The developers of privacy-focused cryptocurrency Monero (XMR) have disclosed a “rather significant” bug that could impact the privacy of users’ transactions.
“If users spend funds immediately following the lock time in the first 2 blocks allowable by consensus rules (~20 minutes after receiving funds), then there is a good probability that the output can be identified as the true spend,” Monero developers tweeted today.
A rather significant bug has been spotted in Monero’s decoy selection algorithm that may impact your transaction’s privacy. Please read this whole thread carefully. Thanks @justinberman95 for investigating this bug.
1/6
— Monero || #xmr (@monero) July 27, 2021
The bug, initially investigated by software developer Justin Berman, was discovered in Monero’s decoy selection algorithm and results in “next to 0 chance of selecting extremely recent outputs as decoys.”
Essentially, this means that if a user spends their XMR tokens within roughly 20 minute
Źródło: https://decrypt.co/76938/monero-developers-disclose-significant-bug-privacy-algorithm