The post XRP Ledger Foundation Quietly Fixes ‘Critical’ Bug That Could Have Drained User Funds ⋆ ZyCrypto appeared on BitcoinEthereumNews.com. Advertisement &nbspThe post XRP Ledger Foundation Quietly Fixes ‘Critical’ Bug That Could Have Drained User Funds ⋆ ZyCrypto appeared on BitcoinEthereumNews.com. Advertisement &nbsp

XRP Ledger Foundation Quietly Fixes ‘Critical’ Bug That Could Have Drained User Funds ⋆ ZyCrypto

2026/02/28 05:25
Okuma süresi: 2 dk
Advertisement

The XRP Ledger Foundation has announced that it fixed a critical vulnerability in a pending amendment of Ripple’s XRP Ledger, preventing what could have been a significant security exploit.

On February 19, a security engineer at cybersecurity company Cantina, Pranamya Keshkamat, along with the Cantina AI security bot, discovered a “critical logic flaw” in the signature-validation process of Ripple’s XRP Ledger, the XRP Ledger Foundation reported Thursday.

The flaw could have enabled bad actors to initiate transactions from user accounts — including siphoning funds — without requiring access to the victims’ private keys.

The proposed “Batch” amendment (XLS-56) was still under voting and had not yet gone live on the XRP Ledger mainnet, meaning that no user funds were ever at risk or affected.

World’s “Largest Security Hack By Dollar Value”

According to the XRP Ledger Foundation, the vulnerability not only posed a risk of fund theft and ledger tampering but also had the potential to disrupt the stability of the entire ecosystem.

Advertisement
 

“A successful large-scale exploit could have caused substantial loss of confidence in XRPL, with potentially significant disruption for the broader ecosystem.”

The Batch amendment is designed to let several “inner” transactions be bundled together. These inner transactions remain unsigned to reduce processing power, with authorization handled by the outer batch’s designated signers. But, a critical loop error in the signer-calling mechanism created a significant security vulnerability.

If the system came across a signer linked to an account not yet present on the ledger, and the signing key matched that new account, it would instantly mark the validation as successful. The loop would then exit prematurely, bypassing critical validator checks. An attacker could have leveraged a particular sequence of batched transactions to exploit this flaw.

Cantina and Spearbit CEO Hari Mulackal noted in a post on X, “Great work by the @Ripple team on responding quickly to our disclosure, alerting the validators who promptly voted down the upgrade that was scheduled to go live on March.”

“Had this been exploited, it would have been the largest security hack by dollar value in the world, with nearly $80 billion at direct risk,” he added, perhaps referencing XRP’s current market cap.

The XRP Ledger Foundation reported that validators were instructed to vote down the amendment, and an emergency update (Rippled 3.1.1) was released earlier this week to prevent the amendment from being activated.

Source: https://zycrypto.com/xrp-ledger-foundation-quietly-fixes-critical-bug-that-could-have-drained-user-funds/

Piyasa Fırsatı
XRP Logosu
XRP Fiyatı(XRP)
$1.3278
$1.3278$1.3278
-2.18%
USD
XRP (XRP) Canlı Fiyat Grafiği
Sorumluluk Reddi: Bu sitede yeniden yayınlanan makaleler, halka açık platformlardan alınmıştır ve yalnızca bilgilendirme amaçlıdır. MEXC'nin görüşlerini yansıtmayabilir. Tüm hakları telif sahiplerine aittir. Herhangi bir içeriğin üçüncü taraf haklarını ihlal ettiğini düşünüyorsanız, kaldırılması için lütfen crypto.news@mexc.com ile iletişime geçin. MEXC, içeriğin doğruluğu, eksiksizliği veya güncelliği konusunda hiçbir garanti vermez ve sağlanan bilgilere dayalı olarak alınan herhangi bir eylemden sorumlu değildir. İçerik, finansal, yasal veya diğer profesyonel tavsiye niteliğinde değildir ve MEXC tarafından bir tavsiye veya onay olarak değerlendirilmemelidir.

Ayrıca Şunları da Beğenebilirsiniz

Italy passes law on AI outlining privacy and child access

Italy passes law on AI outlining privacy and child access

The post Italy passes law on AI outlining privacy and child access appeared on BitcoinEthereumNews.com. Italy has formally passed a sweeping new law to regulate artificial intelligence, becoming the first member of the European Union to roll out comprehensive legislation in step with the bloc’s landmark AI Act. The Italian Senate granted final approval after a year of debate, concluding what Prime Minister Giorgia Meloni’s government described as a decisive step in shaping how new technologies are deployed across the country. Italy sets tough penalties for offenders The legislation, ministers argue, lays out the boundaries for human-centric, transparent, and safe use of AI while balancing the need to foster innovation, cybersecurity, and economic growth. The law casts its net widely, and it stretches into healthcare, schools, the justice system, workplaces, sport, and the public sector. AI access for children under 14 has also been tightened, and it now requires parental consent. “This law brings innovation back within the perimeter of the public interest, steering AI toward growth, rights and full protection of citizens.” Alessio Butti, the undersecretary for digital transformation. Lawmakers also opted for a hard line on abuses. A new offence has been added to the criminal code covering the unlawful spread of AI-generated or manipulated content, such as deepfakes. Anyone found guilty faces between one and five years in prison if their actions cause harm. Using AI to commit fraud, identity theft, market manipulation, or money laundering will now be treated as an aggravating circumstance, raising potential sentences by a third. Judges remain the sole authority in legal rulings, though courts are empowered to demand rapid takedowns of illicit material. Government agencies to oversee its implementation Responsibility for enforcing the regime lies with the Agency for Digital Italy and the National Cybersecurity Agency, though existing financial watchdogs such as the Bank of Italy and Consob retain powers in their own spheres. The Department…
Paylaş
BitcoinEthereumNews2025/09/18 06:05
Strategic Silence As Beijing Media Blames US, Israel For Dangerous Escalation

Strategic Silence As Beijing Media Blames US, Israel For Dangerous Escalation

The post Strategic Silence As Beijing Media Blames US, Israel For Dangerous Escalation appeared on BitcoinEthereumNews.com. China Iran Tensions: Strategic Silence
Paylaş
BitcoinEthereumNews2026/02/28 21:31
Trump sabotages emerging peace deal with military escalation

Trump sabotages emerging peace deal with military escalation

President Donald Trump launched strikes on Iran early Saturday morning, claiming that talks over a nuclear agreement had broken down. Speaking after midnight, Trump
Paylaş
Alternet2026/02/28 20:52