Cryptonews Bitcoin Core v31.0 Privacy Bug Exposes IP Addresses Under Certain Conditions
Article Content
- •Bitcoin Core v31.0 has a privacy vulnerability that may expose user IP addresses.
- •The bug affects only users running full nodes with version 31.0; third-party wallet users are safe.
- •A patch is in development and will be included in the upcoming v31.1 release.
Bitcoin Core has confirmed a privacy vulnerability in version 31.0 that could leak the sender's IP address under specific network conditions. The issue arises from the handling of the privatebroadcast feature, potentially exposing users running full nodes to privacy risks. This vulnerability affects only those using Bitcoin Core v31.0, while users of third-party wallets remain unaffected. The Bitcoin Core team is working on a patch, which will be included in the upcoming v31.1 release. Users are advised to downgrade to version 28.0 or wait for the patch if privacy is a concern. The bug was disclosed responsibly, with the project emphasizing the importance of user privacy. This incident highlights ongoing challenges in maintaining privacy at the network protocol level. The patch is expected to be released in the coming weeks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Bitcoin Core Team in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…