Shielded Labs has proposed a new Zcash network upgrade that would allow anyone to verify the privacy coin’s supply has not been secretly inflated. The proposalShielded Labs has proposed a new Zcash network upgrade that would allow anyone to verify the privacy coin’s supply has not been secretly inflated. The proposal

Shielded Labs Proposes Zcash Upgrade to Verify Supply After Bug

For feedback or concerns regarding this content, please contact us at [email protected]

Shielded Labs has proposed a new Zcash network upgrade that would allow anyone to verify the privacy coin’s supply has not been secretly inflated. The proposal follows the disclosure of a recently patched bug in the network’s main shielded pool, which could have allowed undetectable counterfeiting of $ZEC.

Shielded Labs, a nonprofit that funds Zcash development, said in a blog post that the vulnerability lay undiscovered in the Orchard pool from its May 2022 launch until engineers closed it this week. Zcash is roughly the 11th-largest cryptocurrency by market value. According to CoinGecko data, $ZEC has reversed the week’s gains, down 16% in the past seven days and plunging 25% in the past 24 hours as news of the bug emerged.

Orchard, Zcash’s newest and largest shielded pool, holds more than 4 million $ZEC. That is the bulk of the roughly 30% of supply that sits in private pools, according to shielded-supply trackers. The episode highlights a tradeoff at the heart of privacy coins: the same cryptography that hides balances also makes it impossible to prove from the chain alone whether a bug was abused. Shielded Labs said there is no way to cryptographically determine whether anyone exploited the flaw before the fix, though it judged prior exploitation unlikely.

How the bug was found

Independent security researcher Taylor Hornby found the flaw on May 29 during an audit Shielded Labs commissioned. He disclosed it that evening to engineers at the Zcash Open Development Lab (ZODL), the group that maintains the protocol. Shielded Labs said Hornby used Anthropic’s Opus 4.8 model, released May 28, alongside a custom AI tool. He wrote a working exploit that generated unlimited counterfeit $ZEC in a local test environment. Run on mainnet, Shielded Labs said, the same tool would have produced unlimited, undetectable counterfeit $ZEC.

The issue was a soundness bug, meaning the network could be made to accept a transaction it should have rejected. It stemmed from an under-constrained part of the Orchard circuit that let an attacker pass false inputs through an elliptic-curve check and still have the check pass. Shielded Labs described the impact as the ability to create unlimited, undetectable counterfeit $ZEC within Orchard.

Total supply stays intact

The Zcash Foundation, which builds the Zebra software used to run the network, described the risk in a post published Wednesday. It said exploitation could have allowed double-spending within Orchard but could not have inflated the total $ZEC supply, which is capped by the network’s “turnstile” accounting. The turnstile limits how much value can leave each pool to the amount that entered it. The Foundation said the turnstile confirmed the total supply stayed intact and that there was no evidence of unauthorized value creation. Both groups agree the bug was caught before any known exploitation and that user privacy was not affected.

How the fix rolled out

After private coordination with miners and exchanges that began May 31, engineers shipped an emergency soft fork that disabled Orchard transactions. It was activated on June 2 at block 3,363,426. A hard-fork upgrade called NU6.2 then re-enabled Orchard with a corrected circuit on June 3 at block 3,364,600, the Foundation said. It called the response the second security-driven upgrade in Zcash’s history since the network launched in 2016. The fix is tracked in a Zebra security advisory. Orchard transfers were frozen during the window while transparent and Sapling transactions kept running. Some block explorers briefly showed no new blocks afterward, fueling confusion that the network had gone down.

The proposed upgrade

Shielded Labs said NU6.2 closes the bug but does not prove the Orchard supply was never tampered with. Its proposal would deploy a new shielded pool and route all coins leaving Orchard through turnstile accounting, letting anyone verify that no counterfeit $ZEC exists. Like any major upgrade, it would need community support and would have to pass Zcash’s governance process before activation. Shielded Labs said it plans to publish the details next week. The coordinated response has drawn criticism. Some developers and commentators argued the confidential fix, which relied on a small group of engineers, miners and exchanges, showed how centralized the network’s emergency response can be. They also questioned whether shielded pools can ever be fully audited.

The post Shielded Labs Proposes Zcash Upgrade to Verify Supply After Bug appeared first on TheCryptoUpdates.

Market Opportunity
Notcoin Logo
Notcoin Price(NOT)
$0.0005161
$0.0005161$0.0005161
+18.39%
USD
Notcoin (NOT) Live Price Chart

Predict & Trade to Win Rewards

Predict & Trade to Win RewardsPredict & Trade to Win Rewards

Guaranteed rewards with $500,000 prize pool

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

How Stellar Is Quietly Becoming a Hub for Real-World Asset Tokenization

How Stellar Is Quietly Becoming a Hub for Real-World Asset Tokenization

TLDR: Stellar now holds over $2B in tokenized RWAs as payment volume climbs 72% year-over-year to $5.5B.  Circle’s CCTP brings native USDC to Stellar, enabling
Share
Blockonomi2026/06/13 16:10
Kraken Enables USDCx Deposits And Withdrawals On Canton Network

Kraken Enables USDCx Deposits And Withdrawals On Canton Network

Kraken has added support for USDCx on Canton Network, expanding stablecoin settlement access for a privacy-enabled institutional blockchain.
Share
NewsBTC2026/06/13 16:00
How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings

How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings

The post How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings appeared on BitcoinEthereumNews.com. contributor Posted: September 17, 2025 As digital assets continue to reshape global finance, cloud mining has become one of the most effective ways for investors to generate stable passive income. Addressing the growing demand for simplicity, security, and profitability, IeByte has officially upgraded its fully automated cloud mining platform, empowering both beginners and experienced investors to earn Bitcoin, Dogecoin, and other mainstream cryptocurrencies without the need for hardware or technical expertise. Why cloud mining in 2025? Traditional crypto mining requires expensive hardware, high electricity costs, and constant maintenance. In 2025, with blockchain networks becoming more competitive, these barriers have grown even higher. Cloud mining solves this by allowing users to lease professional mining power remotely, eliminating the upfront costs and complexity. IeByte stands at the forefront of this transformation, offering investors a transparent and seamless path to daily earnings. IeByte’s upgraded auto-cloud mining platform With its latest upgrade, IeByte introduces: Full Automation: Mining contracts can be activated in just one click, with all processes handled by IeByte’s servers. Enhanced Security: Bank-grade encryption, cold wallets, and real-time monitoring protect every transaction. Scalable Options: From starter packages to high-level investment contracts, investors can choose the plan that matches their goals. Global Reach: Already trusted by users in over 100 countries. Mining contracts for 2025 IeByte offers a wide range of contracts tailored for every investor level. From entry-level plans with daily returns to premium high-yield packages, the platform ensures maximum accessibility. Contract Type Duration Price Daily Reward Total Earnings (Principal + Profit) Starter Contract 1 Day $200 $6 $200 + $6 + $10 bonus Bronze Basic Contract 2 Days $500 $13.5 $500 + $27 Bronze Basic Contract 3 Days $1,200 $36 $1,200 + $108 Silver Advanced Contract 1 Day $5,000 $175 $5,000 + $175 Silver Advanced Contract 2 Days $8,000 $320 $8,000 + $640 Silver…
Share
BitcoinEthereumNews2025/09/17 23:48

RealStocks Now Live

RealStocks Now LiveRealStocks Now Live

Trade real U.S. stock via regulated brokerage