Crypto Times Logo Black
Google News Follow Banner
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • DeFi News
    • Blockchain News
    • Industry
  • Exclusive
  • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Podcasts
  • More
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
The Crypto TimesThe Crypto Times
  • All News
  • Market
  • Bitcoin
  • Ethereum
  • Altcoins
  • Regulations & Policies
  • Blockchain
  • DeFi
  • Industry
  • Exclusive
  • Opinion
Search
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • Blockchain
    • DeFi
    • Industry
    • Exclusive
    • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Quick Links
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • AI Policy
    • Sponsored & Advertorial Policy
  • Podcasts
Follow US
© 2026 By Crypto Times. All Rights Reserved.
Blockchain News

Solana Criticized After Patching Bug Behind Closed Doors

The rollout began immediately, and by April 18, more than 70% of validators had upgraded to the new version of the software.

Written By Dishita Malvania Dishita Malvania
Published May 5, 2025 3:26 PM·Updated 1 year ago
Make The Crypto Times preferred on GoogleGoogle
Share
Solana Criticized After Patching Bug Behind Closed Doors

In mid-April, Solana narrowly avoided what could’ve been a massive crisis — and it happened so quietly, most people didn’t even notice.

On April 16, a major vulnerability was reported to Anza, a development team within the Solana ecosystem. The issue was buried inside the ZK-ELGamal Proof program, which powers confidential transfers for Token-2022 — a token standard introduced to enable privacy features like hidden balances and amounts. 

On April 16, 2025 a security vulnerability was reported to the @anza_xyz Github Security Advisory. The incident required patching the @solana validator software before the code could be released publicly. There is no known exploit of the issue. Funds are safe. Details below 👇

— Tim Garcia (@TimGarcia0) May 2, 2025

The bug was serious: if exploited, an attacker could’ve minted unlimited tokens or drained funds from any account using this standard.

Luckily, Token-2022 isn’t widely adopted yet. Its total market cap across all tokens using the standard was just around $16.5 million at the time. Still, the flaw cracked open a major hole in Solana’s cryptographic walls.

So, what went down? Turns out, Solana’s zero-knowledge proof system missed a few critical hash checks. That tiny gap? It was big enough for someone to sneak in fake proofs that looked completely legit — no red flags, no alarms. Basically, the system had no clue it was being fooled.

As soon as this came to light, the Solana teams didn’t waste a second. Anza got on a call with Jito and Jump’s Firedancer crew, and together, they rolled out a fix before things could spiral. 

During the process, they discovered another related issue and patched that too. The rollout began immediately, and by April 18, more than 70% of validators had upgraded to the new version of the software.

Importantly, all of this was done under wraps. Solana didn’t announce the bug or its severity until April 23 — nearly a week after the fix was deployed. This wasn’t accidental. The Foundation said the delay was intentional, aimed at preventing any potential exploits while the network was still updating.

The quiet response has sparked debate. Some critics argue it’s yet another example of how centralized Solana really is, with decisions made behind closed doors. Others see it as a responsible move — even Ethereum’s core developers often patch vulnerabilities privately before going public.

Regardless of which side you’re on, the good news is that no funds were lost, no tokens were fraudulently minted, and the network remains stable. But it does raise some eyebrows about transparency and how such major bugs are handled in public blockchains.

In the end, Solana got lucky. It caught the problem before anyone could use it maliciously. Still, the incident is a stark reminder that even top-tier chains need constant security audits — and sometimes, silence is part of the defense strategy.

Also Read: Vitalik Buterin Proposes Bold 5-Year Plan to Simplify Ethereum

Disclaimer: The information researched and reported by The Crypto Times is for informational purposes only and is not a substitute for professional financial advice. Investing in crypto assets involves significant risk due to market volatility. Always Do Your Own Research (DYOR) and consult with a qualified Financial Advisor before making any investment decisions.

Follow The Crypto Times on Google News to Stay Updated!      Google News
Google News Banner

TAGGED:Solana (SOL)
Share This Article
Whatsapp Whatsapp LinkedIn Telegram Copy Link

Latest News

Demo Live
Prediction Market Fight May Reach Supreme Court CFTC Chair Selig
Prediction Market Fight May Reach Supreme Court: CFTC Chair Selig
Anchorage Bets Big on AI Economy With New Banking Model
Anchorage Bets Big on AI Economy With New Banking Model
Tapnob Rolls Out Crypto-to-Naira Payment Platform in Nigeria
Tapnob Rolls Out Crypto-to-Naira Payment Platform in Nigeria
Clarity Act on Fast Track Senator Moreno Sets July 4 Deadline
Clarity Act on Fast Track? Senator Moreno Sets July 4 Deadline

Find Us on Socials

You may also like

Solana and Google Cloud Roll Out Pay.sh for AI API Access

Solana and Google Cloud Roll Out Pay.sh for AI API Access

MoonPay Eyes Full-Stack Crypto With DFlow Acquisition

MoonPay Eyes Full-Stack Crypto With DFlow Acquisition

Solana Co-Founder Urges Builders to Rethink Crypto for Mainstream

Solana Co-Founder Urges Builders to Rethink Crypto for Mainstream

a16z Unveils $2.2B Crypto Fund 5 to Back Blockchain Startups

a16z Unveils $2.2B Crypto Fund 5 to Back Blockchain Startups

The Crypto Times Logo PNG

Providing real-time, accurate Crypto reporting. Your trusted source for Crypto News and Research.

Stay Updated

All News
Exclusive
Opinions
Learn
Podcasts

Company

About Us
Our Authors
Editorial Policy
AI Policy
Advertorial Policy

Get In Touch

Contact Us
Career

Find Us on Socials

X-twitter Linkedin Telegram Youtube Instagram

© 2026 The Crypto Times | A BITROCK TECHNOLOGIES L.L.C. Company.

DMCA.com Protection Status
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Cookie policy
Do Not Sell or Share My Personal Information