Zcash activated the Ironwood upgrade at block 3,428,143, retiring the Orchard shielded pool and beginning the migration of users into a new privacy-preserving system. The upgrade represents a unified effort across the Zcash developer ecosystem following the discovery of a critical vulnerability in the previous protocol.

The Orchard shielded pool holds approximately 3.66 million ZEC, valued at roughly $1.7 billion. Every coin must be moved by its owner, as the only route out of Orchard is a turnstile that caps total withdrawals at the amount verifiably deposited. This mechanism ensures that the network knows how much ZEC entered Orchard and will not release more than that amount, leaving any potential counterfeit coins stuck within the old pool.

Vulnerability and Response

On May 29, Shielded Labs researcher Taylor Hornby discovered that Orchard's proof circuit contained a bug that could allow an attacker to mint counterfeit ZEC without leaving an onchain trace. Hornby used Claude Opus 4.8 to identify the flaw, which had been live since Orchard launched in May 2022. Developers issued an emergency patch in June, but the fix could not account for the four years the vulnerability remained open.

A CoinDesk Research report found no evidence of exploitation, noting that Orchard's balance grew steadily during the period. Zcash developers also confirmed they found no evidence that the flaw had been exploited. However, the uncertainty sparked a sharp selloff, with Zcash falling 38% before news of the proposed Ironwood upgrade led to a rebound, recovering roughly $2.5 billion in market value in early June.

Critics, including privacy infrastructure provider Nym, argue that the migration creates a temporary privacy risk. Because every Zcash holder must move funds into the new shielded pool, users who migrate without additional protections could expose information linking their IP address to their wallet balance. Zcash developers advise users not to rush the migration and recommend using privacy tools such as Tor or NymVPN.

Formal Verification and Market Impact

Ironwood’s proof circuit underwent formal verification to produce a mathematical proof written in the Lean programming language. Sources disagree on the status of this verification: while early reports described the process as ongoing, later communications from the Zcash team indicate that three teams of researchers and cryptographers completed more than 2,700 machine-checked theorems designed to rule out undetectable counterfeiting bugs. The proof establishes a security property known as balance integrity, ensuring the shielded pool cannot pay out more value than has publicly entered it, though it does not cover Ironwood’s privacy guarantees.

The upgrade launched with quantum-resistant transaction records specified under ZIP 2005. As of press time, 1,500 ZEC have already moved into the new pool. The number to watch is how fast the remaining 3.66 million ZEC moves, as migration is voluntary and user-driven. As funds leave Orchard, the process could provide growing evidence about whether the old pool was exploited.

ZEC traded near $463 ahead of the switch, down 8% on the day and 15% over the week, though it remains up roughly tenfold over the past year. The token currently trades for roughly $464, just below an $8 billion market capitalization. Zcash founder Zooko Wilcox proposed Ironwood to restore confidence in Zcash’s supply integrity after the critical vulnerability raised questions about the network's security.