BTCPay Server Update Fails to Address Exposed Lightning Nodes
BTCPay Server has released an update to version 2.4.4, but the patch alone is not enough to prevent a potential attack on Lightning nodes.
The issue arises from automated programs probing servers with exposed LND interfaces through reverse proxies, which can be exploited if the wallet is still locked.
Since August 2026, BTCPay Server has disabled the public default route to Lightning nodes by default, but users who have manually switched it back on are vulnerable to attacks during a short window after restarting LND.