BTCPay Server Processing Urgently Updated After Fund Theft
BTCPay Server processing has become the center of a security incident: developers confirmed the exploitation of a critical vulnerability that allowed attackers to access data from some users and steal funds.
The project team released version 2.4.2 and closed the breach. All earlier releases with LND builds were at risk. Developers urged operators not to delay the update, especially if their infrastructure uses the Lightning Network.
The vulnerability allowed a remote attacker to obtain .macaroon credential files for LND without authorization. This implementation of the Lightning Network is often used in services that process Bitcoin payments and help scale transactions on top of the main network
#BTC
BTCPay Server processing has become the center of a security incident: developers confirmed the exploitation of a critical vulnerability that allowed attackers to access data from some users and steal funds.
The project team released version 2.4.2 and closed the breach. All earlier releases with LND builds were at risk. Developers urged operators not to delay the update, especially if their infrastructure uses the Lightning Network.
The vulnerability allowed a remote attacker to obtain .macaroon credential files for LND without authorization. This implementation of the Lightning Network is often used in services that process Bitcoin payments and help scale transactions on top of the main network
#BTC