|
|
|
|
|
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
|
|
|
electerium
|
|
August 08, 2015, 05:45:20 AM |
|
this is actually like unbelievably horrible, and troublesome.
I remember when i first read about brainwallet on reddit I thought: that's like really scary, but cute, a lot of people will fall for using it.
It never occurred to me that not only could people end up with the same passphrase, but that you could actively scan the entire blockchain and just start brute forcing for brain wallets with easily gussed passphrases.
What's most concerning are that there are people who are ALREADY running botnets on the blockchain, and today any 5 char passphrase gets auto extracted in seconds.
most poignant:
"Brainwallets make the Blockchain a public password hash database"
|
|
|
|
AgentofCoin
Legendary
Offline
Activity: 1092
Merit: 1001
|
|
August 08, 2015, 05:47:26 AM |
|
It is surprising to me that people who are knowledgeable enough about Bitcoin/bitcoin to know what a brainwallet is, don't choose more complex phrases, especially when their bitcoins are at higher risk of theft, compared to a standard privatekey. The "how much wood could a woodchuck..." saying or whatever it is considered could be chosen by tens of people, in theory. With millions of users in the future, that one would pop up hundredths of times. Good luck with your presentation.
|
I support a decentralized & unregulatable ledger first, with safe scaling over time. Request a signed message if you are associating with anyone claiming to be me.
|
|
|
electerium
|
|
August 08, 2015, 05:54:13 AM |
|
people whove used brainwallet should sha256 their passphrase immediately and move the coins to something more secure.
|
|
|
|
LiteCoinGuy
Legendary
Offline
Activity: 1148
Merit: 1010
In Satoshi I Trust
|
|
August 08, 2015, 06:08:59 AM |
|
alot of smart people recommended that you should not use a brainwallet. thanks to the reseacher. actually he is a whitehat @AgentofCoin that is truly a bad brainwallet
|
|
|
|
findftp
Legendary
Offline
Activity: 1022
Merit: 1006
Delusional crypto obsessionist
|
|
August 08, 2015, 11:51:00 AM |
|
people whove used brainwallet should sha256 their passphrase immediately and move the coins to something more secure.
Uhm, you're joking right?
|
|
|
|
cellard
Legendary
Offline
Activity: 1372
Merit: 1250
|
|
August 08, 2015, 12:35:23 PM |
|
Damn, how I didn't think about that one? there's probably a lot of money being held with simple ass phrases like that, people just don't take their security seriously enough. Hopefully with time they will learn.
|
|
|
|
CelestialWalrus
Newbie
Offline
Activity: 7
Merit: 0
|
|
August 08, 2015, 12:38:00 PM |
|
The 250BTC Brainwallet passphrase was "how much wood could a woodchuck chuck if a woodchuck could chuck wood"
I've tried guessing some of them, but this one is just... wow. I've never found anything actually.
|
|
|
|
Kazimir
Legendary
Offline
Activity: 1176
Merit: 1001
|
|
August 08, 2015, 12:38:15 PM |
|
I have a LOT of bitcoins stored in brainwallets, and I feel perfectly safe about it.
I think brainwallets are very secure, provided that you REALLY understand what makes strong input for a brainwallet, and what doesn't.
For example, I use Sha2562(master key + passphrase) where "master key" is a long, complex, impossible to guess password that I also use for e.g. Keepass. And the passphrase (it's actually a phrase, not a word) is something I can remember easily, but is still kinda hard to guess. Together, I feel very confident that nobody on earth is ever going to guess or brute force it.
With Sha2562 I mean something similar to Sha256d (double Sha256) which Bitcoin uses, but instead of Sha256(Sha256(x)), I use Sha256(x+Sha256(x)).
|
|
|
|
jonald_fyookball
Legendary
Offline
Activity: 1302
Merit: 1004
Core dev leaves me neg feedback #abuse #political
|
|
August 08, 2015, 04:14:48 PM |
|
I have a LOT of bitcoins stored in brainwallets, and I feel perfectly safe about it.
I think brainwallets are very secure, provided that you REALLY understand what makes strong input for a brainwallet, and what doesn't.
For example, I use Sha2562(master key + passphrase) where "master key" is a long, complex, impossible to guess password that I also use for e.g. Keepass. And the passphrase (it's actually a phrase, not a word) is something I can remember easily, but is still kinda hard to guess. Together, I feel very confident that nobody on earth is ever going to guess or brute force it.
With Sha2562 I mean something similar to Sha256d (double Sha256) which Bitcoin uses, but instead of Sha256(Sha256(x)), I use Sha256(x+Sha256(x)).
Yes. However, it seems most people don't REALLY understand that. It seems simple and obvious to an informed person, but it is not to the layperson, even when explained. In another thread, we were discussing probabilities and someone remarked "I don't understand all this fancy math" when there was no math involved except multiplication and perhaps exponentiation. When you're smart/informed/talent, its easy to overestimate the abilities of others. So, I get why brainwallets aren't recommended and even in your situation, the entropy can only be estimated but not measured directly. I just use electrum although I do believe in theory that you're right. If you truly know what you're doing, you can create a strong brain wallet.
|
|
|
|
Mickeyb
|
|
August 08, 2015, 09:35:48 PM |
|
people whove used brainwallet should sha256 their passphrase immediately and move the coins to something more secure.
Come on man, people who know how to choose good passwords and store them correctly while using brainwallets are as safe as using other "normal" wallets. I have seen so many stupid missuses with the wallet.dat files so far that are as bad as bad brainwallet passwords. This means nothing, if people are using brainwallets, they are not less safe automatically.
|
|
|
|
EternalWingsofGod
|
|
August 08, 2015, 09:53:23 PM |
|
With the issues of setting up an intelligent brainwallet, it makes sense that people would be better off not creating them unless aware and capable of securing them however if the wallet is unused and abandoned a few treasure troves are available for grabs.
The 250BTC Brainwallet passphrase was "how much wood could a woodchuck chuck if a woodchuck could chuck wood" Someone didn't think that over.
|
|
|
|
coinableS
Legendary
Offline
Activity: 1442
Merit: 1179
|
|
August 08, 2015, 10:48:29 PM |
|
I have no plans on ever using a brainwallet when there are much more secure ways to store my coins. If I did decide to use one for some crazy reason I would include a salt and a separator symbol.
"Im@b34v3r^how^much^wood^could^a^woodchuck^chuck^if^a^woodchuck^could^chuck^wood"
|
|
|
|
jonald_fyookball
Legendary
Offline
Activity: 1302
Merit: 1004
Core dev leaves me neg feedback #abuse #political
|
|
August 08, 2015, 10:53:08 PM |
|
the really sad part is that this nursey rhyme is maybe forever ruined for the victim.
|
|
|
|
Soros Shorts
Donator
Legendary
Offline
Activity: 1617
Merit: 1011
|
|
August 08, 2015, 11:47:53 PM |
|
Next we'll hear about some moron using as a passphrase "peter piper picked a peck of picked peppers".
|
|
|
|
GermanGiant
|
|
August 09, 2015, 12:08:03 AM |
|
As it seems, the Github source code of the brainwallet.org has also been taken down. Does anyone know about a copy of that repository ?
|
|
|
|
|
manselr
Legendary
Offline
Activity: 868
Merit: 1004
|
|
August 09, 2015, 03:49:30 PM |
|
I think this is a good thing. We must be exposed to all of the possible Bitcoin and Bitcoin related stuff flaw's as early in the game as possible. Imagine if this happened 10 years from now. Now we can afford taking big losses and big mistakes because we can fix them without much impact, since we are still very early on.
|
|
|
|
bitcoinmasterlord
Legendary
Offline
Activity: 1148
Merit: 1006
|
|
August 09, 2015, 04:08:34 PM |
|
It is surprising to me that people who are knowledgeable enough about Bitcoin/bitcoin to know what a brainwallet is, don't choose more complex phrases, especially when their bitcoins are at higher risk of theft, compared to a standard privatekey. The "how much wood could a woodchuck..." saying or whatever it is considered could be chosen by tens of people, in theory. With millions of users in the future, that one would pop up hundredths of times. Good luck with your presentation. That is unbelieveably. With that amount of coins on it it must have been an experienced bitcoiner. That he made such an error makes it hard for me to feel pity for him. Guess bitcoiners don't actually need to know about security.
|
|
|
|
Financisto
|
|
August 26, 2015, 02:40:29 PM |
|
The facts of this research are outstanding...
That's why I only rely on KDF (scrypt, bcrypt and PBKDF2), never fast hash functions (SHA family etc) for this purpose (Brainwallets).
Thanks for your educational work! The community just gets stronger with it!
|
|
|
|
|