39 subscribers
Go offline with the Player FM app!
Episode 83: The Milk Sad Vulnerability
Manage episode 374536293 series 2860967
In this episode, Aaron (@AaronvanW) and Sjors (@provoost) discuss a vulnerability in Libbitcoin dubbed “Milk Sad”, which allowed people to generate private key seeds with such weak entropy that their private keys could be brute forced and their coins stolen. Aaron and Sjors examine how this vulnerability (could have) ended up in Libbitcoin as well as in Andreas Antonopoulos’ book Mastering Bitcoin, to what extent it should be considered a bug, and more.
For more information on Milk Sad, see: https://milksad.info/
Libbitcoin lead developer Eric Voskuil on Milk Sad: https://youtu.be/3uwl5xDdc7c
Sjors New Book: https://www.amazon.com/Bitcoin-Technical-innovations-Sjors-Provoost/dp/9090360425
THIS EPISODE’S SPONSORS:
Lower your time preference and lock-in your BITCOIN 2024 conference tickets today! Use the code BMLIVE for a 10% Discount! - https://b.tc/conference/2024
98 episodes
Manage episode 374536293 series 2860967
In this episode, Aaron (@AaronvanW) and Sjors (@provoost) discuss a vulnerability in Libbitcoin dubbed “Milk Sad”, which allowed people to generate private key seeds with such weak entropy that their private keys could be brute forced and their coins stolen. Aaron and Sjors examine how this vulnerability (could have) ended up in Libbitcoin as well as in Andreas Antonopoulos’ book Mastering Bitcoin, to what extent it should be considered a bug, and more.
For more information on Milk Sad, see: https://milksad.info/
Libbitcoin lead developer Eric Voskuil on Milk Sad: https://youtu.be/3uwl5xDdc7c
Sjors New Book: https://www.amazon.com/Bitcoin-Technical-innovations-Sjors-Provoost/dp/9090360425
THIS EPISODE’S SPONSORS:
Lower your time preference and lock-in your BITCOIN 2024 conference tickets today! Use the code BMLIVE for a 10% Discount! - https://b.tc/conference/2024
98 episodes
All episodes
×





1 Episode 93: The Great Consensus Cleanup Revival (And an Update on the Tornado Cash and Samourai Wallet Arrests) 51:00



1 Episode 90: Asynchronous Lightning Payments 36:59





1 Episode 85: Bitcoin Core 26.0 (And F2Pool’s OFAC Compliant Mining Policy) 37:19

1 Episode 84: Marathon Pool’s Invalid Block (And Some Updates About the Show) 22:14






1 Episode 78: Partially Signed Bitcoin Transactions (PSBTs) (And Dutch Auctions) 32:57


1 Episode 76: Stamps (And the Invalid Block Caused by It) 50:53






1 Episode 70: The Bitcoin Core 24.0 Bug (Or Why There Is a Bitcoin Core 24.0.1 Release) 23:04

Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.