Hacker News new | past | comments | ask | show | jobs | submit login

Can't they just use an old version of bitcoin and use the timing attack to find the passphrase?

EDIT: I mean exploting this bug: https://github.com/bitcoin/bitcoin/issues/2838




I'm not a bit coin user, but that appears to be an attack on a "remote management" password for the client (it's about "RPC" or "remote procedure call" authentication), not for the wallet.

Wallets use a cryptographic key derivation function, this is against a plain text and configurable password. This would only be an issue if the wallet was loaded into the old version of the software at the time they attacked.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: