Radicle disclosed two critical protocol-level flaws in radicle-node that can expose private repository traffic and allow attackers to impersonate allow-listed nodes. Although peers establish a Noise XK handshake, the daemon reportedly discards the resulting cipher state and sends later protocol traffic—including Git object packs—over raw TCP in cleartext, enabling on-path interception of private repository contents and Node IDs.
An attacker who captures a Node ID can reportedly spoof an approved peer and retrieve private repositories from seed nodes. Radicle advised operators to stop using clearnet connectivity for private repositories, rotate potentially exposed credentials and secrets, and use authenticated overlay connectivity. A permanent remediation requires a major backward-incompatible move to the Iroh networking stack, which uses QUIC/TLS.

See affected versions and whether adversaries are exploiting it.
1 event from the most recent confirmed update back to the earliest known activity.
Radicle disclosed two critical wire-protocol vulnerabilities affecting radicle-node: post-handshake traffic, including private Git object packs, can be transmitted in cleartext, and an authentication flaw can enable spoofing of allow-listed Node IDs to retrieve private repositories from seed nodes. The disclosure advised affected users to halt clearnet private-repository operations, rotate exposed secrets, and use authenticated overlay connectivity while Radicle plans a backward-incompatible migration to Iroh-based QUIC/TLS networking.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
3 references tracked. Mallory keeps watching after this page renders.
infoq.com
Open sourceradicle.dev
Open sourcemaninak.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.