MobbleOpen in Mobble ⇢
Business · Cryptocurrency · published 2026-10-11 · via Cryptonomist

XRP Ledger Flaw Could Have Minted 18.45 Trillion Tokens, Patch Released

Image via Cryptonomist
Image via Cryptonomist

A security flaw found in the XRP Ledger on September 21, 2026, could have let an attacker create 18.45 trillion XRP in one transaction, more than 184 times the token's 100 billion supply. Developers patched the decade-old issue on September 25 and found no signs that it was exploited on public networks. Veria AI and researcher Cayden Liao were credited with the discovery, while a RippleX engineer warned that AI makes concealed security patches easier to reverse engineer.

Expanded Detail

The bug traced to code for calculating payments that was added in 2015. Veria AI spotted it on September 21, 2026, and it was submitted through the XRP Ledger bug bounty program the next day; researcher Cayden Liao was also credited.

The issue was a numeric overflow inside the payment-processing component when it handled many trading offers on the built-in exchange. An attacker could use hundreds of accounts offering tiny amounts of another token for large XRP payments, pushing the combined total past 64-bit limits. The system would then undercalculate, letting sellers receive full XRP while the buyer paid almost nothing. A patch, xrpld 3.4.1, arrived September 25 without public source code.

Context

XRP holders, exchanges, and developers may feel the effects most. Had the flaw been exploited, markets could have faced sudden supply uncertainty, and exchanges might have struggled to distinguish legitimate tokens from improperly created ones. The emergency binary-only patch could also prompt open-source contributors to question transparency, while the AI warning may push blockchain teams to rethink how quickly hidden fixes can be reverse-engineered. These are possibilities, not observed outcomes, since no public-network exploitation was found.

Expanded detail and Context are AI-generated analysis; the linked article remains the authoritative source.
Read the full article at Cryptonomist →
Related stories
Critical XRP Ledger Flaw Had Potential to Generate Trillions of XRP · Cryptocurrency
RippleX Patches Critical XRP Ledger Bug That Risked Supply Cap Breach · Cryptocurrency
XRP Ledger Deploys Emergency Fix for Critical Payment Engine Vulnerability · Cryptocurrency
XRP Ledger Bug Nearly Allowed Unauthorized Token Creation · Cryptocurrency
This summary is Al-enhanced to contain extended analysis and broader social context. The original is {NAME); the linked article is the authoritative source. Original headline: “An XRP Ledger security bug could have created 18.45 trillion XRP.” Browse more stories.