todayonchain.com

Litecoin's 13-block reorg wasn't a zero-day, GitHub commit history shows otherwise

CoinDesk
GitHub commit logs reveal that Litecoin's recent consensus vulnerability was patched weeks before the attack, contradicting claims that it was a zero-day exploit.

Summary

The Litecoin Foundation recently characterized a 13-block chain reorganization as a zero-day exploit. However, analysis of the litecoin-project GitHub repository indicates that the underlying consensus vulnerability was privately patched between March 19 and March 26, over a month before the attack occurred. Security researchers suggest that attackers exploited a window where some mining pools had not updated their software, utilizing a separate denial-of-service attack to force the network onto vulnerable, unpatched nodes.

(Source:CoinDesk)