• About Us
  • Privacy Policy
  • Contact Us
Subscribe
BitcoinCryptos - News About Bitcoin & Cryptos
  • Home
  • Bitcoin
  • Ethereum
  • Dogecoin
  • Litecoin
  • Cryptocurrency
  • Blockchain
  • Regulation
  • Market
  • Prices
No Result
View All Result
  • Home
  • Bitcoin
  • Ethereum
  • Dogecoin
  • Litecoin
  • Cryptocurrency
  • Blockchain
  • Regulation
  • Market
  • Prices
No Result
View All Result
BitcoinCryptos
No Result
View All Result
Home Bitcoin

Huge Transaction Brought Down LND For The 2nd Time. Is Blockstream Responsible?

November 1, 2022
in Bitcoin
0
Huge Transaction Brought Down LND For The 2nd Time. Is Blockstream Responsible?
Share on FacebookShare on Twitter


Is LND broken? Or was the ridiculously large transaction that unsynched it a direct attack on the LND implementation? Does all of this affect the larger Lightning Network? And what about the bitcoin network? This story starts with all kinds of questions and can’t promise to answer them all. The game is afoot. Something’s going on. It’s hard to determine what, though. And it seems like more will be revealed, like we still don’t have all the data.

Let’s examine what we do have and try to get to the bottom of this. And it all starts with a summary of the story so far. 

What’s With LND And These Huge Transactions?

On October 9th, a developer known as Burak announced “I just did a 998-of-999 tapscript multisig, and it only cost $4.90 in transaction fees.” That curious transaction unsynched the Lightning Network, which missed producing one block. The Lightning Labs team, responsible for the LND implementation, released a fix in a matter of hours. The incident made abundantly clear that the Lightning Network is still a work in progress, and the implementations are vulnerable to attacks. 

With the help of the @lightning Labs team (h/t @guggero), us at @GaloyMoney and our CI pipelines the @BTCBeachWallet nodes are updated with the bugfix within 31 blocks after 73be398c4bdc43709db7398106609eea2a7841aaf3a4fa2000dc18184faa2a7e hit.
Can this stay the record now? pic.twitter.com/Utrabq86jF

— openoms (@openoms) November 1, 2022

Today, Burak stroke again. “Sometimes to find the light, we must first touch the darkness,” he tweeted accompanying another huge transaction. This time, the impact only hit LND nodes. Everybody else remained in synch, while LND was stuck. For a while there, LND nodes could route payments but were unaware of the state of the chain. Lightning Labs acknowledged the bug in their official channels and got to work on a hotfix that was released a few hours later.

To explain the implications to the rest of us, Applied Cryptography Consultant Peter Todd analyzed the situation. “Because LN is _not_ a consensus system, having different implementations is a good thing. Some of the network is down right now. But there’s no real harm in the rest staying up. Meanwhile, the root cause of the problem is buggy btcd code,” he tweeted.

So far, everything sounds fine. The transaction’s intention seems to highlight a vulnerability without causing considerable damage. The thing is, Burak wrote, “you’ll run cln. and you’ll be happy” in the OP_RETURN DATA. And “cln” refers to Core Lightning, LND’s main competition. A Blockstream product.

BTCUSD price chart for 11/01/2022 - TradingView

BTC price chart for 11/01/2022 on Bitstamp | Source: BTC/USD on TradingView.com

Did Someone Report The LND Bug Well Before The Attack?

Another pseudonymous developer wrote to Burak, “The ethical thing to do is to a vulnerability disclosure to the Lightning Labs team instead of taking down majority of the nodes in the network.” Then, yet another developer named Anthony Towns delivered a necessary plot twist, “For what it’s worth, I also noticed this bug and disclosed it to Olaoluwa Osuntokun about two weeks ago. The btcd repo doesn’t seem to have a reporting policy for security bugs, so not sure if anyone else working on btcd found out about it.”

also @ajtowns did contact me, by making an issue on my public fork of btcd w/ details, as the post was public I deleted it then followed up w/ him via email

we had a patch ready to go for the minor release (w/ some other memory optimizations), but obv this preempted it

— Olaoluwa Osuntokun (@roasbeef) November 1, 2022

“The initial report was to the wrong place and was missed, I followed up a week later on the 19th and Olaoluwa Osuntokun replied with some thoughts on why this wasn’t caught already and how to do better,” Towns further elaborated. Later on, Osuntokun confirmed the report and revealed, “as the post was public I deleted it then followed up w/ him via email. We had a patch ready to go for the minor release (w/ some other memory optimizations), but obv this preempted it.”

He also pointed out an important thing, “I didn’t imagine someone would work w/ miners to mine it.” This particular bug required miner participation to pass through. There might’ve been more to this attack than meets the eye. However, there were over $700 in fees attached to the transaction. That exorbitant fee might’ve been enough to pass the unusual transaction though.  

Is Blockstream Responsible For The Attack?

This is where everything gets tricky, because it seems like Burak was previously sponsored by Blockstream to work on liquid covenants on Bitmatrix. In a series of then-deleted tweets, Lightning Labs CEO Elizabeth Starks seems to be accusing Blockstream of at least sponsoring the attacks. When questioned by a Blockstream employee, Starks replied, “Is this not true that it’s a sponsored dev?” and “You appear to have left out the deleted tweet where I specifically mentioned it was clear that this attack was not part of what was sponsored.”

Is this not true that it’s a sponsored dev? My point was not that *this* work was funded, but as you wrote this person is “def sponsored by blockstream.” pic.twitter.com/s1SHZnnbo5

— elizabeth stark 🍠 (@starkness) November 1, 2022

Enter Suredbits founder Chris Stewart, who took it even further and straight up asked Adam Back to confirm “that Blockstream isn’t sponsoring these attacks on LND as a promotional tool for core lightning.” Adam Back denied any sponsorship and explained what he thinks Burak meant. “Could infer from the op_return message is about the risks of using a non Bitcoin core full node for consensus & Core Lightning uses Bitcoin core. maybe Burak is making that point, empirically. It’s a known limitation from LANGSEC security it’s near impossible to bit-wise compatible.”

To put everything to bed, Blockstream researcher Christian Decker went on the record and tweeted, “This is terrible, the Core Lightning team does not condone attacks of any nature. And namedropping a competitor is in really bad taste. Please follow responsible disclosures, and avoid publicity stunts like this, it’s not helping, and causing a lot of issues!”

Featured Image by Bethany Laird on Unsplash | Charts by TradingView

Stripe, a lightning over a city





Source link

Related articles

Bitcoin Liquid Network Surpasses $3.27 Billion In Total Value Locked

Bitcoin Liquid Network Surpasses $3.27 Billion In Total Value Locked

May 22, 2025
15 Years Since 10,000 BTC Bought Two Pizzas And Changed Everything

15 Years Since 10,000 BTC Bought Two Pizzas And Changed Everything

May 22, 2025
Tags: 2ndBlockstreamBroughtHugeLNDResponsibletimeTransaction
Share76Tweet47

Related Posts

Bitcoin Liquid Network Surpasses $3.27 Billion In Total Value Locked

Bitcoin Liquid Network Surpasses $3.27 Billion In Total Value Locked

May 22, 2025
0

Today, the Liquid Federation has announced that the Liquid Network has surpassed $3.27 billion in total value locked (TVL), according...

15 Years Since 10,000 BTC Bought Two Pizzas And Changed Everything

15 Years Since 10,000 BTC Bought Two Pizzas And Changed Everything

May 22, 2025
0

On May 22, 2010, Bitcoin became more than just an idea—it became real money. Laszlo Hanyecz, a developer and early...

Spark Partners With Breez To Launch Bitcoin-Native SDK For Lightning Payments

Spark Partners With Breez To Launch Bitcoin-Native SDK For Lightning Payments

May 22, 2025
0

Today, Breez and Spark have announced a new implementation of the Breez SDK, built on Spark’s Bitcoin-native Layer 2 infrastructure....

Michael Saylor’s Strategy (MSTR) Opens $2.1B ATM Program For Strife Preferred Stock

Michael Saylor’s Strategy (MSTR) Opens $2.1B ATM Program For Strife Preferred Stock

May 22, 2025
0

Strategy has launched a $2.1 billion At-The-Market (ATM) equity program for its Strife (STRF) preferred stock, marking another step in...

The Freedom Issue: Letter From The Editor

The Freedom Issue: Letter From The Editor

May 22, 2025
0

Bitcoin is freedom money, a censorship-resistant form of digital cash allowing anyone with an internet connection to send money to...

Load More
Kraken to offer tokenized US stocks to non-US clients

Kraken to offer tokenized US stocks to non-US clients

May 23, 2025
0

Crypto exchange Kraken is planning to offer non-US customers the option of trading tokenized US stocks, part of the company’s...

81.6% of XRP supply is in profit, but traders in Korea are turning bearish — Here is why

XRP price fails to respond to two extremely bullish developments — Here is why

May 22, 2025
0

Key takeaways:The two most bullish events ever imagined by XRP (XRP) advocates happened in 2025, but XRP continues to underperform...

Active Expansion in Key Markets

Active Expansion in Key Markets

May 22, 2025
0

The international hedge fund Imrat Group continues its dynamic global expansion. Today, the company operates in over 50 countries across...

Senators plan to amend GENIUS Act to address Trump family’s stablecoin

Senators plan to amend GENIUS Act to address Trump family’s stablecoin

May 22, 2025
0

Though a majority of members of the US Senate voted to advance a bill to regulate payment stablecoins on May...

Stablecoin Market Hits ATH as David Sacks Hints at Regulation

Stablecoin Market Hits ATH as David Sacks Hints at Regulation

May 22, 2025
0

Key NotesStablecoin market capitalization is reaching the $250 billion mark.David Sacks hinted at a trillion-dollar opportunity with the GENIUS Act.15...

We have all the news related to the crypto market and we make sure to bring and publish all the updates as fast as we can.

Categories

  • Bitcoin
  • Blockchain
  • Cryptocurrency
  • Dogecoin
  • Ethereum
  • Litecoin
  • Market
  • Regulation

Archives

  • 2025
  • 2024
  • 2023
  • 2022
  • 2021

Newsletter

    • About Us
    • Privacy Policy
    • Contact Us

    © 2021 bitcoincryptos.com

    Please enter CoinGecko Free Api Key to get this plugin works.
    No Result
    View All Result
    • Home
    • Bitcoin
    • Ethereum
    • Dogecoin
    • Litecoin
    • Cryptocurrency
    • Blockchain
    • Regulation
    • Market
    • Prices

    © 2018 JNews by Jegtheme.