Bitcoin Developer Sounds The Alarm: There’s A Backdoor In The Lightning Network

Bitcoin’s Lightning Network was designed to make Bitcoin transactions faster and cheaper. But according to a recent discovery by a now former Lightning developer Antoine Riard, there’s a major security flaw in the network that puts users’ funds at risk. Taking to a thread on the Linux Foundation’s public mailing list, Riard detailed the new discovery of a security risk in the Lightning Network that could allow hackers to easily get control of the Layer 2 protocol.

Developer Departs From Bitcoin Lightning Network Over Security Concerns

The Bitcoin Lightning Network is a “layer 2” payment protocol that operates on top of the Bitcoin blockchain. It enables fast, low-cost transactions between participating nodes. Since its inception, the Bitcoin Layer 2 protocol has been well accepted, although various vulnerabilities have been reported.

Users can instantaneously send and receive Bitcoin thanks to the Lightning Network, which facilitates the creation of a network of payment channels between users without waiting for transactions to be confirmed on the blockchain. However, Riard claims that there’s a new malevolent danger out there called the replacement cycling attack, which puts the network in a perilous position.

Cycling attack works by specifically targeting payment channels to steal funds from mempools. These attacks are not easy but can be carried out by very sophisticated players. It essentially works by changing the transaction signature of a victim’s timeout transaction in a mempool by a new transaction without leaving a trace on the network. Although simple cycling attacks can be easily mitigated, Riard warns that a very sophisticated attack could leave payment channels exposed to hackers. 

Related Reading: Bitcoin In Peril? Is BTC ‘Fighting Crucial Levels’ Or Winning?

BTC market cap currently at $584.24 billion. Chart:

What This Means For The Future Of The Lightning Network

The vulnerabilities uncovered in the Lightning Network codebase are troubling for the future of Bitcoin’s scalability solution. Riard’s discovery seems to have ruffled a few feathers of Bitcoin investors, as revealed by comments on social media platforms. 

In what looks like his second memo on the issue, Riard mentions that addressing the issue may require significant rewrites of critical components of the network’s base layer. Defending against the backdoor may also require modifications to the underlying public Bitcoin ecosystem.

“I think this new class of replacement cycling attacks puts lightning in a very perilous position, where only a sustainable fix can happen at the base-layer, e.g adding a memory-intensive history of all-seen transactions or some consensus upgrade,” Riard said. 

Riard has since stepped down from the development of the Lightning Network, with plans to focus now on Bitcoin core development. Data from DefiLlama shows the TVL of the Lightning Network is now at $159.74 million. Its future of depends on how developers and the Bitcoin community respond to this news. A quick, transparent fix of the vulnerability to restore trust should be the important next step. 

On the other hand, the price of Bitcoin just crossed $30,000. Renowned financial author Robert T. Kiyosaki predicts that Bitcoin will reach $135,000 very soon.

Featured image from Crypto News

Jos Tran

Jos Tran

I'm Jos Tran, the author behind Smart Passive Income (SPI), a blog dedicated to online business and entrepreneurship. I started this blog in 2008, following in the footsteps of Pat Flynn, the founder. Being one of the leading business blogs globally, SPI attracts over 2 million readers each month. Through my content, I aim to assist individuals in generating passive income from various online sources. Join me on this transformative journey as we delve into the world of online business and uncover the strategies and tactics that have led to tremendous success for myself and countless others.

We will be happy to hear your thoughts

Leave a reply

Smart Passive Income