CryptoMediaClub
Monday, June 9, 2025
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis
No Result
View All Result
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis
No Result
View All Result
CryptoMediaClub
No Result
View All Result
Home Blockchain

Newly discovered Bitcoin wallet loophole let hackers steal $900K — SlowMist

10.08.2023
A A
0
123
VIEWS
ShareShare

A newly discovered vulnerability in the Libbitcoin Explorer 3.x library has allowed over $900,000 to be stolen from Bitcoin users, according to a report from blockchain security firm SlowMist. The vulnerability can also affect users of Ethereum, Ripple, Dogecoin, Solana, Litecoin, Bitcoin Cash and Zcash who use Libbitcoin to generate accounts.

SlowMist Security Alert
Recently, #Distrust discovered a severe vulnerability affecting cryptocurrency wallets using the #Libbitcoin Explorer 3.x versions. This vulnerability allows attackers to access wallet private keys by exploiting the Mersenne Twister pseudo-random…

— SlowMist (@SlowMist_Team) August 10, 2023

Libbitcoin is a Bitcoin wallet implementation that developers and validators sometimes use to create Bitcoin (BTC) and other cryptocurrency accounts. According to its official website, it is used by “Airbitz (mobile wallet), Bitprim (developer interface), Blockchain Commons (decentralized wallet identity), Cancoin (decentralized exchange)” and other applications. SlowMist did not specify which applications that use Libbitcoin, if any, are affected by the vulnerability.

Cointelegraph reached out to the Libbitcoin Institute through email but had not received a comment at the time of publication.

SlowMist identified cybersecurity team “Distrust" as the team that originally discovered the loophole, which is called the “Milk Sad” vulnerability. It was reported to the CEV cybersecurity vulnerability database on Aug. 7.

According to the post, the Libbitcoin Explorer has a faulty key generation mechanism, allowing private keys to be guessed by attackers. As a result, attackers exploited this vulnerability to steal over $900,000 worth of crypto as of Aug. 10.

SlowMist emphasized that one attack in particular siphoned away over 9.7441 BTC (approximately $278,318). The firm claims to have “blocked” the address, implying that the team has contacted exchanges to prevent the attacker from cashing out the funds. The team also stated that it will be monitoring the address in case funds are moved elsewhere.

Four members of the Distrust team, along with eight freelance security consultants who claim to have helped discover the vulnerability, have set up an informational website explaining the vulnerability. They explained that the loophole is created when users employ the “bx seed” command to generate a wallet seed. This command “uses the Mersenne Twister pseudorandom number generator (PRNG) initialized with 32 bits of system time,” which lacks sufficient randomness and therefore sometimes produces the same seed for multiple persons.

Bx seed command producing the same seed twice. Source: Milk Sad information site

The researchers claim to have discovered the vulnerability when they were contacted by a Libbitcoin user whose BTC had mysteriously gone missing on July 21. When the user reached out to other Libbitcoin users to try to determine how the BTC could have gone missing, the person found that other users were also having their BTC siphoned away.

Wallet vulnerabilities continue to pose a problem for crypto users in 2023. Over $100 million was lost in a hack of the Atomic Wallet in June, which was acknowledged by the app’s team on June 22. Cybersecurity certification platform CER released its wallet security rankings in July, noting that only six out of 45 wallet brands employ penetration testing to discover vulnerabilities.

Share9Tweet6ShareSharePin2

Related Posts

TRUMP Memecoin: Eric Trump Announces Significant WLFI Investment Plan
Blockchain

TRUMP Memecoin: Eric Trump Announces Significant WLFI Investment Plan

07.06.2025
0

Skip to content

Read moreDetails
Accelerate: Sui and Dubai VARA Partner to Boost Crypto Startups

Accelerate: Sui and Dubai VARA Partner to Boost Crypto Startups

05.06.2025
Shocking Trump Crypto Confusion: Team Denies TRUMP Wallet, Hints at Real Project

Shocking Trump Crypto Confusion: Team Denies TRUMP Wallet, Hints at Real Project

04.06.2025
Pioneering Solana Dubai Collaboration with VARA Boosts Crypto Future

Pioneering Solana Dubai Collaboration with VARA Boosts Crypto Future

03.06.2025
Ethereum Foundation Announces Bold Restructure for Enhanced Development Focus

Ethereum Foundation Announces Bold Restructure for Enhanced Development Focus

03.06.2025
Load More
Next Post
3 reasons why Ethereum price is still pinned below $1,900

3 reasons why Ethereum price is still pinned below $1,900

0 0 votes
Рейтинг статьи
Subscribe
Notify of
guest
guest
0 комментариев
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Recommended

Anoma Foundation Raises $25M to Advance Intent-Centric Blockchain Architecture

Anoma Foundation Raises $25M to Advance Intent-Centric Blockchain Architecture

2 years ago
ECB Plans Blockchain-Primarily based Fee System for Central Financial institution Settlements

ECB Plans Blockchain-Primarily based Fee System for Central Financial institution Settlements

4 months ago
Price analysis 4/24: SPX, DXY, BTC, ETH, BNB, XRP, ADA, MATIC, DOGE, SOL

Price analysis 4/24: SPX, DXY, BTC, ETH, BNB, XRP, ADA, MATIC, DOGE, SOL

2 years ago
XRP Bulls Eye on $0.50, Will the Trend Keep It in Top Gainers Spot?

XRP Bulls Eye on $0.50, Will the Trend Keep It in Top Gainers Spot?

2 years ago

Categories

  • All news
  • Altcoins
  • Analysis
  • Bitcoin
  • Blockchain
  • Ethereum
  • NFT
No Result
View All Result

Highlights

Coinbase, BiT Global Settle Legal Fight Over wBTC Delisting

Deutsche Bank Explores Stablecoins, Tokenized Deposits in Digital Assets Push

Musk vs Trump: Why Did Bitcoin Fall… And Will It Fall Further?

Labubu Meme Coin Shows Brands Merging With Blockchain, But Will The Token Catch On?

Apple, X, Airbnb Plot Stablecoin Payment – Could Big Tech Ditch Card Fees for Onchain Settlements?

Switzerland to Swap Crypto Holder Data with 74 Countries Under the OECD’s CARF

Trending

Proof-of-Reserves: Is it applicable to MicroStrategy?
Analysis

Proof-of-Reserves: Is it applicable to MicroStrategy?

08.06.2025
0

The following is a guest post and analysis from Shane Neagle, Editor In Chief fromThe Tokenist. On...

Bitcoin Family Hides Crypto Seed Phrases Across Four Continents After Kidnapping Threats

Bitcoin Family Hides Crypto Seed Phrases Across Four Continents After Kidnapping Threats

08.06.2025
Bitcoin Price Prediction: Golden Cross Pattern Targets $150,000 Rally

Bitcoin Price Prediction: Golden Cross Pattern Targets $150,000 Rally

08.06.2025
Coinbase, BiT Global Settle Legal Fight Over wBTC Delisting

Coinbase, BiT Global Settle Legal Fight Over wBTC Delisting

08.06.2025
Deutsche Bank Explores Stablecoins, Tokenized Deposits in Digital Assets Push

Deutsche Bank Explores Stablecoins, Tokenized Deposits in Digital Assets Push

08.06.2025
  • All news
  • Altcoins
  • Bitcoin
  • Blockchain
  • Ethereum
  • NFT
  • Analysis
Editor: cryptomediaclub.com@gmail.com
Advertising: digestmediaholding@gmail.com

Disclaimer: Information found on CryptoMediaClub is those of writers quoted. It does not represent the opinions of CryptoMediaClub on whether to sell, buy or hold any investments. You are advised to conduct your own research before making any investment decisions. Use provided information at your own risk.
CryptoMediaClub covers fintech, blockchain and Bitcoin bringing you the latest crypto news and analyses on the future of money.

© 2023 Crypto News. All Rights Reserved

No Result
View All Result
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis

Disclaimer: Information found on CryptoMediaClub is those of writers quoted. It does not represent the opinions of CryptoMediaClub on whether to sell, buy or hold any investments. You are advised to conduct your own research before making any investment decisions. Use provided information at your own risk.
CryptoMediaClub covers fintech, blockchain and Bitcoin bringing you the latest crypto news and analyses on the future of money.

© 2023 Crypto News. All Rights Reserved

wpDiscuz