Attackers Target Unpatched Core Lightning Nodes
The Bitcoin Lightning Network's Core Lightning node software has issued an urgent warning to operators running version 26.06.7 or earlier, stating that they are being actively targeted by attackers.
The team behind Core Lightning, which is maintained under the Elements Project, released a patch on September 22 with fixes for several security problems, including a channel-closing flaw capable of putting funds at risk.
Despite the patch having been available for roughly 10 days, reports of active targeting landed on October 1, prompting Core Lightning to urge operators to upgrade to version 26.06.8 immediately.