Dark Skippy: A New Attack on Bitcoin Hardware Wallets? With Nick, Lloyd and Robin SLP597

Dark Skippy: A New Attack on Bitcoin Hardware Wallets? With Nick, Lloyd and Robin SLP597

Dark Skippy is a new attack that in theory, makes it much easier for a malicious person to steal your coins. Listen in to learn about some of the ins and outs here, as well as mitigation and the path forward for the industry from @utxoclub , @LLFOURN & @robin_linus .

  • Why air gapping is not the be all end all

  • Dark Skippy in context with other attacks

  • Security while signing transactions, and security while generating keys

  • RFC6979 Deterministic nonce generation

  • Updating PSBT to help mitigate this attack

Summary

The conversation discusses the ‘Dark Skippy’ attack, a new method for leaking secret keys from a malicious signing device. The attack takes advantage of the nonces used in the Schnorr and ECDSA signature schemes. The new attack vector can potentially extract private keys and seed words from hardware wallets. The attack targets the nonce generation process during key generation and signing. The previous versions of this attack were inefficient, but Dark Skippy improves upon them. The contributors explain how the attack came about and its implications for hardware wallet security. They also discuss the RFC6979 deterministic nonce generation and the concept of anti-klepto signing protocols as mitigations against the attack.

While Dark Skippy is a sophisticated attack, it requires a high level of expertise and is not currently seen in the wild. The discussion highlights the importance of secure boot, upgrading the Partially Signed Bitcoin Transaction (PSBT) process, and improving the randomness of upfront key generation as potential mitigations.

However, it is emphasized that current reputable hardware wallets still provide a high level of security, and there is no immediate action required for users.

Takeaways

  • Dark Skippy is a new attack that leaks secret keys from a malicious signing device.

  • The attack exploits the nonces used in the Schnorr and ECDSA signature schemes.

  • Previous versions of this attack were inefficient, but Dark Skippy improves upon them.

  • Mitigations against the attack include the RFC6979 deterministic nonce generation and anti-klepto signing protocols. Dark Skippy is a sophisticated attack that targets the nonce generation process during key generation and signing.

  • Mitigations for Dark Skippy include implementing secure boot, upgrading the PSBT process, and improving the randomness of upfront key generation.

  • Reputable hardware wallets currently provide a high level of security, and there is no immediate action required for users.

  • The discussion highlights the importance of ongoing research and development to enhance the security of hardware wallets and protect against potential future attacks.

Timestamps:

(00:00) - Intro

(00:45) - What is ‘Dark Skippy’?

(04:39) - Is it an old attack vector? Bitcoin’s security evolving with time

(12:41) - Sponsor

(15:22) - What is a nonce?, RFC6979 Deterministic nonce generation

(22:55) - Common ways of people losing their Bitcoin

(31:08) - Sponsor

(32:07) - Anti-klepto signing protocols; ways to mitigate risks of losing coins

(39:51) - Updating PSBT to help mitigate this attack

(43:26) - The role of Multisig in preventing the attack

(49:57) - Other attack vectors in malicious actor’s toolkit

(56:49) - Summarizing the steps to improve the ecosystem security

(1:00:18) - Closing thoughts

Links:

Sponsors:

Stephan Livera links:

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(771)

Bitcoiners Must Remove Single Points of Failure | Dhruv Bansal SLP771

Bitcoiners Must Remove Single Points of Failure | Dhruv Bansal SLP771

Recent attacks exposed how even large, educated Bitcoin holders remained exposed through single-vendor setups. The core lesson is that self-custody alone does not remove single points of failure; deli...

10 Sep 49min

Interviews at Origin Seoul 2026 | SLP770

Interviews at Origin Seoul 2026 | SLP770

Official Podcast Episode: https://stephanlivera.com/77000:00 - Interview with Gabriele Vernetti of Stratum V2 @gitgab1915:38 - Interview with Jimmy Kostro @jimmykostro13:14 - Interview with James Chec...

3 Sep 41min

Bitcoin Asia (HK) 2026 Day 2 Interviews | SLP769

Bitcoin Asia (HK) 2026 Day 2 Interviews | SLP769

Interviews at Bitcoin Asia 2026 Day 200:00 - Piriya Sambandaraksa05:14 - Alexander Mann11:04 - Shone Anstey of LQWD17:03 -Liam Eagen from Ideal GroupLinks: https://x.com/piriyahttps://x.com/idealgroup...

31 Aug 27min

Bitcoin Asia (HK) 2026 Day 1 Interviews | SLP768

Bitcoin Asia (HK) 2026 Day 1 Interviews | SLP768

In this episode, I interviewed several people at Bitcoin Asia 2026.Timestamps:00:00 - Interview with Adam Poulton06:28 Interview with Giovanni Santostasi15:18 Interview Jeff Walton of Strive34:11 Inte...

29 Aug 40min

Wallet Playground for learning Bitcoin self custody with Piers Macrae | SLP767

Wallet Playground for learning Bitcoin self custody with Piers Macrae | SLP767

In this episode, Piers Macrae demonstrates Wallet Playground and explains why hardware wallets are signing devices, not wallets.Timestamps:01:10 — Teach Me vs Do It For Me03:23 — Test Any Wallet Free ...

25 Aug 29min

Dice Rolls, Entropy, and SeedSigner | Keith Mukai SLP766

Dice Rolls, Entropy, and SeedSigner | Keith Mukai SLP766

In this episode, Keith Mukai of SeedSigner joins to explain why 1.4 percent variance in cheap dice still delivers full 128-bit entropy and how to verify rolls across devices.Timestamps:03:10 — Cheap D...

22 Aug 52min

Jade for Single-Sig or Multisig | Rich SLP765

Jade for Single-Sig or Multisig | Rich SLP765

In this episode, Rich from the team at Blockstream explains Jade, offline dice entropy, blind oracle protection, multisig descriptor recovery and the new Blockstream Swaps beta.Timestamps:00:45 — AI S...

19 Aug 27min

Wavelength Delivers Ark-Based Lightning Without Node Overhead | Roasbeef & Michael Levin SLP764

Wavelength Delivers Ark-Based Lightning Without Node Overhead | Roasbeef & Michael Levin SLP764

Lightning Labs built Wavelength to deliver self-custodial Lightning payments without forcing users to run nodes, manage channels, or handle liquidity.Olaoluwa Osuntokun, CTO and co-founder of Lightnin...

14 Aug 50min

Populärt inom Teknik

uppgang-och-fall
elbilsveckan
market-makers
bilar-med-sladd
rss-elektrikerpodden
rss-laddstationen-med-elbilen-i-sverige
rss-veckans-ai
rss-en-ai-till-kaffet
gubbar-som-tjotar-om-bilar
rss-technokratin
skogsforum-podcast
natets-morka-sida
bli-saker-podden
developers-mer-an-bara-kod
hej-bruksbil
rss-uppgang-och-fall
solcellskollens-podcast
rss-it-sakerhetspodden
rss-digitala-influencer-podden
rss-fabriken-2