Decade-old LND Lightning bug finally patched by devs – fixed

LND patches decade-old reorg vulnerability — scales channel-close confirmations to 1–6 blocks and adds real-time competing-close detection

  • Olaoluwa “Roasbeef” Osuntokun merged a fix this month addressing a Lightning node issue first reported in 2016.
  • The patch changes channel-close confirmation rules from one block to a scale up to six blocks based on channel size.
  • The update also adds real-time detection of competing close transactions and monitors negative confirmations to reduce blockchain reorganization (reorg) risk.
  • The problem was tracked as issue 53, the oldest open issue in the LND repository, and had been described as *“unresolved for a decade.”*
  • LND is a leading Lightning implementation; the change arrived after years of contributions and follows the project’s early days when at-risk funds were small.

Olaoluwa “Roasbeef” Osuntokun merged a code change this month that addresses a long-standing vulnerability in the LND Bitcoin Lightning node implementation first raised in October 2016. The fix targets the risk that on-chain channel close transactions could be affected by Bitcoin blockchain reorganizations, which can alter transaction confirmations.

- Advertisement -

The update scales the number of required confirmations for channel closures from one block up to six blocks, with larger channels requiring more confirmations. The merged changes are available in PR 10331.

The patch also revises LND’s state machine to monitor competing channel close transactions in real time and to detect negative confirmations, meaning a transaction seen in a block that is later removed by a reorg. A confirmation is a block that includes a transaction; more confirmations reduce the chance a transaction will be reversed during a reorg.

Lightning Labs co-founders Elizabeth Stark and Olaoluwa “Roasbeef” Osuntokun launched the LND software in 2016. Osuntokun originally acknowledged the security concern in issue 53, which remained open for years and was described as “unresolved for a decade.”

The issue was effectively a design tradeoff: LND prioritized faster, mostly secure channel closes for user experience, accepting a small reorg risk. That tradeoff existed while the network and funds at risk were much smaller than today.

- Advertisement -

LND is widely used among Lightning implementations; a survey of implementations is available in this overview on Medium. The change comes after long-term maintenance and community contributions and follows the project’s commercial growth as a venture-backed LND company.

For updates and further coverage, follow on X, Google News, or YouTube.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Idle GPUs Key to Easing AI Compute Crunch

GPU prices for AI workloads have surged dramatically, with the NVIDIA RTX 5090 up...

Base Ditches Optimism, AI Exploits Surge

Base, founded by Coinbase, is leaving the Optimism stack to build its own chain,...

Bitcoin Whales Amass Holdings While Exchange Outflows Spike

Large Bitcoin holders, or "whales," have rebuilt their reserves to levels last seen before...

MSTR Rebounds as Bitcoin Holds Above $67,000

MicroStrategy stock is up 8% this week to $132, signaling a potential rebound after...

Bitcoin surges after Supreme Court limits Trump tariffs

The Supreme Court ruled that most of President Donald Trump's tariffs were imposed by...

Must Read

How to Set Up a Simple Bitcoin Tip Jar for Your Site or Stream

QUICK LINKSWhat a tip jar is, in plain wordsWhat you needBuild a payment link that just worksAdd a QR code that actually scansWhere to...
🔥 #AD Get 20% OFF any new 12 month hosting plan from Hostinger. Click here!