Dark Skippy: A New Attack on Bitcoin Hardware Wallets? With Nick, Lloyd and Robin SLP597

Dark Skippy: A New Attack on Bitcoin Hardware Wallets? With Nick, Lloyd and Robin SLP597

Dark Skippy is a new attack that in theory, makes it much easier for a malicious person to steal your coins. Listen in to learn about some of the ins and outs here, as well as mitigation and the path forward for the industry from @utxoclub , @LLFOURN & @robin_linus .

  • Why air gapping is not the be all end all

  • Dark Skippy in context with other attacks

  • Security while signing transactions, and security while generating keys

  • RFC6979 Deterministic nonce generation

  • Updating PSBT to help mitigate this attack

Summary

The conversation discusses the ‘Dark Skippy’ attack, a new method for leaking secret keys from a malicious signing device. The attack takes advantage of the nonces used in the Schnorr and ECDSA signature schemes. The new attack vector can potentially extract private keys and seed words from hardware wallets. The attack targets the nonce generation process during key generation and signing. The previous versions of this attack were inefficient, but Dark Skippy improves upon them. The contributors explain how the attack came about and its implications for hardware wallet security. They also discuss the RFC6979 deterministic nonce generation and the concept of anti-klepto signing protocols as mitigations against the attack.

While Dark Skippy is a sophisticated attack, it requires a high level of expertise and is not currently seen in the wild. The discussion highlights the importance of secure boot, upgrading the Partially Signed Bitcoin Transaction (PSBT) process, and improving the randomness of upfront key generation as potential mitigations.

However, it is emphasized that current reputable hardware wallets still provide a high level of security, and there is no immediate action required for users.

Takeaways

  • Dark Skippy is a new attack that leaks secret keys from a malicious signing device.

  • The attack exploits the nonces used in the Schnorr and ECDSA signature schemes.

  • Previous versions of this attack were inefficient, but Dark Skippy improves upon them.

  • Mitigations against the attack include the RFC6979 deterministic nonce generation and anti-klepto signing protocols. Dark Skippy is a sophisticated attack that targets the nonce generation process during key generation and signing.

  • Mitigations for Dark Skippy include implementing secure boot, upgrading the PSBT process, and improving the randomness of upfront key generation.

  • Reputable hardware wallets currently provide a high level of security, and there is no immediate action required for users.

  • The discussion highlights the importance of ongoing research and development to enhance the security of hardware wallets and protect against potential future attacks.

Timestamps:

(00:00) - Intro

(00:45) - What is ‘Dark Skippy’?

(04:39) - Is it an old attack vector? Bitcoin’s security evolving with time

(12:41) - Sponsor

(15:22) - What is a nonce?, RFC6979 Deterministic nonce generation

(22:55) - Common ways of people losing their Bitcoin

(31:08) - Sponsor

(32:07) - Anti-klepto signing protocols; ways to mitigate risks of losing coins

(39:51) - Updating PSBT to help mitigate this attack

(43:26) - The role of Multisig in preventing the attack

(49:57) - Other attack vectors in malicious actor’s toolkit

(56:49) - Summarizing the steps to improve the ecosystem security

(1:00:18) - Closing thoughts

Links:

Sponsors:

Stephan Livera links:

Episoder(733)

Bridging Bitcoin to TradFi with Harsha Goli | SLP717

Bridging Bitcoin to TradFi with Harsha Goli | SLP717

In this episode, Harsha Goli from Magnolia Financial discusses the launch of their Bitcoin-enabled banking services across the US, navigating regulatory challenges, and the importance of partnerships ...

8 Feb 48min

Are DLCs the Solution to Bitcoin Lending? with Matt Black & Jay Patel | SLP716

Are DLCs the Solution to Bitcoin Lending? with Matt Black & Jay Patel | SLP716

In this episode, Stephan Livera discusses with Jay & Matt the evolution of Lygos Finance, a company formed from the acquisition of Atomic Finance, focusing on decentralized lending using Discreet Log ...

5 Feb 45min

Plan B El Salvador 2026 with Peter Schiff, Piero Coen, Skot | SLP715

Plan B El Salvador 2026 with Peter Schiff, Piero Coen, Skot | SLP715

I was joined by Peter Schiff, Piero Coen, Skot at Plan B Elsalvador as we discussed Gold vs Bitcoin, AI & a multipolar world, Bitcoin as freedom money for Latinos and open-source mining decentralizing...

3 Feb 1h 29min

Bitcoin Apps For Everyone with Danny Stagg, Aljaz, & Brianna | SLP714

Bitcoin Apps For Everyone with Danny Stagg, Aljaz, & Brianna | SLP714

In this episode, the discussion revolves around Breez's innovative SDK and its nodeless implementation, which simplifies the integration of Bitcoin and Lightning into applications. The guests share th...

28 Jan 43min

Hash-based signatures for Bitcoin's post-quantum future? with Jonas Nick | SLP713

Hash-based signatures for Bitcoin's post-quantum future? with Jonas Nick | SLP713

In this conversation, Stephan Livera and Jonas Nick discuss the implications of quantum computing on Bitcoin's security, focusing on the risks posed to cryptographic signatures. They explore the curre...

24 Jan 1h 12min

The Financial System Built on Bitcoin with Arnab Naskar | SLP712

The Financial System Built on Bitcoin with Arnab Naskar | SLP712

In this conversation, Arnab Naskar from Stokr discusses the intersection of Bitcoin, tokenization, and capital markets. He explains how Bitcoin serves as both a store of value and a settlement layer, ...

23 Jan 56min

Lightning for Bitcoin Treasuries with Dave Lund | SLP711

Lightning for Bitcoin Treasuries with Dave Lund | SLP711

In this episode Dave Lund, CEO of FlowRate, discusses the emerging concept of yield in the Lightning Network. Dave shares his background in the Bitcoin space and explains how FlowRate aims to bridge t...

20 Jan 50min

Strive: Amplified Bitcoin Exposure Engine with Matt Cole | SLP710

Strive: Amplified Bitcoin Exposure Engine with Matt Cole | SLP710

In this conversation, Stephan Livera and Matt Cole discuss the rapid growth and strategic developments of Strive, a Bitcoin treasury company, particularly following its merger with Semler Scientific. ...

15 Jan 1h 8min

Populært innen Teknologi

lydartikler-fra-aftenposten
romkapsel
tomprat-med-gunnar-tjomlid
nasjonal-sikkerhetsmyndighet-nsm
teknisk-sett
energi-og-klima
teknologi-og-mennesker
shifter
smart-forklart
elektropodden
rss-impressions-2
fornybaren
rss-ai-forklart
pedagogisk-intelligens
rss-alt-vi-kan
rss-polypod
rss-snakk-om-sikkerhet
rss-ki-praten
rss-alt-som-gar-pa-strom
rss-heis