Post
Topic
Board Exchanges
Re: [ANN] KRAKEN.COM - Exchange Now Open with USD, EUR, BTC, LTC, XRP, NMC, XDG
by
Dargo
on 12/10/2014, 16:44:05 UTC
Ripple & Stellar Traders:

We have taken our Ripple and Stellar gateways offline pending further investigation of the "partial payments" vulnerability. We will bring the gateways back online as soon as possible, but not before we are absolutely certain that we aren't affected by this vulnerability.

https://medium.com/@abrkn/partial-payments-ripple-stellar-vulnerability-in-the-wild-29aaefd8a7ac
Stellar has disabled this functionality alltogether already (forcing you to pay fees when reimbursing someone), on Ripple you hopefully already check flags before crediting accounts. Better safe than sorry though, this is only a "vulnerability" if you didn't read the documentation, otherwise it's a useful feature.

The documentation on the partial payment feature is very poor. Even the Stellar Development Foundation only learned of the issue this past week. Even though there was an update to the Stellar code base to remove the feature, we are nonetheless taking the Stellar gateway offline until we can fully evaluate everything ourselves. Overly cautious perhaps, but we'd rather be overly cautious in a situation like this.