BTC $104087.8758
ETH $2482.0747
XRP $2.1455
BNB $651.8395
SOL $153.5070
DOGE $0.1895
TRX $0.2681
ADA $0.6666
stETH $2478.6784
WBTC $104070.6235
HYPE $32.6347
SUI $3.2594
wstETH $2993.3616
LINK $13.6898
USDS $0.9996
AVAX $20.3263
XLM $0.2645
BCH $400.9470
LEO $8.3725
TON $3.1129
HBAR $0.1681
LTC $87.8800
WETH $2482.1915
XMR $349.8584
weETH $2652.2895
DOT $3.9723
BSC-USD $1.0003
BGB $4.7062
BTCB $104174.3931
WBT $30.9787
USDE $1.0012
PEPE $0.0000
PI $0.6382
AAVE $242.0478
TAO $410.2262
UNI $6.1117
DAI $0.9990
sUSDe $1.1764
CRO $0.1041
OKB $49.4318
APT $4.6931
NEAR $2.3887
CBBTC $104127.0934
ONDO $0.8268
ICP $4.8530
ETC $16.8411
GT $19.1763
BTC $104087.8758
ETH $2482.0747
XRP $2.1455
BNB $651.8395
SOL $153.5070
DOGE $0.1895
TRX $0.2681
ADA $0.6666
stETH $2478.6784
WBTC $104070.6235
HYPE $32.6347
SUI $3.2594
wstETH $2993.3616
LINK $13.6898
USDS $0.9996
AVAX $20.3263
XLM $0.2645
BCH $400.9470
LEO $8.3725
TON $3.1129
HBAR $0.1681
LTC $87.8800
WETH $2482.1915
XMR $349.8584
weETH $2652.2895
DOT $3.9723
BSC-USD $1.0003
BGB $4.7062
BTCB $104174.3931
WBT $30.9787
USDE $1.0012
PEPE $0.0000
PI $0.6382
AAVE $242.0478
TAO $410.2262
UNI $6.1117
DAI $0.9990
sUSDe $1.1764
CRO $0.1041
OKB $49.4318
APT $4.6931
NEAR $2.3887
CBBTC $104127.0934
ONDO $0.8268
ICP $4.8530
ETC $16.8411
GT $19.1763
  • Catalog
  • Blog
  • Tor Relay
  • Jabber
  • One-Time notes
  • Temp Email
  • What is TOR?
  • We are in tor
  • Due to the Randstorm vulnerability, 1.5 million bitcoins could be stolen.

    A new type of attack called Randstorm could potentially steal 1.5 million bitcoins, especially those made between 2011 and 2015. The Randstorm flaw is a result of bugs, bad design choices, and API changes that make the quality of random numbers generated by the web worse. Around 1.4 million bitcoins are believed to be in wallets made with weak cryptographic keys, which could support a creative space program for years.

    Unciphered discovered the Randstorm vulnerability in January 2022 while working for an unnamed client. The main reason for this vulnerability is the use of BitcoinJS, an open-source JavaScript library for creating browser-based cryptocurrency wallets. The exploit relies on the SecureRandom() function in the JSBN library, which was affected by cryptographic bugs in the way web browsers implemented the Math.random() function at the time. As of March 2014, BitcoinJS developers were no longer using JSBN.

    By brute force attacks, private keys can be used to get back the private keys of wallets made with the BitcoinJS library or projects that depend on it. The results highlight how flaws in core libraries used in open source projects can spread risks throughout the supply chain. In late 2021, a similar problem was seen with Apache Log4j.

    The security flaw is built into BitcoinJS wallets from the start, making them unfixable. If your wallet was made between 2011 and 2015, the only way to keep your money safe is to move it to a new wallet made with more up-to-date software.

    Author reign3d
    The Fall of a Crypto Titan: The Closure of Bittrex Global
    How scammers stole a million dollars from the crypto wallets of thousands of investors

    Comments 0

    Add comment