A newly discovered vulnerability in the Libbitcoin Explorer 3.x library has allowed over $900,000 to be stolen from Bitcoin users, according to a report from blockchain security firm SlowMist.
- The vulnerability affects users of Libbitcoin, a Bitcoin wallet implementation, who use it to generate accounts for various cryptocurrencies.
- The vulnerability was discovered by cybersecurity team “Distrust” and is called the “Milk Sad” vulnerability.
- The Libbitcoin Explorer has a faulty key generation mechanism, allowing attackers to guess private keys and steal cryptocurrency.
- SlowMist claims to have blocked one address that siphoned away over 9.7441 BTC (approximately $278,318) and is monitoring it in case funds are moved elsewhere.
- The vulnerability was discovered when a Libbitcoin user reported missing BTC, and it was found that other users were also having their funds stolen.
Hot Take:
This newly discovered vulnerability in the Libbitcoin Explorer 3.x library poses a significant risk to cryptocurrency users. The fact that over $900,000 has already been stolen highlights the importance of addressing these vulnerabilities promptly. It is crucial for users to be aware of the potential risks associated with using Libbitcoin and take necessary precautions to protect their funds. The ongoing issue of wallet vulnerabilities in the crypto space underscores the need for improved security measures and regular penetration testing to identify and address vulnerabilities before they are exploited by attackers.