Skip to content
Litecoin Zero-Day Vulnerability Leads to DoS Attack on Mining Pools

Litecoin Zero-Day Vulnerability Leads to DoS Attack on Mining Pools

First seen 26 Apr 2026, 11:01 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •April 27, 2026 at 10:34 UTC
  • •A zero-day vulnerability in Litecoin allowed a DoS attack on mining pools.
  • •Invalid MWEB transactions were executed, leading to token withdrawals to a DEX.
  • •The Litecoin network successfully rolled back affected transactions through a 13-block reorg.

Litecoin announced a zero-day vulnerability that resulted in a denial-of-service (DoS) attack impacting major mining pools. The vulnerability allowed unpatched mining nodes to execute an invalid MWEB (MimbleWimble Extension Block) transaction, which facilitated the withdrawal of tokens to a third-party decentralized exchange (DEX). In response, the Litecoin network performed a reorganization of 13 blocks to exclude these invalid transactions from the main chain. All valid transactions during this incident remained unaffected, and the vulnerability has since been fully patched, restoring normal network operations. The incident highlights the importance of timely updates for mining nodes to prevent exploitation. Litecoin's swift action mitigated potential losses and maintained the integrity of valid transactions. The overall impact was contained, with no long-term damage reported to the network.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 166d ago How this analysis works

Timeline

2026-04-26
Litecoin disclosed a zero-day vulnerability and DoS attack
2026-04-26
Network rolled back 13 blocks to exclude invalid transactions
2026-04-26
Vulnerability fully patched and network operations restored

More articles in this cluster (2)

Following this threat?

Track Litecoin in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed