BTC
$104,648.07
-
1.26%
ETH
$2,566.39
-
2.97%
USDT
$1.0001
+
0.01%
XRP
$2.1837
-
3.57%
BNB
$663.91
-
2.02%
SOL
$159.77
-
4.35%
USDC
$0.9998
+
0.00%
DOGE
$0.1989
-
8.39%
TRX
$0.2710
-
1.36%
ADA
$0.7047
-
3.06%
HYPE
$33.46
+
4.84%
SUI
$3.3103
-
6.82%
LINK
$14.19
-
6.30%
AVAX
$21.09
-
6.14%
XLM
$0.2703
-
3.27%
TON
$3.2895
-
3.39%
LEO
$8.7884
-
3.42%
BCH
$407.47
-
0.85%
SHIB
$0.0₄1308
-
6.93%
HBAR
$0.1710
-
5.47%
Logo
  • News
  • Prices
  • Data
  • Indices
  • Research
  • Events
  • Sponsored
  • Sign In
  • Sign Up
Markets
Share this article
X iconX (Twitter)LinkedInFacebookEmail

A Dangerous Bug in Bitcoin's Lightning Network Has Been Fixed

Bitcoin developer Rusty Russell disclosed Friday the lightning network vulnerability that forced software upgrades in July.

By Christine Kim
Updated Sep 13, 2021, 11:30 a.m. Published Sep 27, 2019, 6:45 p.m.
Acinq software developer Bastien Teinturier image via Twitter

A popular payments network running atop the bitcoin blockchain suffered from a long-standing code vulnerability – one where attackers could drain users’ of their money.

While initially flagged to the public on Aug. 30 by bitcoin developer Rusty Russell, the full disclosure detailing how this vulnerability could be exploited by an attacker was released Friday.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters
By signing up, you will receive emails about CoinDesk products and you agree to our terms of use and privacy policy.

“An attacker can claim to open a [lighting payments] channel but either not pay to the peer, or not pay the full amount,” Russell wrote in the full disclosure.

The lightning network is a Layer 2 payments protocol enabling ultra-fast and nearly costless transactions atop the bitcoin blockchain. In order for users to send transactions across the lightning network, they must open what are called “payments channels” to send and receive funds from other lightning users.

Without the proper checks, an attacker could pretend to open a new payments channel and send fake transactions. Being duped, an honest user could then send back real money to the attacker not knowing the previous transactions had been completely artificial. It’s unclear how many users fell victim to such attacks.

Already, all major lightning software clients have been upgraded to fix this vulnerability, according to Russell.

When asked why it took three months for the vulnerability to be disclosed to users, Pierre-Marie Padiou – the CEO of a company maintaining one of the three most popular lightning implementations – said developers had to err on the side of caution.

“The problem with this vulnerability is that once you know about it, it seems so obvious,” said Padiou. “Three months is not a long time. It’s a pretty short time because you have to give users the amount of time needed to update. … A lot of users don’t do it.”

Lightning developers, he added, did not want to risk revealing the vulnerability until absolutely sure no users were at risk.

“There are always problems. Even on the bitcoin protocol, there have been bugs,” Padiou said, adding:

“There will always be bugs. What matters the most is how to handle this in the best way to protect users.”

Acinq software developer Bastien Teinturier image via Twitter

NewsLightning NetworkBugsAcinqVulnerabilities
Christine Kim

Christine is a research analyst for CoinDesk. She focusses on producing data-driven insights about the cryptocurrency and blockchain industry. Prior to her role as a research analyst, Christine was a tech reporter for CoinDesk mainly covering developments on the ethereum blockchain.

Cryptocurrency holdings: None.

CoinDesk News Image
Latest Crypto News
Article image

Bitcoin Whales Seem to Be Calling a Top as BTC Price Consolidates

May 29, 2025

Bitcoin (BTC) price on May 19 (CoinDesk)

Bitcoin Climbs to $105K; Crypto ETF Issuer Sees 35% Upside

May 29, 2025

Breaking News

Breaking New test

May 29, 2025

FastNews (CoinDesk)

Fast News test

May 29, 2025

Article image

Ethereum Surges 4% on Massive Volume as Institutional Interest Grows.

May 27, 2025

Article image

test research article

May 22, 2025

Top Stories
President Donald Trump (TheDigitalArtist/Pixabay)

Bitcoin Poised to Top Record as Trump Inauguration Nears, Major Coins Due for 10% Swings: Traders

Jan 16, 2025

SHIB-USD 1-month chart shows 24.57% gain ending at $0.00004146 on May 15

Shiba Inu (SHIB) Price Drops 7% in 24 Hours but Remains Up 25% Over the Past Month

May 15, 2025

Screen Shot 2018-08-12 at 11.22.53 PM

In Rare Decision, ICO Founders Will Delay Crypto Paydays – For a Decade

Aug 13, 2018

(CJ/Unsplash)

XRP Futures Start Trading on CME

May 19, 2025

Tax sign (The New York Public Library/Unsplash)

Crypto Capital Gains and Tax Rates 2022

Nov 14, 2022

Swap

Atomic Swaps: What Are They & How Do They Work?

Jan 11, 2024

Only 2 articles remaining this month.

Sign up for free

About

  • About Us
  • Masthead
  • Careers
  • CoinDesk News
  • Crypto API Documentation

Contact

  • Contact Us
  • Accessibility
  • Advertise
  • Sitemap
  • System Status
DISCLOSURE & POLICES
CoinDesk is an award-winning media outlet that covers the cryptocurrency industry. Its journalists abide by a strict set of editorial policies. CoinDesk has adopted a set of principles aimed at ensuring the integrity, editorial independence and freedom from bias of its publications. CoinDesk is part of the Bullish group, which owns and invests in digital asset businesses and digital assets. CoinDesk employees, including journalists, may receive Bullish group equity-based compensation. Bullish was incubated by technology investor Block.one.
EthicsPrivacyTerms of UseCookie SettingsDo Not Sell My Info

© 2025 CoinDesk, Inc.
X icon
Sign Up
  • News
    Back to menu
    News
    • Markets
    • Finance
    • Tech
    • Policy
    • Focus
  • Prices
    Back to menu
    Prices
    • Data
      Back to menu
      Data
      • Trade Data
      • Derivatives
      • Order Book Data
      • On-Chain Data
      • API
      • Research & Insights
      • Data Catalogue
      • AI & Machine Learning
    • Indices
      Back to menu
      Indices
      • Multi-Asset Indices
      • Reference Rates
      • Strategies and Services
      • API
      • Insights & Announcements
      • Documentation & Governance
    • Research
      Back to menu
      Research
      • Events
        Back to menu
        Events
        • Consensus Hong Kong
        • Consensus 2026
        • CoinDesk: Policy & Regulation
      • Sponsored
        Back to menu
        Sponsored
        • Thought Leadership
        • Press Releases
        • CoinW
        • MEXC
        • Phemex
        • Advertise
      • Videos
        Back to menu
        Videos
        • CoinDesk Daily
        • Shorts
        • Editor's Picks
      • Podcasts
        Back to menu
        Podcasts
        • CoinDesk Podcast Network
        • Markets Daily
        • Gen C
        • Unchained with Laura Shin
        • The Mining Pod
      • Newsletters
        Back to menu
        Newsletters
        • The Node
        • Crypto Daybook Americas
        • State of Crypto
        • Crypto Long & Short
        • Crypto for Advisors
      • Webinars & Events
        Back to menu
        Webinars & Events
        • Consensus 2025
        • Policy & Regulation Conference
      Select Language
      English enEspañol esFilipino filFrançais frItaliano itPortuguês pt-brРусский ruУкраїнська uk