Core Lightning Confirms Multiple Vulnerabilities in Bitcoin's Lightning Network
Core Lightning, an open-source implementation of Bitcoin's Lightning Network, has confirmed multiple vulnerabilities and urged node operators to install a forthcoming security update. The project assessed a high volume of AI-generated Common Vulnerabilities and Exposures (CVE) reports and found that several are real.
In a move to prevent potential attacks, Core Lightning advised operators not to shut down their nodes completely but to restart them with the '--offline' mode, which prevents payments from entering, leaving or routing through the node.
However, the project clarified in a subsequent post that upgrading is its primary recommendation, while restarting with '--offline' is an alternative for operators who have not upgraded yet.