Litecoin rolls back invalid MWEB transactions after zero-day exploit
Litecoin disclosed that a zero-day flaw in its MimbleWimble Extension Block (MWEB) could cause non-updated nodes to accept an invalid transaction. The issue enabled attackers to peg out funds and launch a denial-of-service (DoS) attack targeting mining pools. To undo the invalid activity, the network carried out a 13-block chain reorganization, while legitimate transactions were not impacted. Litecoin said the vulnerability has been fully patched and the network is operating normally.