Radicle 네트워크 프로토콜의 두 가지 심각한 취약점이 공개됐다.
Radicle의 노드 간 통신에서 평문 전송과 피어 인증 결함이 발견되었으며, 이는 모든 출시된 버전에 영향을 미친다. 공격자는 네트워크 경로에서 전송 데이터를 읽고, Node ID를 사칭하여 공격할 수 있는 가능성이 있다. 이러한 취약점은 사용자에게 큰 위험을 초래할 수 있다.
Two critical vulnerabilities in Radicle network protocol have been disclosed.
The communication between Radicle nodes has revealed two serious vulnerabilities: plaintext transmission and peer authentication flaws. All released versions are affected, allowing attackers on the network path to read transmitted data and impersonate a Node ID. These vulnerabilities pose significant risks to users.