Ledger revealed a critical vulnerability in $XRP that was around 10 years old

The bug had been in the payment engine since 2015 and could have allowed the creation of new $XRP beyond the 100 billion limit, which could then be spent like regular coins

The good news: it was never exploited; the vulnerability was found through a bug bounty program. RippleX released an emergency update, xrpld 3.4.1, back on September 25, but the public disclosure did not happen until October 9. By the time of the release, more than 80% of validators on the default list were already using it.

RippleX also warned that AI is getting better at finding subtle logic errors in code, meaning old bugs like these can be found faster.

▪️ The patch was released outside the usual amendment process—for the first time since it was introduced more than 10 years ago. The reason was that the attack was cheap, required no special access, and could create XRP.

#Ripple #xrp #CryptoNews