Solana (SOL) News: Developers Patch Bug That Could Lead to Attackers Stealing Tokens
- The Solana Foundation fixed a zero-day security flaw discovered on April 16, 2025, that could allow attackers to forge proofs and steal tokens on its blockchain network.
- The vulnerability affected Solana's Token-2022 and ZK ElGamal Proof programs and was reported with a proof-of-concept through Anza’s GitHub security advisory.
- Solana privately distributed two patches to validators by April 18, with a supermajority adopting them quickly, ensuring no exploit or funds loss occurred before public disclosure.
- The patched issue highlights challenges in securing complex cryptographic systems and reflects effective collaboration among Solana engineers and security firms during incident response.
- This response, alongside Solana’s new monitoring platform Solana Status, which offers real-time network health data, strengthens transparency and trust as the blockchain expands its ecosystem.
22 Articles
22 Articles
Solana (SOL) News: Developers Patch Bug That Could Lead to Attackers Stealing Tokens
The Solana Foundation has disclosed a previously unknown vulnerability in its privacy-focused token system that could have allowed attackers to forge fake zero-knowledge proofs, enabling unauthorized minting or withdrawals of tokens.The vulnerability was first reported on April 16 through Anza’s GitHub security advisory, accompanied by a working proof-of-concept. Engineers from Solana development teams Anza, Firedancer, and Jito verified the bug…
Solana says zero-knowledge proofs were root of mid-April bug
This is a segment from the Lightspeed newsletter. To read full editions, subscribe. In mid-April, leaders in the Solana world took to X to post the same cryptic hash. Strings like this can conceal a message’s contents from the public, while still allowing anyone with the original data to verify its authenticity. Some speculated the hash was a method to coordinate Solana validators to patch a vulnerability in Solana’s code, and they turned out to…
Solana Fixes Critical Zero-Day Bug That Could Have Enabled Unlimited Token Theft
Solana validators quickly patched a critical zero-day bug within just two days of discovery. Vulnerability impacted Token-22 confidential transfers, but no exploits were reported. Solana Foundation privately coordinated fix, sparking community concerns on centralization. The Solana Foundation confirmed fixing a “zero-day” bug that gave attackers unlimited token minting capabilities and the ability to withdraw tokens from user accounts. The issue…
Solana Quickly Addresses Key Bug: Will SOL Bounce Back Soon? - Crypto Economy
TL;DR Solana fixed a critical flaw in its ZK ElGamal Proof program that allowed false transactions to be validated and unbacked tokens to be generated. The bug was detected on April 16, and after two patches reviewed by external firms, over 66% of the network now runs secure versions. Despite the vulnerability and a temporary 1.6% drop, Solana maintains strong activity, with SOL near $144 and fees surpassing Ethereum. Solana resolved a critical…
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium







