BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

Monero Privacy Compromised for Three Years Due to Bug in Decoy Selection Algorithm

Urgent Wallet Update Required as Monero Developers Discover Flaw Impacting Transaction Confidentiality

Monero, a cryptocurrency that has privacy at its core, has faced a significant problem that affected this very property of the network for three years.

- Advertisement -

Monero developers recently discovered a bug (flaw) in its decoy selection algorithm that compromised the confidentiality of transactions. They ask users to update their wallets urgently.

According to developer reports, the bug affected GUI/CLI wallet versions from v0.13.0.0.0 to v0.18.2.1 and severely impacted transaction privacy. During this time, Monero users could have lost their sender anonymity when making transactions with funds 10 blocks old.

In Monero, decoys, also known as ring members, are the old transactions used as a distraction from current transactions. These decoys are selected to hide the true receipt of funds in a transaction and increase the privacy of the sender.

The vulnerability found originated in the gamma selector code, used to choose decoys in Monero transactions. Due to a slippage error, the gamma selector could not choose decoys that were exactly 10 blocks old.

- Advertisement -

This allowed an outside observer to deduce with high probability what the actual spend in an input ring was if one of the ring members was exactly 10 blocks old.

To address this issue, wallet update v0.18.2.2.2 was released in early April, which resolves the flaw and protects the privacy of Monero users. The network development team asked all Monero users to update their wallets to this version as soon as possible.

In addition, users of third-party wallets are suggested to check if their developers have updated the wallet code to the new Monero Core “wallet2”.

By upgrading, not only the anonymity of individual senders is improved, but also the anonymity pool is increased for all users, including those still using previous vulnerable versions.

A flaw that affected an essential feature in Monero

Monero is a network that focuses on preserving the privacy of its users when making transactions on it.

To do so, it employs a series of functionalities that allow signing a transaction without revealing the addresses of the participants or the amounts involved.

Therefore, the fact that a bug has affected privacy and that the flaw is discovered so long after the fact is a heavy blow for its user community.

In fact, the developers themselves admit that “the bug was discovered by accident while trying to fix an infinite while loop during decoy selection.”

A number of users expressed their opinion in the comments of the developers’ github post.

For example, janowitz questioned why the vulnerability was not published earlier, considering that the latest version of the wallet was released almost two months ago and more users could have been warned about this problem.

In addition, he asked “to know how many transactions were affected in total (…) the flaw has been there for almost four years”.

READ NEXT

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

AI floods crypto bug bounty programs with false reports

Cryptocurrency bug bounty programs are experiencing a surge in submissions, with Cosmos Labs reporting...

Semiconductor stocks surge 14 days, hitting record amid AI boom and hedge fund rush

The semiconductor index $SOX is on a historic 14-day rally, nearing its all-time record...

US Admiral Praises Bitcoin as National Security ‘Tool’

Admiral Samuel Paparo called Bitcoin a "valuable computer science tool" for national security at...

Coinbase: Proof-of-Stake Most Vulnerable to Quantum Attacks

Coinbase's quantum advisory council warns that proof-of-stake chains like Ethereum and Solana face specific...

Kalshi to Add Crypto Perpetual Futures, Expanding Beyond Events

Prediction market exchange Kalshi plans to introduce cryptocurrency perpetual futures contracts.The move marks a...

Must Read

The Best Bitcoin Casinos of 2025: An Expert’s Data-Driven Guide

Key TakeawaysA Deep Dive into the Top Bitcoin Casinos of 2025Bitcoin Casino Comparison Table1. Stake.com: Best for Variety & Integrated Sports Betting2. BC.Game: Best...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading