BTCPay Server warned Friday that attackers are exploiting a critical vulnerability that could lead to stolen funds. Administrators must immediately install version 2.4.2 or shut down their servers to prevent unauthorized access. The flaw affects macaroon credentials and hot wallet funds. The project did not disclose how the vulnerability works, when the attacks began, or how much funds were potentially stolen. The project also did not confirm whether AI was involved in finding this vulnerability.
Source: Read the original article

