SoylentNews
SoylentNews is people
https://soylentnews.org/

Title    A "Tamper-Proof" Currency Wallet Just Got Backdoored by a 15-Year-Old
Date    Friday March 23 2018, @11:48AM
Author    martyb
Topic   
from the And-I-would-have-gotten-away-with-it-too,-if-it-weren't-for-you-meddling-kids^H dept.
https://soylentnews.org/article.pl?sid=18/03/23/0050208

Fnord666 writes:

Never say can't.

For years, executives at France-based Ledger have boasted their specialized hardware for storing cryptocurrencies is so securely designed that resellers or others in the supply chain can't tamper with the devices without it being painfully obvious to end users. The reason: "cryptographic attestation" that uses unforgeable digital signatures to ensure that only authorized code runs on the hardware wallet.

"There is absolutely no way that an attacker could replace the firmware and make it pass attestation without knowing the Ledger private key," officials said in 2015. Earlier this year, Ledger's CTO said attestation was so foolproof that it was safe to buy his company's devices on eBay.

On Tuesday, a 15-year-old from the UK proved these claims wrong. In a post published to his personal blog, Saleem Rashid demonstrated proof-of-concept code that had allowed him to backdoor the Ledger Nano S, a $100 hardware wallet that company marketers have said has sold by the millions. The stealth backdoor Rashid developed is a minuscule 300-bytes long and causes the device to generate pre-determined wallet addresses and recovery passwords known to the attacker. The attacker could then enter those passwords into a new Ledger hardware wallet to recover the private keys the old backdoored device stores for those addresses.

Oops. To be fair, he's a very clever 15 year old.


Original Submission

Links

  1. "Fnord666" - https://soylentnews.org/~Fnord666/
  2. "Never say can't" - https://arstechnica.com/information-technology/2018/03/a-tamper-proof-currency-wallet-just-got-trivially-backdoored-by-a-15-year-old/
  3. "said in 2015" - https://www.ledger.fr/2015/03/27/how-to-protect-hardware-wallets-against-tampering/
  4. "safe to buy his company's devices on eBay" - https://twitter.com/BTChip/status/949679898012078082
  5. "post published to his personal blog" - https://saleemrashid.com/2018/03/20/breaking-ledger-security-model/
  6. "Original Submission" - https://soylentnews.org/submit.pl?op=viewsub&subid=25509

© Copyright 2024 - SoylentNews, All Rights Reserved

printed from SoylentNews, A "Tamper-Proof" Currency Wallet Just Got Backdoored by a 15-Year-Old on 2024-04-16 05:52:00