#XRPLedgerPatchesXRPCreationBug،
🚨 The XRP Ledger just fixed an 11-year-old bug that could have created XRP out of thin air 🚨
Here’s what happened:
🔹 A vulnerability in XRPL’s payment engine (an integer overflow) dates back to around 2015
🔹 An attacker could have used hundreds of specially designed offers and a single payment to create spendable XRP. This would have violated the hard cap of 100 billion XRP
🔹 Researchers reported it through the bug bounty program on September 22, and the patch was released in xrpld 3.4.1 on September 25
🔹 RippleX reproduced the attack and confirmed that the created XRP could be spent. There is no evidence that the vulnerability was ever exploited
🔹 Public disclosure took place on October 9, after node operators had already installed the patch
📊 My take: the price barely moved (around $1.40, down about 5.5% for the week) because this was a vulnerability that had been fixed, not a cyberattack that resulted in a theft. A bug that lets someone create money is the worst kind of vulnerability a blockchain can have; that’s why quietly fixing it before disclosing it was the right call. That said, a vulnerability going unnoticed for 11 years is a reminder to keep an eye on how these networks handle security.
$XRP
🚨 The XRP Ledger just fixed an 11-year-old bug that could have created XRP out of thin air 🚨
Here’s what happened:
🔹 A vulnerability in XRPL’s payment engine (an integer overflow) dates back to around 2015
🔹 An attacker could have used hundreds of specially designed offers and a single payment to create spendable XRP. This would have violated the hard cap of 100 billion XRP
🔹 Researchers reported it through the bug bounty program on September 22, and the patch was released in xrpld 3.4.1 on September 25
🔹 RippleX reproduced the attack and confirmed that the created XRP could be spent. There is no evidence that the vulnerability was ever exploited
🔹 Public disclosure took place on October 9, after node operators had already installed the patch
📊 My take: the price barely moved (around $1.40, down about 5.5% for the week) because this was a vulnerability that had been fixed, not a cyberattack that resulted in a theft. A bug that lets someone create money is the worst kind of vulnerability a blockchain can have; that’s why quietly fixing it before disclosing it was the right call. That said, a vulnerability going unnoticed for 11 years is a reminder to keep an eye on how these networks handle security.
$XRP