Crypto infrastructure giant Fireblocks has publicly revealed security vulnerabilities in the technology used by over a dozen major digital asset wallet providers.
If unaddressed, the company warned that attackers could exploit the bugs to steal from millions of customers.
The Bitforge Exploits
The set of vulnerabilities – collectively referred to as “Bitforge” – apply to popular multi-party-computation (MPC) protocols, including GG-18 , GG-20, and Lindell17. These protocols allow cryptocurrency to be controlled and managed by multiple individuals and groups.
“The BitForge vulnerabilities, if left unremedied, would enable attackers to exploit a newly discovered flaw in the GG18 and GG20 protocols by exfiltrating the full private key due to a missing zero-knowledge proof,” wrote Fireblocks in a statement on Wednesday.
The company stated that all vendors using the protocols “should be considered vulnerable.”
The Lindell17 vulnerability, it wrote, was due to wallet provider
We współpracy z: https://cryptopotato.com/major-crypto-wallets-found-vulnerable-to-key-extraction-fireblocks-warns/