AI bug reports trigger emergency warning for Bitcoin Lightning node operators. Developers are withholding details for two weeks while fixes reach operators, in the second Lightning security emergency this month traced to AI work on Bitcoin code.
Core Lightning issued an emergency warning after a surge of AI‑generated security reports revealed several genuine vulnerabilities in the Bitcoin payment software.
Operators who cannot immediately upgrade should restart Core Lightning with —offline, rather than power down their machines, so their nodes can continue monitoring the Bitcoin blockchain and protecting channel funds.
Developers plan to release signed patches before disclosing the vulnerabilities after a two‑week embargo, and they have not said whether the flaws have been exploited.
Developers of Core Lightning, a software used to send bitcoin over the Lightning Network, have issued an emergency warning to node operators after a flood of AI‑generated security reports uncovered several real vulnerabilities.
Core Lightning told operators not to power their machines down, and to restart the software in a mode called “—offline” instead, which stops it communicating to other Lightning nodes while leaving it running.
The Lightning Network sits on top of Bitcoin and lets people send BTC quickly and cheaply without recording every individual payment on the blockchain. Core Lightning, or CLN, is one of the main software packages used to run the computers that send and route those payments.
Core Lightning said its small development team began receiving a large number of AI‑generated vulnerability reports in early August. Such reports point to places where software might potentially be attacked, leaving developers to check whether the weakness actually works in practice.
Several did, the team said. Developers are keeping the details private for two weeks while preparing software containing fixes, giving operators time to update before attackers can study the changes.
A screenshot of CLN’s advice spread across Bitcoin social media on Thursday, and the instruction changed shape as it travelled. The original message told operators who could not immediately upgrade to restart their nodes using —offline, not to power them down. But developers later stressed that operators should not switch their machines off, as a node that stops running can no longer defend the bitcoin sitting in its payment channels.
How the nodes work
Lightning works by letting two participants lock bitcoin into a shared payment channel and repeatedly update who owns how much. When they eventually close the channel, the final balance is recorded on Bitcoin.
A node needs to keep watching the Bitcoin blockchain in case the other side tries to close a channel using an outdated balance. If that happens, the node can respond onchain and protect its funds.
But a machine that has been completely powered off cannot see that happening.
Restarting Core Lightning with —offline instead cuts its connections to other Lightning nodes. No payments can be sent, received or routed through it, but the software keeps running and continues watching Bitcoin.
Core Lightning plans to release signed versions of the patched software first, allowing operators to verify the files came from the development team before installing them. The source code and details of the vulnerabilities are expected to be published after the two‑week embargo.
The project has not disclosed what the vulnerabilities allow an attacker to do, how many are being fixed, or whether anyone has exploited them. The regularly scheduled Core Lightning 26.09 release remains planned for late September.
This is the second Lightning security emergency this month.
In early August, a flaw in BTCPay Server exposed the credentials controlling Lightning nodes in early August, and attackers drained funds from some of them before a fix went out. BTCPay’s developers said afterwards that AI was changing the balance between attackers and defenders, and paid bounties to the researchers who found it.
Separately, the Bitcoin Red Team, a group of 16 developers, used AI models to sweep 390 Bitcoin repositories in late July, producing nearly 5,000 findings including 85 rated critical in about 27 hours of work. Additionally in August, a group including Coinbase, Block, BitGo, Blockstream and the Bitcoin Policy Institute asked AI labs for early access to their strongest models, arguing Bitcoin developers were being locked out of programs attackers could reach anyway.
Anvil is a shared on-chain collateral layer built on a programmable letter of credit: reserve assets as a guarantee -no loan, no interest, keep custody & yield.
Why it matters:
Anvil is a shared on-chain collateral layer built on a programmable letter of credit: reserve assets as a guarantee -no loan, no interest, keep custody & yield.