Replies (2)

Great summary of the CVE. I was reviewing the forum posts and the write up made by the dev just yesterday. It's definitely something that needs to be resolved but as the blog entry says there are mitigations in place and precautions that can be taken. The other apps (coinjoins) that use these features will probably need to be used with care or not at all. In his write up the dev didn't mention the new taproot assets implementation that came out of beta recently. It should also have this problem if I'm not mistaken. One concern I have is there is a user posting that the dev mentioned there were backdoors added to the code base intentionally. I did not see that statement made in any of the devs forum posts or pdf. I suspect someone trying to sow FUD in people's minds. Seems like a shit move if they are doing that on purpose.