Bitcoin Forum
May 07, 2024, 05:19:10 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: msig 2-of-3 with one weak key? what service produces them?  (Read 2330 times)
amaclin (OP)
Legendary
*
Offline Offline

Activity: 1260
Merit: 1019


View Profile
September 14, 2014, 07:20:42 AM
Last edit: September 14, 2014, 07:46:51 AM by amaclin
 #1

Just wondering...
There are some strange addersses in blockchain.
Look at these msig addresses:

3A2tqbPLPG248Bisqwo5YTc7qegz2NubSh
2-of-3 msig of { 1F3sAm6ZtwLAUnj7d38pGFxtP3RVEvtsbV, 1C6RiMmuiWEGfEatuLNmRYNG1kaQzUt1u9, 1283gYYX9R3CLEDHU31Wxy5bzpFknpDTUY }

36gYmoA5DrDEnvENNmyef4CyH9TDdsoXng
2-of-3 msig of { 1F3sAm6ZtwLAUnj7d38pGFxtP3RVEvtsbV, 1Nn5i5nXMUgDXktyiHhfRApHtvXfnBinGg, 1H7sZtTSgUq6Tv5ykr6mJDktAhoK5HMfFL }

34GU3ThG3sq2bAJHG6UWwhwKrPuWL2UDb3
2-of-3 msig of { 1F3sAm6ZtwLAUnj7d38pGFxtP3RVEvtsbV, 181m1p28X1TVC5eRd3HTUY45o9y2NLedvu, 1PVUmPa127qn55J6vH32wwWUcjVSSQWRYP }

There are several other examples in blockchain, these are the recent ones.
What is strange? 1F3sAm6ZtwLAUnj7d38pGFxtP3RVEvtsbV is compressed address of brainwallet ( "" )
So, in fact these addresses are not 2-of-3, but 1-of-2 (because one private key is well known)

There is no visible reason to use 2-of-3 keys in this case... 1-of-2 would be better. May be it is a bug on some (unknown by me) service?

upd: OK, may be it is some sort of counter, to make all 1-of-2 msig addresses used once  Huh
related topic https://bitcointalk.org/index.php?topic=666016



1715059150
Hero Member
*
Offline Offline

Posts: 1715059150

View Profile Personal Message (Offline)

Ignore
1715059150
Reply with quote  #2

1715059150
Report to moderator
1715059150
Hero Member
*
Offline Offline

Posts: 1715059150

View Profile Personal Message (Offline)

Ignore
1715059150
Reply with quote  #2

1715059150
Report to moderator
1715059150
Hero Member
*
Offline Offline

Posts: 1715059150

View Profile Personal Message (Offline)

Ignore
1715059150
Reply with quote  #2

1715059150
Report to moderator
The forum was founded in 2009 by Satoshi and Sirius. It replaced a SourceForge forum.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1715059150
Hero Member
*
Offline Offline

Posts: 1715059150

View Profile Personal Message (Offline)

Ignore
1715059150
Reply with quote  #2

1715059150
Report to moderator
Razick
Legendary
*
Offline Offline

Activity: 1330
Merit: 1003


View Profile
September 14, 2014, 04:18:44 PM
 #2

Strange. Just out of curiosity, how did you figure this out? What led you to notice that the address had a weak key?

ACCOUNT RECOVERED 4/27/2020. Account was previously hacked sometime in 2017. Posts between 12/31/2016 and 4/27/2020 are NOT LEGITIMATE.
Peter R
Legendary
*
Offline Offline

Activity: 1162
Merit: 1007



View Profile
September 14, 2014, 04:26:48 PM
 #3

Strange. Just out of curiosity, how did you figure this out? What led you to notice that the address had a weak key?

Amaclin is a blockchain super-slueth.  He's found numerous very interesting blockchain anomalies, and probably a bit of loose change too.  

Run Bitcoin Unlimited (www.bitcoinunlimited.info)
amaclin (OP)
Legendary
*
Offline Offline

Activity: 1260
Merit: 1019


View Profile
September 14, 2014, 05:15:57 PM
Last edit: September 14, 2014, 05:30:30 PM by amaclin
 #4

Quote
Just out of curiosity, how did you figure this out?
Blockchain is public. I use the same sources of information that you can use also.

For example, let us take 34GU3ThG3sq2bAJHG6UWwhwKrPuWL2UDb3
Here are details for transaction http://webbtc.com/tx/f21d3e4507e0b3c41ef67b1af40e9145b6d0eddff8f01e33a3251b0b25012437
Look at the "Input" section (sorry, I do not know how to attach images to this forum)
In the right side there is "Script" section
And the last (longest) line in it is "522103a34b99f22c790c4e36b2b3c2c35a36db06226e41c692fc82b8...."
Remember the digits i have bolded for you.

Now the next step.
Open https://brainwallet.github.io/
Do not enter any passphrase, just push the button "Compressed" in "Point Conversion" section
Now scroll to the bottom
Do you see Public Key? It is the same digits! 03a34b99f22...

Isn't it easy?  Grin
Remember remember the 5th of November
Legendary
*
Offline Offline

Activity: 1862
Merit: 1011

Reverse engineer from time to time


View Profile
September 15, 2014, 08:42:20 AM
 #5

Quote
Just out of curiosity, how did you figure this out?
Blockchain is public. I use the same sources of information that you can use also.

For example, let us take 34GU3ThG3sq2bAJHG6UWwhwKrPuWL2UDb3
Here are details for transaction http://webbtc.com/tx/f21d3e4507e0b3c41ef67b1af40e9145b6d0eddff8f01e33a3251b0b25012437
Look at the "Input" section (sorry, I do not know how to attach images to this forum)
In the right side there is "Script" section
And the last (longest) line in it is "522103a34b99f22c790c4e36b2b3c2c35a36db06226e41c692fc82b8...."
Remember the digits i have bolded for you.

Now the next step.
Open https://brainwallet.github.io/
Do not enter any passphrase, just push the button "Compressed" in "Point Conversion" section
Now scroll to the bottom
Do you see Public Key? It is the same digits! 03a34b99f22...

Isn't it easy?  Grin

So you do this manually for every single transaction?

BTC:1AiCRMxgf1ptVQwx6hDuKMu4f7F27QmJC2
amaclin (OP)
Legendary
*
Offline Offline

Activity: 1260
Merit: 1019


View Profile
September 15, 2014, 09:01:34 AM
 #6

Quote
So you do this manually for every single transaction?

Suppose the answer is "yes". Will you trust me? Or will you demand more proofs?  Grin
I gave you a method, which can be performed even by hands. Of course, computers are slightly better for such job
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!