Zero-Knowledge Goof

2.6K posts

Zero-Knowledge Goof banner
Zero-Knowledge Goof

Zero-Knowledge Goof

@LLFOURN

UNLICENSED BROKER OF BITCOIN Working on @FrostsnapTech npub1xh897wvhn93tda0zws94mdyc7eagc8qm0798clp7x48zh6kjwa

Malaysia Katılım Eylül 2013
1.3K Takip Edilen2.9K Takipçiler
Sabitlenmiş Tweet
Zero-Knowledge Goof
Public heads-up for GPU cloud / rental providers and Trust & Safety teams: There is a publicly disclosed hardware-wallet entropy issue that may lead to abuse of consumer GPU rentals — especially multi-GPU NVIDIA RTX 3090 / 4090 and similar CUDA cards — for offline BIP-39 seed recovery. References: • Coinkite advisory: blog.coinkite.com/coldcard-mk3-s… • Technical background: blog.coinkite.com/entropy-techni… • Live theft tracker: coldcard-watch.vercel.app What this looks like technically: • Offline search of a reduced BIP-39 seed space via bulk PBKDF2-HMAC-SHA512 (2048 iterations) • Mk3: does not need GPUs — that space is small enough to brute-force cheaply, and Mk3 seeds are already linked to on-chain thefts • Mk4 and later: does need large amounts of compute. Those seeds are stronger but still weaker than full design entropy for some pre-fix units. Rough ballpark: recovering one seed ≈ ~10× RTX 4090s for about a day • On rental platforms this tends to look like long-running custom CUDA/hashing binaries or containers on multi-GPU 30/40-series instances — not normal training/inference API usage Why this matters now: the low-hanging fruit (Mk3 and the weakest seeds that need little or no GPU) appears largely drained already — the tracker above shows the ongoing thefts. The next wave is Mk4-and-later seeds, which are compute-bound. Large blocks of rented consumer GPUs are the bottleneck for attackers. This is not a vulnerability report against any platform. It's context so abuse / trust teams can: 1. Route future reports on this topic correctly 2. Optionally watch for suspicious multi-GPU, long-running custom CUDA jobs 3. Have background if law enforcement or researchers get in touch cc: @vast_ai @runpod @clore_ai @TensorDock @SaladTech @akashnet @MassedCompute @Hyperstackcloud @fluidstack Happy to help any team dig in.
English
6
16
55
5.7K
Zero-Knowledge Goof
Qwen3-coder-next same prompt...FAIL (even after showing it the problem).
Zero-Knowledge Goof tweet media
English
0
0
0
4
Zero-Knowledge Goof
Zero-Knowledge Goof@LLFOURN·
Starting a thread of prompt attempts to see what what was exactly missing from nick's audit prompt for the good of science. Opus 5 xhigh same prompt...FAILED
Zero-Knowledge Goof tweet media
Zero-Knowledge Goof@LLFOURN

So it turns out that at least one good guy was looking at problems in coldcard entropy before the attack. @utxoclub ran a prompt on 17th June but it failed to surface the issue for two main reasons: 1. Anthropic “ai safety” clown show meant it could only be done with opus 4.8 instead of fable at that time. 2. The coldcard code base is a cluster fuck of git sub modules.

English
2
2
8
1.8K
Zero-Knowledge Goof
Zero-Knowledge Goof@LLFOURN·
Why is it not unique? Even if it isn’t it’s very unlikely for the attacker to have a CC with the same one isn’t it? You require a signed message also of course so it’s not just *anyone*. Videos of person with cold card showing the serial number id guess are still difficult to fake dozens of times without leaving a noticeable pattern. If no one else claims for 3 months you release it. If there is contention you require physical fedexing the device.
English
1
0
2
101
Robin Linus 🥖
Robin Linus 🥖@robin_linus·
Hey @nvk @COLDCARDwallet, do you have any information about the UIDs that could help white hats search the space faster than attackers?
English
4
7
91
12.6K
Kevin Loaec 🧙‍♂️🐟
For the record, I am absolutely against stealing from users who still can move their coins now, and may never be able to claim them once you steal them. I find this behavior disgusting, when you know it's very unlikely to be able to give it back. Many users don't even have their original device anymore.
English
6
1
49
3.5K
Zero-Knowledge Goof
Zero-Knowledge Goof@LLFOURN·
I would have: 1. ran the attack and got all the seedwords to determine scope 2. asked coinkite what would be the best way to authenticate the affected users. 3. Move all the coins with an OP_RETURN with a link to a website explaining what has happened 4. Make a return process which filters out most of the scammers
English
1
0
12
291
JP Technology ₿
JP Technology ₿@JP_Technology·
As an honest person discovering the ColdCard bug, what would you do? 1. Say & do nothing, hoping no one dishonest ever discovers it too 2. Disclose privately to CoinKite, who've no means of privately contacting affected individuals 3. Grab all the coins for later return 4. Other
English
6
0
13
1.1K
Zero-Knowledge Goof retweetledi
Rob Hamilton
Rob Hamilton@Rob1Ham·
I have spent over $10,000 scanning 100+ bitcoin ecosystem related libraries looking for vulnerabilities with Kimi K3 running as quarterback. Myself and a small "Red Team" have found multiple serious vulnerabilities impacting the ecosystem. They vary in scope severity, but this is a call to action. For any critical tier vulnerability that was identified if I was able to immediately demonstrate a POC (proof of concept), I have already responsibly disclosed to the maintainers. HERE IS HOW YOU CAN HELP ME IF YOU ARE NOT TECHNICAL: - please share with me any repository that is on github that I can scan, we want to cast a wide net. It takes a few moments for you to link github accounts, we'll take it from there - if that project does not have a SECURITY.md make an issue asking the dev to list one IF YOU ARE TECHNICAL: - If you are a maintainer or contributor to a project, I may have already scanned your repo, hit me up I'll share the results, if not I'll add your project to the list. - If I can trust you to do larger review to start looking through this stuff to give me more eyes let me know. AI Has forever changed software development. Tomorrow marks 1 week of Kimi k3 being live in open weights. We are going to accelerate.
English
230
379
2.1K
169.5K
Zero-Knowledge Goof retweetledi
TheRustyTwit
TheRustyTwit@rusty_twit·
Already did one migration. Anyone else in Adelaide or surrounds need help getting off Coldcard?
English
0
3
15
915
Zero-Knowledge Goof
Zero-Knowledge Goof@LLFOURN·
feel free to post it for me! Exact prompt is: I need to audit this firmware. In particular: -- Memory crashes / OOB -- Weak RNG source -- Nonce reuse -- Bitcoin transaction signing logic (e.g. oversized fee that doesn't get noticed) -- Number overflows -- Anything else that could lead to loss of funds or otherwise
English
2
0
1
204
instagibbs
instagibbs@theinstagibbs·
@LLFOURN ok but my tweet is actually helpful :P
English
1
0
1
162
Zero-Knowledge Goof retweetledi
UTXOCLUB
UTXOCLUB@utxoclub·
Airgapping is a larp, secure elements are just PIN authenticators, and extra dice rolls are a prayer
English
11
2
58
9.8K
Zero-Knowledge Goof retweetledi
Zero-Knowledge Goof
So it turns out that at least one good guy was looking at problems in coldcard entropy before the attack. @utxoclub ran a prompt on 17th June but it failed to surface the issue for two main reasons: 1. Anthropic “ai safety” clown show meant it could only be done with opus 4.8 instead of fable at that time. 2. The coldcard code base is a cluster fuck of git sub modules.
UTXOCLUB@utxoclub

Seven weeks ago I pointed Opus 4.8 at the @COLDCARDwallet firmware and told it to find bugs that lose people money. The second bullet of my prompt: Weak RNG source.

English
4
13
77
7.6K
UTXOCLUB
UTXOCLUB@utxoclub·
Seven weeks ago I pointed Opus 4.8 at the @COLDCARDwallet firmware and told it to find bugs that lose people money. The second bullet of my prompt: Weak RNG source.
UTXOCLUB tweet media
English
28
59
600
112.5K
Zero-Knowledge Goof retweetledi
UTXOCLUB
UTXOCLUB@utxoclub·
Why did Opus miss? We hadn't cloned enough of Coldcard's submodules. This bug lives between files, and some of those files weren't on disk. What was present told a self consistent story, with convincing docstrings at the boundary: "best-quality high entropy TRNG bytes".
UTXOCLUB tweet media
English
5
10
81
18.4K