Sabitlenmiş Tweet
Anton
380 posts

Anton
@pepeepep42
Katılım November 2019
645 Takip Edilen88 Takipçiler
2026 Yıllık Özeti
@pepeepep42 hesabının Twitter yılını gör

@design_sats Funny thing — yesterday the latest address that eventually got drained showed up in my DB before the hacker got to it. About 30 minutes later the funds were gone
English

@jurbed “One good audit” is exactly how RNG bugs survive for years. You can audit the design, not prove entropy from a random-looking output. Dice aren’t Stone Age - they’re an independent entropy source. And storing the passphrase next to the seed defeats half the point.
English

@Marsmensch @coinjoined @callebtc @Rob1Ham Funny thing is, the reachable pad space may actually be closer to 24 bits, not 32 :)
English

All mostly accurate. Adding a tad bit more detail since I happen to have this info open right now:
The fallback read UID[31:0], which ST assigns to X/Y coordinates. Wafer and lot identifiers occupy the remaining 64 bits. The full 96-bit UID is unique; the X/Y word is not and CAN REPEAT across wafers and lots.
The code calculated pad = UID_low32 XOR SysTick. An attacker can enumerate all possible 32-bit pad values without knowing either input separately.
RTC state, earlier RNG calls and (on later models) the secure-element reseed also affected the end result.
Therefore a UID list is not mathematically required to enumerate this one component.
Physical proof will be incredibly hard but possible. Stronger evidence would combine the original device, a trusted pre-incident ownership record (with counterparty), plausible generator state and a reproduced wallet public key.
st.com/resource/en/pr…
English

I hope this sets a good precedent and leads to a proper recovery process. During my research I found some pretty fat vulnerable wallets before the black hats did. I was sitting there wondering if I should drop an OP_RETURN with my contact info... but then how do you even verify the real owner? By the time I made up my mind, the black hats had already cleaned them out.
English

@coinspect I reproduced it too. Happy to compare address sets and assumptions privately if that helps.

English

During the weekend we kept testing variants of the COLDCARD generator and alternative paths from each seed. Our numbers and address sets still do not match public blockchain analysis reports.
If your team has reproduced the attack, please reach out so we can compare findings and understand what we may be missing.
Attributing all these movements to one vulnerability without strong evidence is risky. Other exploits could be hiding in the noise.
English


@Derivatives_Ape Why do I keep seeing morons arguing that it is not theft
English

@design_sats This isn't the original hacker anymore. Looks more like AI-assisted script kiddies sweeping ranges he never bothered to scan.
The barrier to entry is pretty low now — you can hack together a generator for this vuln in an hour.
English

@raw_avocado Bullish on Bitcoin. The Coldcard incident is just another step in the ecosystem's evolution. We had brain wallets once
English

@notgrubles just tell the police the devs kindly left a deterministic Yasmarang fallback in the firmware instead of the hardware TRNG
English

@JoeNakamoto Natural evolution of the Bitcoin ecosystem under increasingly powerful AI. We saw this with brainwallets: weak entropy eventually gets cracked. User-generated physical entropy, like dice rolls, is the ultimate backstop. Otherwise, every RNG remains a trust assumption.
English

@BitBoxSwiss You use five built-in entropy sources, but have you considered supporting user-supplied entropy, like dice rolls? Even if every internal source were compromised, the added physical randomness could still keep the funds safe.
English

@PraveenPerera @CoineliusX Bad RNG has always been a ticking time bomb. First Ill Bloom, now this. Kinda wild how it all seems to correlate with the rise of SOTA AI models. Feels like we're only scratching the surface
English

I found 2 private keys that were part of the 500 BTC hack, so this is independently confirmed
instagibbs@theinstagibbs
Confirmed. Mk2/3 vuln, I don't think mk4 is but can't be certain
English
@pepeepep42 karşılaştırmaları
@design_sats vs @pepeepep42 @jurbed vs @pepeepep42 @marsmensch vs @pepeepep42 @coinjoined vs @pepeepep42 @callebtc vs @pepeepep42 @pepeepep42 vs @rob1ham
Kendi karşılaştırmanı oluştur Benzer Profiller
Türk Amatör Paylaşım
@turkamator88
219.2K görüntülenme
狱
@wx1n11124
138.4K görüntülenme
Türk ifşa Aleyna
@turkifsa_aley
46.9K görüntülenme
邪恶无机酱
@ne_puppy
41.7K görüntülenme
狗爹和小桃🍑
@cccxxxyyyiii
35.4K görüntülenme
少萝之家
@slzjtt
29.1K görüntülenme
Gulili谷鲤里
@gulililucky
19.6K görüntülenme
乳糖超不耐
@oooosugar
18.9K görüntülenme









