Bitcoin Node Operators Urged to Upgrade Amid Active Attacks
The Core Lightning project has issued an urgent warning to node operators regarding attacks on unpatched Bitcoin nodes. The team advises those running version 26.06.7 or earlier to upgrade to the latest release immediately due to active exploitation attempts.
Core Lightning's security notice targets a specific range of versions and frames the upgrade as necessary due to ongoing attacks against unpatched deployments.
The project did not name the vulnerabilities but made clear that the situation warrants faster-than-usual maintenance, especially for nodes that have not been regularly updated or run in environments with constrained upgrade windows.
This urgency follows an earlier phase of the same security cycle, where Core Lightning investigated reports of a potential issue involving experimental features that could affect user funds. The team released version 26.06.8 approximately six days later, combining bug fixes and security patches for vulnerabilities responsibly reported by several sources.