How XRPL validators quietly killed a silent exploit that could have drained victim accounts through transaction fees alone

RippleX expects the next version of the XRP Ledger's core server software, xrpld 3.3.0, as soon as next week. The release would put rewritten Batch and Permission Delegation amendments back into the validator process after authorization flaws led operators to block their predecessors before mainnet activation.
The rollout remains at the prerelease stage. xrpld 3.2.1 was still the latest stable release on Aug. 1, while official beta and release-candidate tags for 3.3.0 were public. A mainnet majority countdown had yet to begin for either replacement amendment.
RippleX product head Jazzi Cooper listed five proposed XRP Ledger features for 3.3.0: Confidential MPT, Batch, Permission Delegation, Sponsored Fees and Reserves, and Dynamic MPT. Cooper said all five would still require validator approval before activation.
Why validators stopped the original features
The original Batch amendment contained an authorization flaw that could have allowed an attacker to execute inner transactions for arbitrary victim accounts without their private keys, including unauthorized payments and ledger changes.
… Continue reading the full article at the original source below.



