BTCPay Server Hack Exposes Widespread Crypto Security Risks
A critical vulnerability in BTCPay Server allowed attackers to steal funds from users running LND Lightning Network implementation versions prior to 2.4.2.
The issue, which has been actively exploited, exposed .macaroon credential files for LND, enabling an attacker to move funds directly out of the node.
BTCPay Server released version 2.4.2 to close the vulnerability and regenerates macaroons automatically. Users who cannot patch immediately were advised to take their servers offline.
This incident follows another major security breach, where 1,719 Bitcoin (~$111M) has been stolen from Coldcard users, with total losses likely exceeding $130M.