Bitcoin Core Developers Uncover Privacy Flaw That Could Expose User IP AddressesTL;DR:
- Privacy flaw identified: The vulnerability is located in the optional private broadcast feature, which was originally implemented in version 31.0 of the software.
- Data leak mechanism: The technical error causes the system, upon a failure in the encrypted connection protocol, to bypass the Tor network and automatically reconnect, exposing the public IP address.
- Financial market stability: The price of the underlying asset reflected a valuation of $63,700 following the dissemination of the official advisory, showing minimal variations in its daily trading volume.
Bitcoin Core developers detected a security flaw that compromises the anonymity of node operators’ network addresses. The announcement of the bug was made this past June 6, warning that the technical anomaly affects configurations that seek to mask the geographical origin of transactions.
We have become aware of a privacy bug in the -privatebroadcast feature, newly introduced in Bitcoin Core 31.0, that may cause the originator’s IP address to be revealed to the receiving peer under certain network conditions. A fix is forthcoming and will be released with 31.1.
— Bitcoin Core Project (@bitcoincoreorg) June 11, 2026
The technical origin of the flaw in the Tor network
The vulnerability is exclusively confined to the feature known as private broadcast. This privacy feature was originally introduced during the month of April 2026 in the release of Bitcoin Core version 31.0.
This tool is responsible for routing data through the Tor anonymity network so that receiving entities cannot determine the message’s origin.
Information from Bitcoin Core reveals that the protocol fails when the application attempts to establish an encrypted link (BIP324 v2) with another computer on the network. If this communication attempt is not completed correctly, the system executes an automatic retry using the traditional v1 protocol. This alternative action completely discards the Tor proxy, allowing the receiving node to log the sender’s real IP address and their approximate geographical location.
The developer team indicates that the flaw can be intentionally exploited by malicious actors within the validation ecosystem. A hostile node has the capability to deliberately reject the initial encrypted handshake to force the reconnection in plain text.
This scenario increases identity-linking risks because the network’s transaction ledger is completely public. By associating a financial transfer with a specific IP, an attacker could deduce the identity of the funds’ owner.
Impact on users and preventive measures
The bug does not compromise the entirety of the payment network’s computer ecosystem. Daily operations executed through conventional wallets remain completely secure, as they do not employ the affected feature. Researcher Eugene Siegel was formally credited by the development team after responsibly discovering and reporting this anomalous behavior in the software client.
While the deployment of version 31.1 is being prepared, developers advise affected node administrators to temporarily disable the -privatebroadcast parameter or, alternatively, to force the routing of all outbound data traffic exclusively through the Tor network configuration.
On the financial front, quotes in the digital asset markets did not show abrupt variations due to the security incident. Bitcoin traded in a range close to $63,700 over the last 24 hours. Technical sector analysts consider that the real impact is limited to the reputation of privacy implementations, in a period marked by constant debates over governance and data relay mechanisms in the core software.
The official launch of the update containing the security patch stands as the next verifiable milestone for the development community.
read the full story
TL;DR:
- Privacy flaw identified: The vulnerability is located in the optional private broadcast feature, which was originally implemented in version 31.0 of the software.
- Data leak mechanism: The technical error causes the system, upon a failure in the encrypted connection protocol, to bypass the Tor network and automatically reconnect, exposing the public IP address.
- Financial market stability: The price of the underlying asset reflected a valuation of $63,700 following the dissemination of the official advisory, showing minimal variations in its daily trading volume.
Bitcoin Core developers detected a security flaw that compromises the anonymity of node operators’ network addresses. The announcement of the bug was made this past June 6, warning that the technical anomaly affects configurations that seek to mask the geographical origin of transactions.
We have become aware of a privacy bug in the -privatebroadcast feature, newly introduced in Bitcoin Core 31.0, that may cause the originator’s IP address to be revealed to the receiving peer under certain network conditions. A fix is forthcoming and will be released with 31.1.
— Bitcoin Core Project (@bitcoincoreorg) June 11, 2026
The technical origin of the flaw in the Tor network
The vulnerability is exclusively confined to the feature known as private broadcast. This privacy feature was originally introduced during the month of April 2026 in the release of Bitcoin Core version 31.0.
This tool is responsible for routing data through the Tor anonymity network so that receiving entities cannot determine the message’s origin.
Information from Bitcoin Core reveals that the protocol fails when the application attempts to establish an encrypted link (BIP324 v2) with another computer on the network. If this communication attempt is not completed correctly, the system executes an automatic retry using the traditional v1 protocol. This alternative action completely discards the Tor proxy, allowing the receiving node to log the sender’s real IP address and their approximate geographical location.
The developer team indicates that the flaw can be intentionally exploited by malicious actors within the validation ecosystem. A hostile node has the capability to deliberately reject the initial encrypted handshake to force the reconnection in plain text.
This scenario increases identity-linking risks because the network’s transaction ledger is completely public. By associating a financial transfer with a specific IP, an attacker could deduce the identity of the funds’ owner.
Impact on users and preventive measures
The bug does not compromise the entirety of the payment network’s computer ecosystem. Daily operations executed through conventional wallets remain completely secure, as they do not employ the affected feature. Researcher Eugene Siegel was formally credited by the development team after responsibly discovering and reporting this anomalous behavior in the software client.
While the deployment of version 31.1 is being prepared, developers advise affected node administrators to temporarily disable the -privatebroadcast parameter or, alternatively, to force the routing of all outbound data traffic exclusively through the Tor network configuration.
On the financial front, quotes in the digital asset markets did not show abrupt variations due to the security incident. Bitcoin traded in a range close to $63,700 over the last 24 hours. Technical sector analysts consider that the real impact is limited to the reputation of privacy implementations, in a period marked by constant debates over governance and data relay mechanisms in the core software.
The official launch of the update containing the security patch stands as the next verifiable milestone for the development community.
read the full story
Global Takedown Cripples Dark Web Bitcoin Service After 10,333 BTC Hit Wallets
U.S. prosecutors charged two men in a $389 million cryptocurrency laundering case tied to a dark web…
SEC Approves Active Crypto ETF With BTC, ETH and XRP on Eligible Asset List
The SEC approved NYSE Arca’s proposal to list and trade shares of the T. Rowe Price Active Crypto…
Bitcoin’s ‘calm top’ challenges most market bottom estimates: Research
New data from Galaxy Research suggests that Bitcoin's floor price may not drop as low as previous…
Bitcoin rally to $70K builds as orderbook structure highlights traders’ confidence
A positive bid-ask readings and a bullish RSI divergence support Bitcoin's recovery, with $70,000…
Aave Proposal Moves To Add Circle Wrapped Bitcoin As Collateral
Aave Labs has proposed onboarding Circle Wrapped Bitcoin to Aave V3 and V4 Core on Ethereum, but the…
Tim Draper Ranks Elon Musk Just Below Satoshi: Will SpaceX Buy More Bitcoin?
Tim Draper likens Elon Musk to Satoshi as Scott Melker pushes SpaceX Bitcoin buying after its record…
Satoshi Ranks Above Musk for Bitcoin Bull Draper
Trillionaire Musk is now 10 times richer than Satoshi, and Draper loves them both.
Fidelity’s Dollar Stablecoin Taps Curve and Uniswap as Its DeFi Liquidity Layer
The Fidelity Digital Dollar stablecoin deployed Curve Finance Stableswap LP positions and Uniswap LP…
Metaplanet to Launch Bitcoin Yield Products in Japan After $13 Million Siiibo Securities Deal
Metaplanet has agreed to acquire Siiibo Securities, a licensed Japanese Type I securities firm, as…
Saylor Clarifies Bitcoin Stance, Says Company Was Never Barred From Selling
TL;DR Saylor said his “never sell your bitcoin” mantra applied to individuals, not a corporate…
GameStop caps Bitcoin upside again as Coinbase deal rolls over
GameStop has extended a Bitcoin options deal with Coinbase after the previous contracts expired…
Bitcoin miner stress peaks in 2026: Is a 2022-style bear phase forming?
Rising pressure across Bitcoin miners is becoming hard to ignore.
Bitcoin falls to 15th in market cap rankings as BTC trades 49% below ATH
Bitcoin has fallen to 15th place among global assets by market capitalization. CompaniesMarketCap…
Bitcoin Core Developers Find Privacy Bug That Can Leak User IP Addresses
Bitcoin Core developers have disclosed a privacy bug that can expose the very detail it was designed…
Bitcoin Climbs to $64,349 After Trump Signals Iran Deal Despite Tehran Pushback
Bitcoin briefly breached $64,000 following U.S. President Donald Trump’s announcement of a…
Can Bitcoin break $65k as traders challenge Galaxy’s bearish cycle call?
Bitcoin climbed above $64,000 on June 12 as improving market sentiment and bullish technical signals…
Fidelity’s Dollar Stablecoin Taps Curve and Uniswap as Its DeFi Liquidity Layer
The Fidelity Digital Dollar stablecoin deployed Curve Finance Stableswap LP positions and Uniswap LP…
Bitcoin Holder SpaceX Now Two Times Bigger Than BTC
Aerospace titan SpaceX has officially reshaped the global financial hierarchy, launching the largest…