Ironwood Protocol launches in 10 days with mathematical proof preventing undetectable counterfeiting bugs in Zcash.
Tech & Launches ·
The Ironwood Protocol launches in 10 days as part of Zcash's NU6.3 network upgrade, introducing a new shielded pool designed to address a counterfeiting vulnerability discovered in the existing Orchard pool. The upgrade pursues three distinct aims: establish a shielded pool with cryptographically sound supply guarantees, provide verifiable evidence that no counterfeiting occurred in Orchard, and restore a definable bound on ZEC's circulating supply.
Ironwood's core innovation is a formal mathematical proof eliminating the possibility of undetectable counterfeiting bugs. Using proof assistants like Lean, the project's contributors—including members of Project Tachyon and advisors from zkSecurity—analyzed the protocol's mathematics to eliminate vulnerabilities inherent to the system's design. After activation, Orchard transitions to withdraw-only status; shielded payments route automatically to Ironwood instead. As users migrate funds from Orchard through the protocol's turnstile mechanism, the upper bound on any potential historical counterfeiting shrinks, probabilistically ruling out exploitation over time.
The Orchard vulnerability, responsibly disclosed previously, posed a theoretical risk of undetectable coin creation with no confirmed evidence of exploitation. Ironwood marks the first formally verified shielded pool in Zcash and the most audited to date. The protocol retains Orchard's underlying cryptography but applies patches and minor modifications to close the identified gap.