Core Lightning Warns Unpatched Nodes Face 'Active Exploitation Attempts'
The developers behind Core Lightning have issued an urgent warning to operators of unpatched Bitcoin nodes. In a message shared on Friday, the project urged immediate action to reduce exposure, specifically targeting older releases of version 26.06.7 or earlier.
According to the advisory, anyone running this version should upgrade to the latest release 'as soon as possible.' The team did not publicly detail which specific weaknesses are being exploited or what the attackers' immediate impact could be.
Core Lightning's security notice is straightforward but time-sensitive, framing the upgrade as necessary due to active exploitation attempts against unpatched deployments. For operators, this effectively turns what might otherwise be a routine patch cycle into an immediate risk-reduction step.
The project's earlier September updates indicate a sequence of identified issues affecting stability and fund safety. The latest urgency follows an earlier phase of the same broader security cycle, which saw Core Lightning investigating reports of a potential issue involving experimental features that could affect user funds on Sept. 16.