XRP Ledger Fixes Decade-Old Bug, Prevents Creation of Massive XRP Out of Thin Air
On October 10, according to CoinDesk, the XRP Ledger recently patched a security vulnerability that had existed for up to a decade. The flaw dates back to 2015 and was discovered by researcher Cayden Liao and Veria AI. Researchers noted that an error in the counting logic within the XRP Ledger's built-in exchange allowed attackers to acquire a large amount of tokens at a minimal cost by distributing a single payment across hundreds of accounts.
RippleX stated that internal testing confirmed that without the fix, an attacker could effectively create new XRP out of thin air from zero and sell it on the market, directly violating the network's hard cap of 100 billion total tokens. Although no attacks exploiting this vulnerability have been detected on the public network, RippleX released the patched `xrpld` 3.4.1 server version on September 25, completely eliminating the risk.