Core Lightning Advises Node Operators to Await Patch Amid Potential Vulnerabilities
The Bitcoin Core Lightning project has issued an advisory to node operators regarding potential vulnerabilities in the network. The team has confirmed that the security reports generated by AI tools are genuine and recommends installing a patch when it becomes available.
The patch is expected soon, but technical details will be kept under wraps for at least two weeks to give developers time to present fixes and operators a chance to patch before any vulnerabilities are publicized. In the meantime, node operators can use the `, offline` flag to prevent peer connections and keep their nodes running.
A Lightning node must watch out for counterparties trying to force-close a channel, but shutting down the node is not recommended. The team advises node operators to wait for the release, verify the signatures, and install the patch promptly rather than eventually.