Bitcoin SV Multisig Bug Exploited Resulting in Potential Coin Loss

The exploit was reported by Blockstream co-founder Gregory Maxwell (a.k.a. /u/nullc), and retweeted by crypto podcaster Ruben Somsen;

The pay to script hash (P2SH) was deprecated as part of the Bitcoin SV Genesis upgrade in February 2020. It had been replaced with this new threshold based script which was supposed to accept more than a set number of signatures.

Accidental and Untested

As explained by cryptographer Adam Back the bug created a ‘less than or equal’ instead of ‘greater than or equal’ number of signatures in the multisig which resulted in the exploit.

“Presume they removed the standard p2sh multisig and replaced with this bugged home-brew multisig due to BSV anti-soft fork posturing, to undo soft-forks.”

Maxwell elaborated that the result was that these scripts had no security at all and could just be spent by a script that sets is to zero valid signatures. He added that no real funds were lost and that the flaw was likely accidental rather than malicious.

“So, of course, zillions of BSV have been taken. Even though there was nothing of value lost here there are probably a few lessons to extract from this,”

He said that there had been a lack of testing and the situation would have been avoided entirely had BSV not ripped out the ‘competent, time tested, and highly peer-reviewed mechanisms for multisig by Bitcoin in favor of far less efficient homebrew crypto.’

Maxwell discovered a similar potential replay attack vector on Bitcoin SV in late 2019 that could have been executed to steal unsplit funds of BTC users on the Bitcoin SV chain after the Genesis upgrade.

BSV Price Update

Bitcoin SV prices are largely unchanged on the day and week, hovering around $165. Unlike its more successful siblings, BSV has done very little in terms of price action in 2020.

The Bitcoin fork did spike to top $400 in January as it was reported that Craig Wright received the Tulip Trust keys which could have unlocked a fortune in BTC. It turned out that this was not the case, and BSV quickly dumped back to its lethargic levels. It is currently trading over 60% down from that peak and has lost 34% since a brief movement in August to $247.

BSV is currently positioned just outside the top ten in terms of market cap with $3 billion.

SPECIAL OFFER (Sponsored)
Binance Futures 50 USDT FREE Voucher: Use this link to register & get 10% off fees and 50 USDT when trading 500 USDT (limited offer).


.custom-author-info{ border-top:none; margin:0px; margin-bottom:25px; background: #f1f1f1; } .custom-author-info .author-title{ margin-top:0px; color:#3b3b3b; background:#fed319; padding:5px 15px; font-size: 20px; } .author-info .author-avatar { margin: 0px 25px 0px 15px; } .custom-author-info .author-avatar img{ border-radius: 50%; border: 2px solid #d0c9c9; padding: 3px; }

The post appeared first on CryptoPotato

Buy Bitcoin with Credit Card

BitMex Leverage Trading

Automated Trading Bot

Related Posts

Leave a Reply

Bitcoin (BTC) $ 97,964.25 3.53%
Ethereum (ETH) $ 3,345.05 8.56%
Tether (USDT) $ 1.00 0.07%
Solana (SOL) $ 254.50 8.18%
BNB (BNB) $ 620.84 1.91%
XRP (XRP) $ 1.18 7.82%
Dogecoin (DOGE) $ 0.385277 2.00%
USDC (USDC) $ 0.997939 0.29%
Lido Staked Ether (STETH) $ 3,343.73 8.61%
Cardano (ADA) $ 0.788455 1.91%