Dark Skippy: A New Attack on Bitcoin Hardware Wallets? With Nick, Lloyd and Robin SLP597

Dark Skippy: A New Attack on Bitcoin Hardware Wallets? With Nick, Lloyd and Robin SLP597

Dark Skippy is a new attack that in theory, makes it much easier for a malicious person to steal your coins. Listen in to learn about some of the ins and outs here, as well as mitigation and the path forward for the industry from @utxoclub , @LLFOURN & @robin_linus .

  • Why air gapping is not the be all end all

  • Dark Skippy in context with other attacks

  • Security while signing transactions, and security while generating keys

  • RFC6979 Deterministic nonce generation

  • Updating PSBT to help mitigate this attack

Summary

The conversation discusses the ‘Dark Skippy’ attack, a new method for leaking secret keys from a malicious signing device. The attack takes advantage of the nonces used in the Schnorr and ECDSA signature schemes. The new attack vector can potentially extract private keys and seed words from hardware wallets. The attack targets the nonce generation process during key generation and signing. The previous versions of this attack were inefficient, but Dark Skippy improves upon them. The contributors explain how the attack came about and its implications for hardware wallet security. They also discuss the RFC6979 deterministic nonce generation and the concept of anti-klepto signing protocols as mitigations against the attack.

While Dark Skippy is a sophisticated attack, it requires a high level of expertise and is not currently seen in the wild. The discussion highlights the importance of secure boot, upgrading the Partially Signed Bitcoin Transaction (PSBT) process, and improving the randomness of upfront key generation as potential mitigations.

However, it is emphasized that current reputable hardware wallets still provide a high level of security, and there is no immediate action required for users.

Takeaways

  • Dark Skippy is a new attack that leaks secret keys from a malicious signing device.

  • The attack exploits the nonces used in the Schnorr and ECDSA signature schemes.

  • Previous versions of this attack were inefficient, but Dark Skippy improves upon them.

  • Mitigations against the attack include the RFC6979 deterministic nonce generation and anti-klepto signing protocols. Dark Skippy is a sophisticated attack that targets the nonce generation process during key generation and signing.

  • Mitigations for Dark Skippy include implementing secure boot, upgrading the PSBT process, and improving the randomness of upfront key generation.

  • Reputable hardware wallets currently provide a high level of security, and there is no immediate action required for users.

  • The discussion highlights the importance of ongoing research and development to enhance the security of hardware wallets and protect against potential future attacks.

Timestamps:

(00:00) - Intro

(00:45) - What is ‘Dark Skippy’?

(04:39) - Is it an old attack vector? Bitcoin’s security evolving with time

(12:41) - Sponsor

(15:22) - What is a nonce?, RFC6979 Deterministic nonce generation

(22:55) - Common ways of people losing their Bitcoin

(31:08) - Sponsor

(32:07) - Anti-klepto signing protocols; ways to mitigate risks of losing coins

(39:51) - Updating PSBT to help mitigate this attack

(43:26) - The role of Multisig in preventing the attack

(49:57) - Other attack vectors in malicious actor’s toolkit

(56:49) - Summarizing the steps to improve the ecosystem security

(1:00:18) - Closing thoughts

Links:

Sponsors:

Stephan Livera links:

Episoder(733)

Bitcoin on the map with Dr. Padraig Corcoran | SLP709

Bitcoin on the map with Dr. Padraig Corcoran | SLP709

In this conversation, Dr. Padraig Corcoran discusses his research on Bitcoin as a medium of exchange, focusing on the use of spatial data from OpenStreetMap and BTC Map. He explores the dynamics of me...

14 Jan 36min

Has Lightning Quietly Succeeded? with Nate (Beeforbacon) | SLP708

Has Lightning Quietly Succeeded? with Nate (Beeforbacon) | SLP708

In this conversation, I discuss with Nate the current state and future prospects of the Lightning Network as of December 2025. They explore various aspects such as payment success rates, public percep...

29 Des 20251h 20min

Bitcoin Network Monitoring with B10C | SLP707

Bitcoin Network Monitoring with B10C | SLP707

In this episode, B10C discusses his work in the Bitcoin ecosystem, focusing on the importance of censorship resistance, the role of mining pools, and the implications of OFAC sanctions on Bitcoin tran...

19 Des 20251h 22min

Start your career in Bitcoin with ₿OSS Challenge with Satsie, Macgyver and Sangbida | SLP706

Start your career in Bitcoin with ₿OSS Challenge with Satsie, Macgyver and Sangbida | SLP706

In this episode the discussion revolves around the BOSS program (Bitcoin Open Source Software), which offers a 30-day series of technical programming exercises aimed at engaging participants in Bitcoi...

16 Des 202540min

Floresta: Making Bitcoin Node Verification Accessible with Davidson Souza | SLP705

Floresta: Making Bitcoin Node Verification Accessible with Davidson Souza | SLP705

In this conversation, Davidson, a Bitcoin developer, discusses his project Floresta, which aims to provide a lightweight Bitcoin node solution that balances privacy, security, and usability. He explai...

14 Des 20251h 3min

Multisig Bitcoin custody for businesses with Kevin Loaec | SLP704

Multisig Bitcoin custody for businesses with Kevin Loaec | SLP704

In this conversation, Stephan Livera and Kevin Loaec discuss the challenges and advancements in self-custody and multi-signature (multisig) wallets for businesses. They explore the reasons why many bu...

5 Des 20251h 1min

Bitcoin Spam: A Libre Relay View with Proof of Cash | SLP703

Bitcoin Spam: A Libre Relay View with Proof of Cash | SLP703

Stephan Livera and Kevin Cai dive into the Bitcoin spam debate, breaking down the different camps in the community, the line between consensus and policy, and how transaction filters, dust limits, and...

17 Nov 20252h 28min

Bitcoin Payments in 700K locations in South Africa with Carel van Wyk | SLP702

Bitcoin Payments in 700K locations in South Africa with Carel van Wyk | SLP702

In this conversation, Stephan Livera and Carel Van Wyk discuss the evolution of Bitcoin as a medium of exchange, focusing on the role of MoneyBadger in facilitating Bitcoin payments across South Afric...

14 Nov 202552min

Populært innen Teknologi

lydartikler-fra-aftenposten
romkapsel
tomprat-med-gunnar-tjomlid
nasjonal-sikkerhetsmyndighet-nsm
teknisk-sett
energi-og-klima
teknologi-og-mennesker
shifter
smart-forklart
elektropodden
rss-impressions-2
fornybaren
rss-ai-forklart
pedagogisk-intelligens
rss-alt-vi-kan
rss-polypod
rss-snakk-om-sikkerhet
rss-ki-praten
rss-alt-som-gar-pa-strom
rss-heis