AI 전용 감사가 Lending Protocol V1을 조사함에 따라 10, 000줄 이상의 휴면 브리지 코드가 사라질 수 있습니다. 1.
Ripple은 기본 대출 확대를 준비하면서 XRP Ledger(XRPL)의 공격 표면을 축소하기 위해 움직이고 있습니다.
회사는 Lending Protocol V1 동안 사용되지 않은 XChain Bridge 코드 10, 000줄 이상을 제거할 것을 권장했습니다. 1은 Sherlock의 감사 엔진을 통해 AI 전용 보안 검토를 거칩니다.
암호화폐 플랫폼이 방어력을 강화하라는 새로운 압력에 직면하면서 이와 유사한 노력이 이루어졌습니다. $1 이상. 2026년 상반기에 344건의 보안 사고로 310억 달러의 손실이 발생했으며 코드 취약점은 업계에서 가장 일반적인 공격 범주로 남아 있습니다.
Ripple이 XRPL EVM 사이드체인을 위해 Axelar로 전환하고 기본 브리지에 대한 더 광범위한 수요가 실현되지 못한 후 XChain Bridge(XLS-38)를 약화시키려는 원래 사례는 실현되지 않았습니다.
XLS-38은 트랜잭션을 관찰하고 네트워크 전반의 활동을 증명하는 감시 서버를 통해 XRPL과 연결된 사이드체인 간에 자산을 이동할 수 있도록 설계되었습니다. 이 아키텍처는 비공개, 허가형 및 실험적 사이드체인을 지원하는 동시에 XRPL 메인넷과 EVM 사이드체인 간의 브리지를 제공하도록 고안되었습니다.
Ripple은 보안, 사용자 경험, 분산화 및 브리지 유지에 대한 운영 요구 사항을 평가한 후 궁극적으로 EVM 사이드체인으로 Axelar를 선택했습니다.
회사는 XLS-38 감시 모델이 교량으로 보호되는 가치가 증가함에 따라 관리하기가 더 어려워지는 절충안을 가지고 있다고 말했습니다. 증인 세트를 확장하면 분산화가 개선될 수 있지만 조정 및 거버넌스 복잡성이 추가되는 반면, 소규모 그룹은 운영자 간에 더 많은 신뢰를 집중할 수 있습니다.
Ripple은 2024년 6월에 Axelar를 사용하기로 결정했다고 발표했지만 XLS-38을 유효성 검사기 투표에 사용할 수 있도록 유지했으며 개발자에게 수정이 특별히 필요한 프라이빗 사이드체인에 대한 수요를 입증할 수 있도록 대략 12~15개월을 제공했습니다.
그러나 그 수요는 리플이 기대했던 수준에 도달하지 못했습니다.
그 결과 주요 사용 사례가 다른 곳에서 처리되었더라도 개발자가 계속 유지 관리하고 검토해야 하는 상당한 비활성 코드 블록이 생성되었습니다.
Ripple은 XChain Bridge 및 관련 FixXChain 보상 반올림 수정안을 철회하면 결국 xrpld에서 10, 000개 이상의 라인이 제거될 것으로 추정합니다.
원문 제목: Ripple moves to shrink XRP Ledger attack surface as AI audit tests lending push
More than 10,000 lines of dormant bridge code could disappear as an AI-only audit probes Lending Protocol V1.1.
Rippleis moving to shrink theXRP Ledger’s (XRPL)attack surface as it prepares to expand native lending.
The company has recommended removing more than 10,000 lines of unused XChainBridge code while Lending Protocol V1.1 undergoes an AI-only security review through Sherlock’s Audit Engine.
The parallel efforts come as crypto platforms face renewed pressure to strengthen their defenses. More than $1.31 billion was lost across 344 security incidents in the first half of 2026, with code vulnerabilities remaining the industry’s most common attack category.
The original case for keeping XChainBridge (XLS-38) weakened after Ripple turned to Axelar for theXRPL EVM Sidechainand broader demand for the native bridge failed to materialize.
XLS-38was designed to let assets move between XRPL and connected sidechains through witness servers that observe transactions and attest to activity across networks. The architecture was intended to support private, permissioned, and experimental sidechains, while also providing a bridge betweenXRPL mainnet and the EVM Sidechain.
Ripple ultimately chose Axelar for the EVM Sidechain after evaluating security, user experience, decentralization, and the operational demands of maintaining a bridge.
The company said the XLS-38 witness model carried trade-offs that became harder to manage as the value protected by a bridge increased. Expanding the witness set could improve decentralization but add coordination and governance complexity, while a smaller group would concentrate more trust among operators.
Ripple announced its decision to use Axelar in June 2024 but kept XLS-38 available for a validator vote and gave developers roughly 12 to 15 months to demonstrate demand for private sidechains that specifically required the amendment.
However, that demand failed to reach the level Ripple expected.
The result is a substantial block of inactive code that developers must continue maintaining and reviewing even though its principal use case has been handled elsewhere.
Ripple estimates that withdrawing XChainBridge and the relatedfixXChainRewardRoundingamendment would eventually remove more than 10,000 lines fromxrpld.