{
  "version": 1,
  "event_id": "evt_e13a98a407b44c04",
  "url": "https://xiyu.news/events/evt_e13a98a407b44c04/",
  "json": "https://xiyu.news/api/events/evt_e13a98a407b44c04.json",
  "type": "security_incident",
  "status": "monitoring",
  "category": "crypto",
  "title": {
    "zh": "LDK v0.2.6 修复可致资金被盗与节点重启失败的严重漏洞",
    "en": "Critical Bitcoin Lightning bugs exposed nodes to fund theft and restart failure"
  },
  "current_state": {
    "zh": "Lightning 开发套件（LDK）于 9 月 9 日发布 v0.2.6，修复了两个漏洞：其一是 splice（拼接）缺陷，恶意对等节点可借此把超额手续费分配到自己的输出地址；其二是支付合约缺陷，当两个支付合约共用同一 payment hash、其中一个已成功转发时，接收并立即拒绝一个伪造支付会导致已保存的 ChannelManager 状态无法加载。受影响的应用程序团队需要集成 v0.2.6 才能应用这些修复。\n\nLDK 会被直接编译进移动钱包、支付服务基础设施等下游应用中，因此这次修复既消除了节点资金面临的直接财务风险，也解决了可能导致节点无法正常重启的问题。由于补丁代码必须由各个集成方自行引入，最终安全效果取决于开发者是否及时发布更新版本，而不是依赖全网升级。\n\n该版本说明仅描述节点发起 splice 时存在少量资金风险，并未给出具体的金额上限，同时公告称尚未观测到任何实际损失或已被利用的应用；值得注意的是，仅仅拒绝那笔伪造支付本身并不能避免重启时的状态反序列化失败。",
    "en": "LDK v0.2.6 fixes critical bugs that could divert node funds via malicious splice peers and prevent saved channel state from loading after a rejected bogus payment."
  },
  "first_seen_at": "2026-09-13T16:33:03.725707+00:00",
  "last_updated_at": "2026-09-13T16:33:03.725707+00:00",
  "last_material_change_at": "2026-09-13T16:33:03.725707+00:00",
  "confidence": 0.75,
  "updates_count": 1,
  "sources_count": 1,
  "entities": [
    "critical",
    "lightning"
  ],
  "identifiers": [],
  "topics": [
    "ldk",
    "lightning-network",
    "vulnerability"
  ],
  "updates": [
    {
      "update_id": "upd_9f4a07d135ed5b19",
      "event_id": "evt_e13a98a407b44c04",
      "occurred_at": "2026-09-13T15:55:14Z",
      "published_at": "2026-09-13T15:55:14Z",
      "first_seen_at": "2026-09-13T16:33:03.725707Z",
      "time_precision": "published",
      "update_type": "initial",
      "material_change": true,
      "title_zh": "LDK v0.2.6 修复可致资金被盗与节点重启失败的严重漏洞",
      "title_en": "Critical Bitcoin Lightning bugs exposed nodes to fund theft and restart failure",
      "what_changed_zh": "Lightning 开发套件（LDK）于 9 月 9 日发布 v0.2.6，修复了两个漏洞：其一是 splice（拼接）缺陷，恶意对等节点可借此把超额手续费分配到自己的输出地址；其二是支付合约缺陷，当两个支付合约共用同一 payment hash、其中一个已成功转发时，接收并立即拒绝一个伪造支付会导致已保存的 ChannelManager 状态无法加载。受影响的应用程序团队需要集成 v0.2.6 才能应用这些修复。\n\nLDK 会被直接编译进移动钱包、支付服务基础设施等下游应用中，因此这次修复既消除了节点资金面临的直接财务风险，也解决了可能导致节点无法正常重启的问题。由于补丁代码必须由各个集成方自行引入，最终安全效果取决于开发者是否及时发布更新版本，而不是依赖全网升级。\n\n该版本说明仅描述节点发起 splice 时存在少量资金风险，并未给出具体的金额上限，同时公告称尚未观测到任何实际损失或已被利用的应用；值得注意的是，仅仅拒绝那笔伪造支付本身并不能避免重启时的状态反序列化失败。",
      "what_changed_en": "LDK v0.2.6 fixes critical bugs that could divert node funds via malicious splice peers and prevent saved channel state from loading after a rejected bogus payment.",
      "current_state_zh": "Lightning 开发套件（LDK）于 9 月 9 日发布 v0.2.6，修复了两个漏洞：其一是 splice（拼接）缺陷，恶意对等节点可借此把超额手续费分配到自己的输出地址；其二是支付合约缺陷，当两个支付合约共用同一 payment hash、其中一个已成功转发时，接收并立即拒绝一个伪造支付会导致已保存的 ChannelManager 状态无法加载。受影响的应用程序团队需要集成 v0.2.6 才能应用这些修复。\n\nLDK 会被直接编译进移动钱包、支付服务基础设施等下游应用中，因此这次修复既消除了节点资金面临的直接财务风险，也解决了可能导致节点无法正常重启的问题。由于补丁代码必须由各个集成方自行引入，最终安全效果取决于开发者是否及时发布更新版本，而不是依赖全网升级。\n\n该版本说明仅描述节点发起 splice 时存在少量资金风险，并未给出具体的金额上限，同时公告称尚未观测到任何实际损失或已被利用的应用；值得注意的是，仅仅拒绝那笔伪造支付本身并不能避免重启时的状态反序列化失败。",
      "current_state_en": "LDK v0.2.6 fixes critical bugs that could divert node funds via malicious splice peers and prevent saved channel state from loading after a rejected bogus payment.",
      "detailed_summary_zh": "LDK v0.2.6 fixes critical bugs that could divert node funds via malicious splice peers and prevent saved channel state from loading after a rejected bogus payment.",
      "detailed_summary_en": "LDK v0.2.6 fixes critical bugs that could divert node funds via malicious splice peers and prevent saved channel state from loading after a rejected bogus payment.",
      "background_zh": "LDK（Lightning Development Kit）是一个基于 Rust 的闪电网络实现，以软件开发套件的形式提供并附带多个配套模块，允许开发者自行选择存储、钱包、网络和区块链监控组件。splice（拼接）允许通道参与方通过花费通道的 funding output 并将其替换为一笔新的资金交易来增加或减少通道资金，其手续费由双方按各自贡献的输入输出分担。ChannelManager 是 LDK 中负责管理通道与支付的组件，节点重启需要把已保存的状态反序列化读回内存——如果该状态在加载时被拒绝，应用就无法完成正常重启。",
      "background_en": "LDK (Lightning Development Kit) is a Rust-based Lightning Network implementation packaged as a software development kit with supporting modules, allowing developers to choose their own storage, wallet, networking and blockchain-monitoring components. A splice lets a channel participant add or remove funds by spending the channel's funding output and replacing it with a new funding transaction, whose fees are shared between participants according to the inputs and outputs each contributes. ChannelManager is LDK's component for tracking channels and payments, and restarting a node requires deserializing that saved state back into memory — if the state is rejected during loading, the application cannot complete its normal restart.",
      "community_discussion_zh": "",
      "community_discussion_en": "",
      "market_impact_zh": "其传导路径是间接的、由开发者驱动的：LDK 只是钱包与支付服务所采用的多种闪电网络实现之一，因此任何实际被利用的情况都会体现为相关集成方的通道资金损失或运营中断，而不会演变为全市场事件，且目前并未报告任何损失。由于闪电网络的节点数量与路由容量使其成为与链上 BTC 并行的结算层，如果支付服务运营方长期存在状态加载失败的问题，原则上可能削弱闪电网络相关资金流转的路由可靠性与流动性可用性。",
      "market_impact_en": "The transmission path is indirect and developer-driven: LDK is one of several Lightning implementations used by wallets and payment services, so any realized exploit would show up as channel-level fund loss or operational downtime for those integrators rather than as a market-wide event, and no losses have been reported. Because the Lightning Network's routed capacity and node count make it a settlement layer sitting alongside on-chain BTC, unresolved state-loading failures at payment-service operators could in principle degrade routing reliability and liquidity availability for Lightning-denominated flows.",
      "importance_score": 7.5,
      "references": [
        {
          "url": "https://lightningdevkit.org/introduction/",
          "title": "Introduction | Lightning Dev Kit Documentation"
        },
        {
          "url": "https://github.com/lightningdevkit",
          "title": "Lightning Dev Kit · GitHub"
        },
        {
          "url": "https://www.fidelitydigitalassets.com/research-and-insights/introduction-channel-splicing-bitcoins-lightning-network",
          "title": "Introduction to Channel Splicing on Bitcoin’s Lightning Network"
        }
      ],
      "confidence": 0.75,
      "story_ids": [
        "rss:cryptoslate.com_feed_:a1b1725bd58b81e6"
      ],
      "sources": [
        {
          "url": "https://cryptoslate.com/critical-bitcoin-lightning-bugs-exposed-nodes-to-fund-theft-and-restart-failure/",
          "label": "CryptoSlate",
          "source_type": "rss",
          "official": false
        }
      ]
    }
  ]
}
