Fun

Bitcoin Core devs set up new policy aimed at handling ‘critical bugs’

News Feed - 2024-07-04 01:07:50

Brayden Lindrea4 hours agoBitcoin Core devs set up new policy aimed at handling ‘critical bugs’Bitcoin Core developer Antoine Poinsot said there is a dangerous perception that Bitcoin Core is free of bugs, noting it is “dangerous and, unfortunately, not accurate.”1626 Total views3 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksA group of Bitcoin Core developers has launched a “critical bug” disclosure policy aimed at more effectively communicating Bitcoin security vulnerabilities.


“The project has historically done a poor job at publicly disclosing security-critical bugs, whether externally reported or found by contributors,” Bitcoin core developer Antoine Poinsot and five others wrote to members of the Bitcoin Development Mailing List on July 3.


This has led to a situation where Bitcoin users are led to believe that Bitcoin Core is free of bugs, but Poinsot stressed that this simply isn’t the case.“This perception is dangerous and, unfortunately, not accurate.”


Bitcoin Core is the software that Bitcoin node operators download to access the Bitcoin blockchain, validate transactions and build blocks. It plays a crucial role in securing more than $1.1 trillion locked in the Bitcoin network.Source:Antoine Poinsot


Poinsot said the new policy would allow better communication about the risk of running outdated versions of Bitcoin Core and would provide a standardized disclosure process that would give researchers more incentive to find and responsibly disclose vulnerabilities.“Making the security bugs available to the wider group of contributors can help prevent future ones.”


The new disclosure policy will categorize vulnerabilities based on four levels of severity.


The first category, “low,” includes bugs that are hard to exploit and have low impact, such as a wallet bug that requires access to the victim’s machine.


The second category, “medium” are bugs with limited impact, such as local network remote crash.


The last two categories include bugs of “high” severity that could have significant impact, while the “critical” severity are ones that threaten the entire network’s integrity.


An example of a critical bug could involve manipulating Bitcoin Core to inflate Bitcoin’s hard-capped supply or committing a “coin theft.”


Low, medium and high bugs will aim to be disclosed two weeks after a fixed version is released, while disclosures for critical bugs will be determined on a case-by-case basis.


Related:Bitcoin Ordinals proponents should demand a new Bitcoin fork


The policy will be “gradually adopted” in the coming months, Poinsot added.


Poinsot noted that all vulnerabilities fixed in Bitcoin Core versions 0.21.0 and earlier has been disclosed as of July 3, and disclosures for versions 0.22.0 and 0.23.0 will come out later this month and in August.


Bitcoin Core version 27.1 is the latest version adopted.


The new policy received praise from fellow Bitcoin Core developer Eric Voskuil:“Many other projects have been on the receiving end of this misperception, and it has in fact caused material harm to the community. I don"t know what precipitated this change, but props to you all for stepping up.”


Magazine:‘Bitcoin Layer 2s’ aren’t really L2s at all: Here’s why that matters# Bitcoin# Bitcoin Core# Business# Security# Adoption# DevelopersAdd reaction

News Feed

South Korean Prosecutors Uncover Alleged $314 Million Criminal Proceeds Tied to Terraform Labs Co-Founders
South Korean Prosecutors Uncover Alleged $314 Million Criminal Proceeds Tied to Terraform Labs Co-Founders According to a report by South Korean news publication KBS, Do Kwon, the
William Suberg9 hours agoBTC price dips 3.5% as ‘overheated’ Bitcoin derivatives spark angstBitcoin eats away at upside that followed the Federal Reserve interest rate announcement, with BTC price action over $1,000
Securing your crypto funds: Exchanges add support for hardware 2FA
Rachel Wolfson10 hours agoSecuring your crypto funds: Exchanges add support for hardware 2FAAs phishing attacks rise, crypto exchanges tell users to keep their funds safe by using YubiKey devices and Passkeys, along with
Bitcoin Faces Persistent Resistance at $100K, Analyst Eyes Next Step
Este artículo también está disponible en español. Weeks after hitting an all-time high above $109,000, Bitcoin’s price remains under pressure. It is currently trading b
World’s Largest Crypto ATM Company Bitcoin Depot to Go Public via SPAC Deal
World"s Largest Crypto ATM Company Bitcoin Depot to Go Public via SPAC Deal The largest cryptocurrency automated teller machine (ATM) operator, Bitcoin Depot, has revealed it has p
Zabu Finance Suffers First Big Exploit in Avalanche Defi, Loses $3.2 Million
Zabu Finance Suffers First Big Exploit in Avalanche Defi, Loses $3.2 Million Zabu Finance, a decentralized yield farming protocol on Avalanche, suffered the first big hack related
Ezra Reguerra14 hours agoCoinbase CEO to Americans: Urge reps to vote ‘Yes’ on crypto regulatory clarity billsBrian Armstrong said that voting Yes to the bill would protect innovation and national security in the Uni
US Treasury Warns NFTs May Present New Illicit Finance Risks
US Treasury Warns NFTs May Present New Illicit Finance Risks The U.S. treasury department has warned that non-fungible tokens (NFTs) may present new illicit finance risks. Accordin
Bold Prediction: XRP Holders On The Path To Millionaire Status—Analyst
Este artículo también está disponible en español. A market expert has boldly proclaimed that all XRP holders might ultimately become millionaires. Related Reading XRP Pri
Ascendex Hacked — Exchange Loses $77 Million in ERC20, BSC, Polygon Tokens
Ascendex Hacked — Exchange Loses $77 Million in ERC20, BSC, Polygon Tokens Ascendex, a cryptocurrency exchange, suffered a security breach that allowed hackers to take control of
A Mining Rig That Boasts 440 TH/s? Miners Question the Legitimacy of New Bitcoin Mining Device
A Mining Rig That Boasts 440 TH/s? Miners Question the Legitimacy of New Bitcoin Mining Device The cryptocurrency community has been discussing a newly announced bitcoin miner call
Marcel Pechman3 hours agoCardano price turns bullish, but is there substance to the ADA rally?Cardano’s DeFi footprint and network activity show an uptick in users, but will it be enough to sustain ADA’s recent bulli