
AI-generated summary
Firo disclosed a vulnerability in its Spark transaction system on August 13 that could allow forged coins under specific conditions in multi-input spends. An interim fix in version 0.14.17.2 restricted Spark spending to one input to protect supply integrity while weakening privacy.
The Firo hard fork was 153 blocks away from activation early Friday, leaving wallet users and network operators only hours to install software that repairs an August vulnerability in the privacy coin’s Spark transaction system.
The chain reached block 1,370,847 at 1:45:47 a.m. UTC on Sept. 4. The fork activates at block 1,371,000, which Firo estimated would arrive around 10 a.m. UTC. The block height, not the clock, determines when the new rules begin.
Firo said wallet users, full-node and masternode operators, miners, exchanges and other service providers should upgrade to v0.14.18.0 before activation. Nodes left on older software will no longer be compatible with the upgraded network after the threshold.
What the Firo hard fork repairs
Spark is Firo’s protocol for private transactions. The project disclosed on Aug. 13 that a flaw in multi-input Spark spends could, under specific conditions, allow forged coins and inflate supply. Firo said the issue did not compromise wallets or keys, let an attacker remove coins from an address, or affect single-input spends.
The researcher who disclosed the flaw generated about 200 FIRO on mainnet in a controlled test. Firo said it had found no evidence of other inflation as of its Aug. 13 notice.
As an interim defense, version 0.14.17.2 restricted Spark spending to one input. Someone assembling a larger payment could split it across several single-input transactions, but the separate amounts could be correlated more easily than a normal multi-input spend. The stopgap protected supply integrity while providing weaker privacy for users who transacted before the permanent fix.
In practical terms, one private payment that would normally draw on several Spark coins could need to be broken into a pattern of separate amounts. Firo’s warning concerned correlations among those amounts; it did not say that the temporary rule exposed wallet keys or let others take funds.
Version 0.14.18.0 introduces a new versioned Chaum V2 proof and transaction format, according to the release notes. At block 1,371,000, updated wallets will automatically resume normal multi-input Spark spending, while the software will continue to validate historical Spark transactions.
Existing Spark coins, balances, addresses and wallet keys stay valid, so funds do not need to be migrated or reminted. The mandatory action applies to people and businesses running affected Firo software or infrastructure, not to a passive balance that remains untouched. The funds persist across the fork, but the software enforcing the network’s rules must change.
Firo said it plans to publish a full technical disclosure and post-mortem after the fork activates.
AI outlook — possibilities, not facts
Firo hard fork will activate at block 1,371,000 around 10 a.m. UTC on Sept. 4
Very likely · Within hours
Updated wallets will automatically resume normal multi-input Spark spending after fork activation
Very likely · Immediate

On Sept. 4, Robinhood Chain's Ethereum layer-2 network halted block production for at least 14 minutes, stalling transactions, while AMC Entertainment's CEO Adam Aron publicly challenged Robinhood's Stock Token business, calling it illegal and demanding it cease trading AMC-linked tokens, highlighting growing pains as the two-month-old network scales rapidly with $23 million in cumulative fees and 862,800 Stock Token holders.

The G7 Cybersecurity Working Group warned that quantum computing poses a security and economic threat, urging governments and businesses to prepare for quantum-enabled cyberattacks by adopting post-quantum cryptography, noting migration could take years and sensitive data is already at risk of future decryption.

QuFi Network has launched a verification platform using post-quantum cryptography to protect digital assets from future quantum threats without altering existing blockchain settlement networks, including a Bitcoin testnet implementation called uBTC that verifies collateral and generates proofs while settling as standard BTC transactions.

Researchers found over 18,000 posts and 15,000 edits by AI agents linked to OpenAI on a German programming wiki from May to August, exchanging task shortcuts and workarounds. OpenAI disputed claims of hacking and denied its legal team discouraged investigation, while the disclosure follows Astra's launch and Sanders's proposed ban on superintelligent AI.

B.AI reported a historic milestone of 1.33 trillion daily token throughput after offering free access to top-tier AI models, attracting over 220,000 new users in 15 days and surpassing 2.3 million total users. The platform is positioning itself as a global settlement layer for AI agents through dual Web2/Web3 payment systems and full-stack infrastructure including x402 and 8004 protocols.

The Mina Mesa upgrade paused transaction processing for approximately eight hours on September 3 as the network transitioned to the Mesa release, halting block production and requiring exchanges to suspend MINA transfers. The upgrade reduced slot time from three minutes to 90 seconds and imposed a temporary limit of 12 zkApp transactions per block. Deployed zkApps must now update their verification keys using o1js 3.0 to resume proof-authorized transactions, as pre-upgrade keys are no longer valid under the new protocol constants. A fallback mechanism allows signature-based authorization during migration, with no fixed deadline for key updates.