Odaily Planet Daily News: In response to a security company's disclosure of a serious vulnerability yesterday that affects cryptocurrency wallets using Libbitcoin Explorer 3.x, CZ commented, "Self-hosted wallets are not without risk. If you know what you are doing, I support self-hosting. The vulnerability is caused by a random number generator using a 32-bit seed, which is not random enough for modern cracking (such as GPUs). Trust Wallet and Binance Wallet do not use it to generate mnemonics." According to SlowMist Zone, Distrust has discovered a serious vulnerability that affects cryptocurrency wallets using Libbitcoin Explorer 3.x. The vulnerability allows attackers to access the private key of the wallet by cracking the Mersenne Twister pseudo-random number generator (PRNG), which has now caused actual impact in the real world. The vulnerability affects all users who use Libbitcoin Explorer 3.x to generate wallets, as well as applications using the libbitcoin-system 3.6 development library. Known affected cryptocurrencies include Bitcoin, Ethereum, Ripple, Dogecoin, Solana, Litecoin, Bitcoin Cash, and Zcash. Due to the existence of this vulnerability, attackers can access and control users' wallets and steal funds. As of August 2023, more than $900,000 in cryptocurrency assets have been stolen.
