🚨 Critical private key vulnerability found in secp256k1-node.

Attackers can retrieve private keys using low-order curve points through only 11 ECDH sessions.

nostr:npub1az9xj85cmxv8e9j9y80lvqp97crsqdu2fpu3srwthd99qfu9qsgstam8y8 and nostr:npub1p4kg8zxukpym3h20erfa3samj00rm2gt4q5wfuyu3tg0x3jg3gesvncxf8 discuss the vulnerability in BR087.

https://m.primal.net/MYRP.mov

Reply to this note

Please Login to reply.

Discussion

What does this mean? Huh!?

Low order curve points? Through only 11 ECDH sessions!?