Bitcoin Forum

Alternate cryptocurrencies => Altcoin Discussion => Topic started by: virtualmaster on May 08, 2013, 06:30:56 AM



Title: recovering bitcoin private keys ?
Post by: virtualmaster on May 08, 2013, 06:30:56 AM
Recovering bitcoin private keys possible or it is a fake post ?
http://www.nilsschneider.net/2013/01/28/recovering-bitcoin-private-keys.html


Title: Re: recovering bitcoin private keys ?
Post by: twobits on May 08, 2013, 06:40:24 AM
Recovering bitcoin private keys possible or it is a fake post ?
http://www.nilsschneider.net/2013/01/28/recovering-bitcoin-private-keys.html

Interesting... the relevant part is:

Quote
Why did this work? ECDSA requires a random number for each signature. If this random number is ever used twice with the same private key it can be recovered. This transaction was generated by a hardware bitcoin wallet using a pseudo-random number generator that was returning the same “random” number every time.

This is a known implementation issue, and why people make a big deal out of random sources and entropy.  Seems there is a flawed implementation floating around?  I wonder what this hardware wallet is exactly. 


Title: Re: recovering bitcoin private keys ?
Post by: kost on May 08, 2013, 07:21:03 AM
If they used old OpenSSL in Debian for generating random numbers, it's possible:

http://en.wikinews.org/wiki/Predictable_random_number_generator_discovered_in_the_Debian_version_of_OpenSSL

LOL