Altcoins News

Story: LTC Frozen After Attacker Fakes 85,034 Pegout Via MWEB Bug

By Evie Vavasseur

1 / 15

Chain Reorganization Hits Connected Networks. April brought more trouble. The same flaw caused a 13-block chain reorganization.

2 / 15

What Developers Are Doing Now. The Litecoin team is working on protocol updates. They're focused on sealing the MWEB…

3 / 15

Litecoin developers froze funds. The reason? Someone exploited a Mimblewimble Extension Block flaw and created a fake pegout worth 85,034 LTC.

4 / 15

The MWEB validation process had a critical gap, and someone found it. They bypassed the standard checks that were supposed to catch false transactions.

5 / 15

April brought more trouble. The same flaw caused a 13-block chain reorganization. Not just a Litecoin problem anymore. Thorchain and NEAR Intents both saw disruptions.

6 / 15

The chain reorganization showed something worse than the initial exploit. It showed the bug could alter transaction history and mess with other blockchain platforms.

7 / 15

Developers released a postmortem that laid out what happened. The MWEB bug allowed the attacker to manipulate the validation process in March, creating 85,034 LTC out of thin air.

8 / 15

The Litecoin team is working on protocol updates. They're focused on sealing the MWEB vulnerability and reinforcing the validation process.

9 / 15

Developers didn't specify an exact timeline for the updates. They said they're prioritizing security audits and continuous monitoring.

10 / 15

The postmortem made it clear both incidents stemmed from the same root cause. The MWEB validation error let the attacker create illegitimate transactions without triggering the…

11 / 15

Read also: LTC Blockchain Splits After Attacker Mints Fake Coins, Swaps for ETH

12 / 15

Security audits are now a top priority. Developers are examining every part of the MWEB code to find other potential gaps.

13 / 15

The broader implications are still being assessed. Litecoin's privacy feature was supposed to be a selling point, but now it's a liability until the bug is fixed.

14 / 15

Transparency is key right now. The development team has been sharing findings and updates with the community, which is the right move when trust is on the line.

15 / 15

The March incident involved a sophisticated manipulation of the MWEB protocol. The attacker didn't just stumble onto the bug—they understood the validation process well enough to…

The Currency Analytics

Want the full story?