Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
No Result
View All Result

Newly discovered Bitcoin wallet loophole let hackers steal $900K — SlowMist

CryptoExpert by CryptoExpert
August 10, 2023
in Bitcoin News
0
Newly discovered Bitcoin wallet loophole let hackers steal $900K — SlowMist
  • Facebook
  • Twitter
  • Pinterest


You might also like

The Big Banks Are Very Bullish On Bitcoin And Here Are Their 6-Figure Predictions

Litecoin X Account Tells Critics to ‘Stay on the Shallow End’ After 13-Block Reorg

Bitcoin Reclaims Key MVRV Support At $73.7K — What Comes Next?

A newly discovered vulnerability in the Libbitcoin Explorer 3.x library has allowed over $900,000 to be stolen from Bitcoin users, according to a report from blockchain security firm SlowMist. The vulnerability can also affect users of Ethereum, Ripple, Dogecoin, Solana, Litecoin, Bitcoin Cash and Zcash who use Libbitcoin to generate accounts.

SlowMist Security Alert

Recently, #Distrust discovered a severe vulnerability affecting cryptocurrency wallets using the #Libbitcoin Explorer 3.x versions. This vulnerability allows attackers to access wallet private keys by exploiting the Mersenne Twister pseudo-random…

— SlowMist (@SlowMist_Team) August 10, 2023

Libbitcoin is a Bitcoin wallet implementation that developers and validators sometimes use to create Bitcoin (BTC) and other cryptocurrency accounts. According to its official website, it is used by “Airbitz (mobile wallet), Bitprim (developer interface), Blockchain Commons (decentralized wallet identity), Cancoin (decentralized exchange)” and other applications. SlowMist did not specify which applications that use Libbitcoin, if any, are affected by the vulnerability.

Cointelegraph reached out to the Libbitcoin Institute through email but had not received a comment at the time of publication.

SlowMist identified cybersecurity team “Distrust” as the team that originally discovered the loophole, which is called the “Milk Sad” vulnerability. It was reported to the CEV cybersecurity vulnerability database on Aug. 7.

okex

According to the post, the Libbitcoin Explorer has a faulty key generation mechanism, allowing private keys to be guessed by attackers. As a result, attackers exploited this vulnerability to steal over $900,000 worth of crypto as of Aug. 10.

SlowMist emphasized that one attack in particular siphoned away over 9.7441 BTC (approximately $278,318). The firm claims to have “blocked” the address, implying that the team has contacted exchanges to prevent the attacker from cashing out the funds. The team also stated that it will be monitoring the address in case funds are moved elsewhere.

Four members of the Distrust team, along with eight freelance security consultants who claim to have helped discover the vulnerability, have set up an informational website explaining the vulnerability. They explained that the loophole is created when users employ the “bx seed” command to generate a wallet seed. This command “uses the Mersenne Twister pseudorandom number generator (PRNG) initialized with 32 bits of system time,” which lacks sufficient randomness and therefore sometimes produces the same seed for multiple persons.

Bx seed command producing the same seed twice. Source: Milk Sad information site

The researchers claim to have discovered the vulnerability when they were contacted by a Libbitcoin user whose BTC had mysteriously gone missing on July 21. When the user reached out to other Libbitcoin users to try to determine how the BTC could have gone missing, the person found that other users were also having their BTC siphoned away.

Wallet vulnerabilities continue to pose a problem for crypto users in 2023. Over $100 million was lost in a hack of the Atomic Wallet in June, which was acknowledged by the app’s team on June 22. Cybersecurity certification platform CER released its wallet security rankings in July, noting that only six out of 45 wallet brands employ penetration testing to discover vulnerabilities.



Source link

  • Facebook
  • Twitter
  • Pinterest
Tags: BitcoinEthereum
CryptoExpert

CryptoExpert

Recommended For You

The Big Banks Are Very Bullish On Bitcoin And Here Are Their 6-Figure Predictions

by CryptoExpert
April 27, 2026
0
bitcoin banks

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Bitcoin is no longer being discussed only by crypto traders and retail bulls. Some of...

Read more

Litecoin X Account Tells Critics to ‘Stay on the Shallow End’ After 13-Block Reorg

by CryptoExpert
April 26, 2026
0
Litecoin X Account Tells Critics to 'Stay on the Shallow End' After 13-Block Reorg

Key Takeaways: Litecoin’s network suffered a 13-block reorg on April 25, 2026, due to a reported exploit of an MWEB zero-day bug, according to the team’s testimony. Github...

Read more

Bitcoin Reclaims Key MVRV Support At $73.7K — What Comes Next?

by CryptoExpert
April 26, 2026
0
Bitcoin

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Bitcoin (BTC) has staged a notable recovery in April, rebounding from around $67,000 to as...

Read more

38 Attorneys General Back Massachusetts Lawsuit Against Kalshi Over Prediction Markets

by CryptoExpert
April 25, 2026
0
38 Attorneys General Back Massachusetts Lawsuit Against Kalshi Over Prediction Markets

Key Takeaways: Coalition of 38 attorneys general supports Massachusetts lawsuit alleging Kalshi enables unlicensed sports betting activity. CFTC filing adds to the dispute as federal regulator claims exclusive...

Read more

Bitcoin Quantum Threat May Not Be as Serious as Feared, According to Analyst

by CryptoExpert
April 25, 2026
0
Bitcoin Quantum Threat May Not Be as Serious as Feared, According to Analyst

According to James Check, only 1.716 million Satoshi-era P2PK coins represent a credible target for quantum attacks. A report by on-chain analyst James Check is challenging claims...

Read more
Next Post
Digital Currency Group files motion to dismiss Gemini lawsuit, claiming it's a PR campaign

Digital Currency Group files motion to dismiss Gemini lawsuit, claiming it's a PR campaign

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Browse by Category

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

Sitemap

  • Market Cap
  • Donations
  • Trading
  • Mining
  • Contact

Legal Information

  • Privacy Policy
  • Anti-Spam Policy
  • Copyright Notice
  • DMCA Compliance
  • Social Media Disclaimer
  • Terms Of Service

Categories

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

© Copyright 2024 InvestInCryptoNews.com

No Result
View All Result
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO

© Copyright 2024 InvestInCryptoNews.com

This website is using cookies to improve the user-friendliness. You agree by using the website further.

Privacy policy
bitcoin
Bitcoin (BTC) $ 76,714.00
ethereum
Ethereum (ETH) $ 2,288.37
tether
Tether (USDT) $ 0.999853
xrp
XRP (XRP) $ 1.39
bnb
BNB (BNB) $ 622.86
usd-coin
USDC (USDC) $ 0.99983
solana
Solana (SOL) $ 84.52
tron
TRON (TRX) $ 0.325551
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.04
staked-ether
Lido Staked Ether (STETH) $ 2,265.05

Pin It on Pinterest

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?