Bitcoin Self-Custody Gets a Security Rethink
Visit this link and make consistent profit in Binance futures trading, receive free bitcoin trading signals and Cornix trading Bot for the best automated trades – https://telegram.me/progrouptraders
Dice entropy may become the new gold standard after the Coldcard hack
In light of the catastrophic low-entropy bug in Coldcard hardware wallets, linked to publicly observed thefts beginning on July 30, Bitcoin holders have started to re-evaluate the trust assumptions in their hardware wallet setups.
How Coldcard’s entropy flaw worked
The Coldcard devices were equipped with apparently functional STM32 “true random number generators” (TRNGs) that rely on physical processes to produce an unguessable seed phrase.
However, after Coldcard creator NVK decided to initiate a firmware rewrite to switch from a GPL-licensed free software model to a read-only model, a serious vulnerability appears to have been introduced.
Starting with firmware version 4.0.1, released in March 2021, the device used MicroPython’s Yasmarang PRNG instead of properly using the STM32 hardware RNG.
Random number generation is an unsolvable problem in computer science, which is why the generation of secure, unguessable private keys always has to rely on external physical processes to a degree.
The use of the Yasmarang PRNG was widely characterized by analysts in the space as a pre-programmed fallback.

Our Team accounts for the Best in the Trade market, with thorough understanding of the Market behavior and trends.
We have a skilled team of full time crypto traders who excel in market analysis and trading.
Just visit the link above and see our stats, the accuracy of our signals and words of appreciation from our members
Comments
Post a Comment