{"id":29866,"date":"2020-10-09T14:18:44","date_gmt":"2020-10-09T11:18:44","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=29866"},"modified":"2025-08-27T19:20:20","modified_gmt":"2025-08-27T16:20:20","slug":"lnd-lightning-network-operators-urged-to-update-urgently-over-vulnerability","status":"publish","type":"post","link":"https:\/\/forklog.com\/en\/lnd-lightning-network-operators-urged-to-update-urgently-over-vulnerability\/","title":{"rendered":"LND Lightning Network operators urged to update urgently over vulnerability"},"content":{"rendered":"<p>The Lightning Labs team urged the community to upgrade to the latest LND client version for the Lightning Network due to the discovered vulnerability.<!--more--><\/p>\n<p>In the blog <a href=\"https:\/\/lists.linuxfoundation.org\/pipermail\/lightning-dev\/2020-October\/002819.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u043e\u0442\u043c\u0435\u0447\u0430\u0435\u0442\u0441\u044f<\/a>, that the issue affects versions 0.10.x and earlier. The technical details were not disclosed by Conner Fromknecht, a spokesperson for the team. According to him, a full analysis will be published on October 20.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p dir=\"ltr\" lang=\"en\">Partial LND Vulnerability Disclosure, Update to 0.11.x<\/p>\n<p>Full disclosure will be published on October 20th 2020.<a href=\"https:\/\/t.co\/1vnXLDME7G\">https:\/\/t.co\/1vnXLDME7G<\/a><\/p>\n<p>\u2014 Conner Fromknecht (@bitconner) <a href=\"https:\/\/twitter.com\/bitconner\/status\/1314366911619112961?ref_src=twsrc%5Etfw\">October 9, 2020<\/a><\/p>\n<\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<blockquote>\n<p>&#8220;Although we have no reason to believe that these vulnerabilities were exploited in practice, we strongly recommend the community upgrade to LND 0.11.0 or higher,&#8221; the statement said.<\/p>\n<\/blockquote>\n<p>Developers issued a similar plea to users in late August. At that time, the vulnerability threatened the Eclair wallet from ACINQ, c-lightning from Blockstream and the LND client.<\/p>\n<p>A <a href=\"https:\/\/forklog.com\/en\/news\/lightning-network-vulnerability-could-allow-bitcoins-to-be-withdrawn-from-circulation\">new<\/a> <a href=\"https:\/\/forklog.com\/en\/news\/lightning-network-vulnerability-could-allow-bitcoins-to-be-withdrawn-from-circulation\">bug<\/a> appeared after the addition of Wumbo channels to the network. It allowed bitcoins to be withdrawn from circulation with little effort.<\/p>\n<blockquote class=\"wp-embedded-content\" data-secret=\"gYLJp9Cvmp\">\n<p>Lightning Network: fast and cheap Bitcoin transactions<\/p>\n<\/blockquote>\n<p><iframe loading=\"lazy\" class=\"wp-embedded-content\" sandbox=\"allow-scripts\" security=\"restricted\" style=\"position: absolute; visibility: hidden;\" title=\"\u201cLightning Network: \u0431\u044b\u0441\u0442\u0440\u044b\u0435 \u0438 \u0434\u0435\u0448\u0435\u0432\u044b\u0435 \u0442\u0440\u0430\u043d\u0437\u0430\u043a\u0446\u0438\u0438 \u0431\u0438\u0442\u043a\u043e\u0438\u043d\u0430\u201d \u2014 ForkLog\" src=\"https:\/\/forklog.com\/cryptorium\/chto-takoe-lightning-network-rukovodstvo-dlya-nachinayushhih\/embed#?secret=CFDDbBgR9t#?secret=gYLJp9Cvmp\" data-secret=\"gYLJp9Cvmp\" width=\"500\" height=\"282\" frameborder=\"0\" marginwidth=\"0\" marginheight=\"0\" scrolling=\"no\"><\/iframe><\/p>\n<p>Follow ForkLog news on <a href=\"https:\/\/twitter.com\/ForkLog\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Twitter<\/a>!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Lightning Labs team urged the community to upgrade to the latest LND client version for the Lightning Network due to the discovered vulnerability.<\/p>\n","protected":false},"author":1,"featured_media":29867,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1301,325,1897],"class_list":["post-29866","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-blockchain-vulnerabilities","tag-lightning-network","tag-lnd"],"aioseo_notices":[],"amp_enabled":true,"views":"22","promo_type":"1","layout_type":"","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/29866","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/comments?post=29866"}],"version-history":[{"count":1,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/29866\/revisions"}],"predecessor-version":[{"id":29868,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/29866\/revisions\/29868"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media\/29867"}],"wp:attachment":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media?parent=29866"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/categories?post=29866"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/tags?post=29866"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}