
● درمیانہ
متاثرہ اثاثے
BTC/USDT-0.28%
AI تجزیاتی سمجھ · BTC/USDTAI تجزیاتی سمجھ
▼ Bearish
ابھی ٹریڈ کریں
⚠️ AI سے تیار کردہ تجزیاتی سمجھ خبروں کے مواد پر مبنی ہے اور صرف معلوماتی مقاصد کے لیے فراہم کی گئی ہے۔ یہ سرمایہ کاری کا مشورہ نہیں ہے اور نہ ہی BingX کے خیالات کی نمائندگی کرتی ہے۔ سرمایہ کاری میں رسک شامل ہے۔ براہ کرم ذمہ داری سے ٹریڈ کریں۔
BTCPay Server has temporarily curtailed public remote connections to Lightning Network nodes following exploitation of a critical vulnerability in LND (Lightning Network Daemon). Attackers reportedly obtained node credentials and moved funds.
The project said BTCPay Server v2.4.2 upgrades to LND 0.21.1, which in standard installations automatically rotates macaroon credentials. Operators are urged to review their nodes for suspicious activity, including unexpected payments, channel closures, and balance changes. Users who expose nodes through self-hosted reverse proxies, Tor services, or port forwarding are advised to manually rotate any related credentials.
The Foundation and Citadel21 have reported compromised node funds, though the total losses have not been disclosed.