logoalt Hacker News

creatonezyesterday at 7:24 PM1 replyview on HN

> Because, in the applied world, upstream bugs in "secure" system RNGs have been the cause of stolen crypto [...]

You mean javascript libraries that do a bit of Math.random() and a miniscule amount of mixing, that had been widely considered poor practice for years while old bitcoin wallet generator websites were burning users with it?

Has any actual serious CSPRNG exposed bitcoin wallets?


Replies

Taekyesterday at 9:37 PM

Yes, numerous times. Here are some famous ones:

  Android SecureRandom (2013)
https://android-developers.googleblog.com/2013/08/some-secur...

  CryptoJS / Ill Bloom (2026)
https://illbloom.org/articles/cryptojs-vulnerability/

  Trust Wallet Browser Extension (2023)
https://www.ledger.com/blog/funds-of-every-wallet-created-wi...

  Libbitcoin / Milk Sad (2023)
https://milksad.info/disclosure.html

  Trust Wallet iOS / Trezor Library
https://secbit.io/blog/en/2024/01/19/trust-wallets-fomo3d-su...