Amber Group uses simple hardware to show just how fast, easy the Wintermute hack was

Share This Post

The Hong Kong-based group documented its reproduction of the hack on its tech and security oriented blog, seeking insights into Web3’s attack surface spectrum.

Amber Group has reproduced the recent Wintermute hack, the Hong Kong-based crypto finance service provider announced on its blog. The process was fast and simple, and used hardware easily accessible to consumers. Wintermute lost over $160 million in a private key hack on Sept. 20.

Reproducing the hack can help “build a better understanding of the attack surface spectrum across Web3,” Amber Group said. It was only hours after the hack of UK-based crypto market maker Wintermute was revealed that researchers were able to pin the blame for it on the Profanity vanity address generator.

One analyst suggested that the hack had been an inside job, but that conclusion was rejected by Wintermuteand others. The Profanity vulnerability was already known before the Wintermute hack.

Amber Group was able to reproduce the hack in less than 48 hours after preliminary setup that took less than 11 hours. Amber Group used a Macbook M1 with 16GB RAM in its research. That was far speedier, and used more modest equipment, than how a previous analyst had estimated the hack would play out, Amber Group noted.

Related: The impact of the Wintermute hack could have been worse than 3AC, Voyager and Celsius — Here is why

Amber Group detailed the process it used in the re-hack, from obtaining the public key to reconstructing the private one, and it described the vulnerability in the way Profanity generates random numbers for the keys it produces. The group notes that its description “does not purport to be complete.” It added, repeating a message that has often been spread before:

“As well documented by this point — your funds are not safe if your address was generated by Profanity […] Always manage your private keys with caution. Don’t trust, verify.”

The Amber Group blog has been technically oriented from its inception, and has addressed security issues before. The group achieved a $3-billion valuation in February after a Series B+ funding round.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bitcoin Breaks $73,000, Yet Google Searches Stay Stagnant—Is Hype Fading?

Reports showed that Bitcoin price slightly dipped in the last 24 hours but continues to hang on the $69,000 level after breaching over $73,000 several days ago Despite the impressive BTC price hike,

Dogecoin Bollinger Bands Squeezes Tighter Than It Was Before 2021 Rally, What This Means

Dogecoin has had quite an eventful few days in terms of price action, trading volume, trading activity, and interest among investors Dogecoin led the entire market in inflows, outperforming even

Cardano Founder Slams Meme Coins As ‘Worthless’, Warns Speculators

Charles Hoskinson, the founder of Cardano, delivered a scathing critique of meme coins in a live stream broadcasted on Halloween, October 31, 2024 Speaking from Colorado, Hoskinson addressed the

Republican Sweep? What Prediction Markets Are Forecasting for Election Day

With just four days left until the US 2024 election, the latest prediction market data paints a shifting landscape: former President Donald Trump’s odds have taken a downturn, while Vice President

21Shares files S-1 application for an XRP ETF

Asset management company 21Shares has joined the list of firms that have filed applications with the US Securities and Exchange Commission (SEC) for a spot XRP exchange-traded fund (ETF) On Nov 1,

How To Trade Bitcoin During The US Election, Expert Reveals

As the United States approaches its presidential election on Tuesday, November 5, 2024, the Bitcoin market is bracing for significant volatility In the lead-up to the election, Bitcoin surged to a