Ethereum Classic: A fake Core-Geth security update once induced some mining pools to switch
Recently, Ethereum Classic experienced a social engineering incident involving the Core-Geth client. The unreviewed ethereumclassic/core-geth v1.13.0 was released on September 14 and was promoted as a security update. A few mining pool nodes temporarily switched to this version but have since reverted to the long-term maintained etclabscore/core-geth v1.12.23.
This unreviewed version modified key logic such as chain selection and node discovery, posing a potential risk of network split; the incident did not result in block loss, chain reorganization, fund loss, or service interruption.
Related tags






