Cryip
  • Home
  • Crypto News Today
  • Research & Analysis
  • Learn Crypto
No Result
View All Result
Cryip
  • Home
  • Crypto News Today
  • Research & Analysis
  • Learn Crypto
No Result
View All Result
Cryip
No Result
View All Result
Home Crypto News Today Security & Hacks

Ravencoin’s Fix for Its Third Consensus Failure Is Coming From a Mining Pool, Not Its Own Team

Ravencoin's core team asked the mining pools rebuilding its chain for a softer recovery point. The pools said no, and wrote the emergency patch themselves, making this the network's third consensus or asset failure in eight years.

Saravana Kumar Mahendran by Saravana Kumar Mahendran
August 11, 2026
in Security & Hacks
0 0
Ravencoin’s Fix for Its Third Consensus Failure Is Coming From a Mining Pool, Not Its Own Team

Image by methodshop from Pixabay/Edited by Cryip

Share on FacebookShare on Twitter
MakeCryipCryippreferred onGoogle

When Ravencoin’s development team asked the two mining pools now rebuilding its blockchain to pick a less disruptive recovery point, the pools said no. That exchange, disclosed by Ravencoin’s own notice, sits at the center of what has happened to the network over the past four days. It is a striking admission for a project that has now weathered three separate breakdowns in its consensus or asset layer since 2018. What happens to the current fork, and to the three days of transactions caught in it, is no longer a decision Ravencoin’s own team is making alone.

Ravencoin Network Notice

A critical consensus vulnerability has been demonstrated and exploited on the Ravencoin network.

The issue caused invalid blocks to be accepted by vulnerable nodes. The first known invalid block appeared at height 4,487,776 on 2026-08-07 15:44:01 UTC.…

— Project Raven 🦅/ RVN / Ravencoin (@Ravencoin) August 10, 2026

What Actually Happened

The first fraudulent block was accepted at height 4,487,776, mined just before 4pm UTC on August 7. The flaw sat in a header field called nHeight, part of Ravencoin’s KAWPOW proof of work validation. That field is supposed to be checked against a block’s actual position in the chain. It never was. Exploiting the gap let an attacker submit blocks without doing the computational work KAWPOW is meant to require in the first place, effectively minting valid-looking blocks for free.

Once the flaw was demonstrated on mainnet, Ravencoin’s notice says similar invalid blocks began appearing from other sources as well, suggesting the trick was copied once it became visible. Between block heights 4,489,527 and 4,491,615, a stretch of 2,089 blocks, roughly 96 turned out to be forged. Nodes running the standard software started crashing on restart with database errors, and syncing broke down entirely as clean nodes rejected peers that were serving corrupted headers.

The patch, v4.6.1.1-hf1, addresses this directly: it enforces proper height validation from block 4,487,776 onward, adds a checkpoint at block 4,487,775 to lock in the last known-good history, and rebuilds a node’s chainstate and asset database automatically if they fall out of sync. The release notes are direct about who needs to act: “every node operator, pool, exchange and explorer should upgrade.” The notes also warn that the first restart after upgrading can take several hours, since the software has to replay a large stretch of blockchain history to rebuild its state.

Pools Take Over the Recovery

2Miners and RavenMiner, which together hold most of the network’s mining power, responded by building a competing chain that discards everything after block 4,487,776. If that chain outruns the compromised one, close to three days of Ravencoin transaction history gets rewritten. Ravencoin has told exchanges to treat everything confirmed after block 4,487,775 as unsettled, and warned that reversed deposits and withdrawals won’t automatically reappear or reconfirm. Exchanges including Upbit and Bitvavo paused RVN deposits and withdrawals while the fork plays out. RVN itself was trading down close to 18% in the day after the notice went out, around $0.0036.

The Request That Got Turned Down

Before the pools settled on 4,487,776 as their starting point, Ravencoin’s team asked them to consider a more recent recovery point instead, one that would have spared a larger share of recent transactions from being unwound. The pools declined and went ahead with the earlier point regardless. Ravencoin’s own attempt to soften the impact on users and exchanges did not survive contact with the people actually running the recovery.

Built Somewhere Else

The code fixing the bug did not come from Ravencoin’s development team either. It shipped from 2Miners’ own GitHub repository as an emergency release, and the release notes say plainly why: upstream Ravencoin development is inactive, no fix had been published, and 2Miners decided to ship one itself rather than wait.
Friction over who actually owns a fix, and who gets credit or compensation for finding the problem in the first place, has come up elsewhere in crypto recently too. THORChain is currently facing similar accusations from a researcher who says a flaw he reported was patched quietly and without payment.

Three Failures, Three Outside Fixes

This is not the first time something has broken in how Ravencoin’s chain or its asset system holds up.

  • September 2018: a double-spend attack rewrote 22 blocks. Lead developer Tron Black’s team responded by capping how far any future reorganization could reach, set at 60 blocks by default.
  • 2019: a team from a separate project, Raptoreum, found four bugs in how Ravencoin’s asset issuance and reissuance worked, including one that would have let someone mint sub-assets they had no rights to. Ravencoin fixed all four across two releases and paid a bounty for the disclosure. None were ever exploited live.
  • May to July 2020: one of those same weak points got used for real. An attacker found a way to inject RVN value into asset reissue transactions, adding roughly 500,000 RVN every two hours for about seven weeks, spreading it across addresses and moving it through exchanges before anyone caught it. By the time CryptoScope spotted the pattern while resyncing a block explorer on June 29, the total had reached about 301.8 million RVN, close to 1.4% of Ravencoin’s 21 billion coin supply cap. Ravencoin shipped a fix within days and enforced it at block 1,304,352 on July 4.

In each of those cases, the party that caught or fixed the problem sat outside Ravencoin’s own team: Raptoreum in 2019, CryptoScope in 2020. This month adds a third name to that list. 2Miners wrote the patch, and decided on its own how far back to roll the chain, over the objection of the team whose name is on the project.

Ravencoin’s case involved no user funds moving hands. That is not always true of vulnerabilities like this: a wallet-generation flaw called Ill Bloom has already drained millions of dollars from thousands of accounts since May.

Whichever chain wins the current fork race will settle the immediate question of which three days of transactions actually count. It won’t settle who is responsible for catching the next bug before it reaches mainnet, or for deciding how the network responds when one does. On both of those questions, this month’s events left the answer sitting with the pools, not with Ravencoin.

Disclaimer: Cryip's content is strictly for educational and informational purposes and does not constitute financial, legal, or investment advice. Cryptocurrency involves significant risk, and readers assume full responsibility for their own financial decisions. Asset references are never endorsements.

To make complex crypto topics accessible to readers at all experience levels, our team uses AI tools strictly to refine language, correct grammar, and simplify terminology. AI is never used to draft facts, source information, or form conclusions. Every article is fact-checked and approved by a human editor before publication. Read our full AI Use & Content Policy.

Tags: crypto security
Saravana Kumar Mahendran

Saravana Kumar Mahendran

Saravana Kumar Mahendran is a crypto security analyst and blockchain researcher at Cryip, focusing on DeFi protocol exploits, Web3 security systems, and on-chain investigation. His research applies OSINT and fact-checking methodology to security incidents, drawing on certifications in cybersecurity and data analytics (LinkedIn Learning), and DeFi deep-dive training (Binance Academy). His work has been cited by Sherlock, Rekt.news, and Halborn Security.

Related Posts

Security & Hacks

Revolut Suspected of Leaking Customer Data After Fake Government Request

by Akil Prasath LV
September 12, 2026

Key Facts Revolut is suspected of responding to a spoofed government data request with real customer records. Exposed data reportedly...

Read moreDetails
Cronos Halts Its Own Blockchain After a $75M Tectonic Exploit

Cronos Halts Its Own Blockchain After a $75M Tectonic Exploit

August 31, 2026
Ledger Denies Hack Claim After OneKey Reproduces Already-Patched Ethereum Bug

Ledger Denies Hack Claim After OneKey Reproduces Already-Patched Ethereum Bug

August 28, 2026
Audited Crypto Platforms Lost $3.2 Billion Anyway, New Report Shows

Audited Crypto Platforms Lost $3.2 Billion Anyway, New Report Shows

August 27, 2026
Core Lightning Tells Node Operators to Go Offline, Not Shut Down Amid Bug Patch

Core Lightning Tells Node Operators to Go Offline, Not Shut Down Amid Bug Patch

August 27, 2026
Operation ASTERIX Shows AI Refusals Are a Speed Bump, Not a Stop Sign

Operation ASTERIX Shows AI Refusals Are a Speed Bump, Not a Stop Sign

August 20, 2026
Binance Says It Stopped a $1.2M DAO Attack, but Won’t Name the Target

Binance Says It Stopped a $1.2M DAO Attack, but Won’t Name the Target

August 19, 2026
Next Post
Vitalik Buterin Updates Ethereum Roadmap With Quantum Safety, Privacy Focus

Vitalik Buterin Updates Ethereum Roadmap With Quantum Safety, Privacy Focus

FlightAware Sues Kalshi Over Use of Flight Data in Betting Markets

FlightAware Sues Kalshi Over Flight Data Used in Prediction Markets

Recommended

  • All
  • Crypto News Today
Blockchain Association Rebuts Sheriffs' Clarity Act Claims

Blockchain Association CEO Summer Mersinger to Step Down, Founding Leader Kristin Smith Returns as Interim CEO

September 27, 2026

Strategy Proposes Daily Dividend Accrual for Its Four Preferred Stock Classes

September 27, 2026

New York Sues Polymarket, Alleging an Unlicensed Gambling Operation That Let in Underage Users

September 27, 2026

CFTC Updates FAQs to Let Commodities Firms Invest Customer Funds in Tokenized Assets and Use Blockchain Recordkeeping

September 27, 2026
Photo by Aedrian Salazar on Unsplash

Ethena Extends USDe Basis Trade Into Equity Perpetuals Through Binance Partnership

September 27, 2026
Photo by Shubham Dhage on Unsplash

US Spot Bitcoin ETFs Pull in $190.7 Million as BlackRock’s IBIT Leads a Positive Day

September 26, 2026 - Updated on September 27, 2026
Photo by İsmail Enes Ayhan on Unsplash

MARA Holdings Posts $100 Million Deposit as It Amends Texas Bitcoin Mining Site Deal

September 26, 2026 - Updated on September 27, 2026
Bitwise CIO Says Crypto Is Underpriced as Bitwise Sells Exposure to Tokens He Cites

Bitwise’s NEAR ETF Clears NYSE Arca Listing Step With SEC Form 8-A Filing

September 26, 2026 - Updated on September 27, 2026

Cryip focuses on crypto research and on-chain analysis, supported by coverage of markets, regulation, security events, and blockchain ecosystems.

Recent Posts

  • Bitget CEO Says Spoofed Backend Data, Not Stolen Keys, Triggered the $351.6 Million Hack
  • Blockchain Association CEO Summer Mersinger to Step Down, Founding Leader Kristin Smith Returns as Interim CEO
  • Strategy Proposes Daily Dividend Accrual for Its Four Preferred Stock Classes

Categories

  • AI News
  • Data & Dashboards
  • DeFi Basics
  • Investing Basics
  • Market & Price
  • Market Updates
  • On-Chain Analysis
  • OpSec
  • Policy & Regulation
  • Post Mortems
  • Press Release
  • Reports
  • Research & Analysis
  • Scams & Fraud
  • Security & Hacks
  • Stablecoins
  • Tokenomics
  • Uncategorized
  • VC & Funding
  • Wallets & Custody

Company

  • About Us
  • Contact Us
  • Editorial Standards & Integrity
  • Our Team
  • Privacy Policy
  • Review Methodology
  • Terms and Conditions
  • Trust, Disclosures & Independence

© 2026 Cryip - Research-Driven Crypto Analysis & News by Hashlays.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Home
  • Crypto News Today
  • Research & Analysis
  • Learn Crypto

© 2026 Cryip - Research-Driven Crypto Analysis & News by Hashlays.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.