XRPL Develops XLS-86 Firewall to Combat Scams and Protect Users

The XRP community is working on an "XRP firewall," a set of tools and checks designed to block scams on the XRPL. A significant update, the XLS-86 Firewall, is under development and promises to enhance security significantly.

  • The XLS-86 Firewall aims to safeguard users against losing XRP, tokens, and NFTs by acting as a defense mechanism once activated.
  • The new feature could provide stronger protection against common traps that have historically resulted in substantial financial losses for the community.
  • Recent security concerns arose after discovering malicious packages in the xrpl.js library on NPM, highlighting the need for improved protections.

Current Tools and Reporting Systems

  • Users can report scams and receive guidance on suspicious activity through platforms like XRPL.org.
  • Forensics platforms such as XRplorer maintain databases of fraudulent addresses, which are used by wallets and exchanges to alert users or block transactions.

Software Vulnerability Update

  • A significant vulnerability was addressed when compromised versions of xrpl.js were removed from NPM, with developers urging users to update their software.

Functionality of a Practical Firewall

  • A comprehensive firewall would integrate features like auto-flagging fraudulent addresses, providing warnings before transactions, and sharing scammer lists among exchanges and node operators.
  • Machine learning could be utilized to detect phishing patterns, while human teams would verify complex cases.