Share this article

A Dangerous Bug in Bitcoin's Lightning Network Has Been Fixed

Bitcoin developer Rusty Russell disclosed Friday the lightning network vulnerability that forced software upgrades in July.

Updated Sep 13, 2021, 11:30 a.m. Published Sep 27, 2019, 6:45 p.m.
Acinq software developer Bastien Teinturier image via Twitter

A popular payments network running atop the bitcoin blockchain suffered from a long-standing code vulnerability – one where attackers could drain users’ of their money.

While initially flagged to the public on Aug. 30 by bitcoin developer Rusty Russell, the full disclosure detailing how this vulnerability could be exploited by an attacker was released Friday.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

“An attacker can claim to open a [lighting payments] channel but either not pay to the peer, or not pay the full amount,” Russell wrote in the full disclosure.

The lightning network is a Layer 2 payments protocol enabling ultra-fast and nearly costless transactions atop the bitcoin blockchain. In order for users to send transactions across the lightning network, they must open what are called “payments channels” to send and receive funds from other lightning users.

Without the proper checks, an attacker could pretend to open a new payments channel and send fake transactions. Being duped, an honest user could then send back real money to the attacker not knowing the previous transactions had been completely artificial. It’s unclear how many users fell victim to such attacks.

Already, all major lightning software clients have been upgraded to fix this vulnerability, according to Russell.

When asked why it took three months for the vulnerability to be disclosed to users, Pierre-Marie Padiou – the CEO of a company maintaining one of the three most popular lightning implementations – said developers had to err on the side of caution.

“The problem with this vulnerability is that once you know about it, it seems so obvious,” said Padiou. “Three months is not a long time. It’s a pretty short time because you have to give users the amount of time needed to update. … A lot of users don’t do it.”

Lightning developers, he added, did not want to risk revealing the vulnerability until absolutely sure no users were at risk.

“There are always problems. Even on the bitcoin protocol, there have been bugs,” Padiou said, adding:

“There will always be bugs. What matters the most is how to handle this in the best way to protect users.”

Acinq software developer Bastien Teinturier image via Twitter

More For You

KuCoin Hits Record Market Share as 2025 Volumes Outpace Crypto Market

16:9 Image

KuCoin captured a record share of centralised exchange volume in 2025, with more than $1.25tn traded as its volumes grew faster than the wider crypto market.

What to know:

  • KuCoin recorded over $1.25 trillion in total trading volume in 2025, equivalent to an average of roughly $114 billion per month, marking its strongest year on record.
  • This performance translated into an all-time high share of centralised exchange volume, as KuCoin’s activity expanded faster than aggregate CEX volumes, which slowed during periods of lower market volatility.
  • Spot and derivatives volumes were evenly split, each exceeding $500 billion for the year, signalling broad-based usage rather than reliance on a single product line.
  • Altcoins accounted for the majority of trading activity, reinforcing KuCoin’s role as a primary liquidity venue beyond BTC and ETH at a time when majors saw more muted turnover.
  • Even as overall crypto volumes softened mid-year, KuCoin maintained elevated baseline activity, indicating structurally higher user engagement rather than short-lived volume spikes.

More For You

Bitcoin stuck near $88,000 as gold's and silver's record-breaking rallies show exhaustion signs

Bitcoin (BTC) price on Jan. 26 (CoinDesk)

"Gold and silver casually adding an entire bitcoin market cap in a single day," wrote one crypto analyst.

What to know:

  • Bitcoin is off its worst levels of the weekend, but still near the year's low at $87,700.
  • Facing the same news cycle as crypto, precious metals continued to surge higher, but a quick retreat from their highs on Monday suggested a bit of exhaustion was setting in.
  • Analysts remain dour on the outlook for crypto prices given the looming government shutdown as well as delays in passage of the Clarity Act.