Ripple Issues a Statement on “Biased Nonce Sense” Paper

Ripple Issues a Statement on “Biased Nonce Sense” Paper
фото показано с : blokt.com

2019-1-17 19:59

A new research paper by Joachim Breitner and Nadia Heninger about the repeated use of insufficiently random ‘nonces’ (‘k’ values) in ECDSA digital signatures has caught the attention of Ripple.

The San Francisco based blockchain startup talked about the research which highlights an attack that is more serious than previously known on digital signatures with imperfect nonces.

The Nonce Sense of Digital Signature

In the research titled, “Biased Nonce Sense: Lattice Attacks against Weak ECDSA Signatures in Cryptocurrencies” the authors suggest that inconsistent or repeated signature nonces could create a security problem for the users.

The authors computed hundreds of private keys for Bitcoins and dozens for Ethereum, Ripple, HTTPS, and SSH by doing cryptanalytic attacks against signatures in public blockchains and Internet scans.

Breitner and Heninger suggest that repeated nonce values can make the ECDSA keys insecure.

“In fact, any nonuniformity in the ECDSA signature nonces can reveal the private key, given sufficiently many signatures,” they noted.

What Did Ripple Say?

Ripple noted that the vulnerability is a result of a software defect “that signs transactions that are subsequently submitted to systems that use secp256k1 signatures — including Bitcoin, Ethereum, XRP Ledger and dozens of other distributed ledger technologies.”

However, Ripple said that the vulnerability is not present on the core software that runs these blockchains.

The company then went on to say that those using exclusively deterministic nonces will not be vulnerable to the attack mentioned in the paper.

It added that using deterministic nonces how they are described in RFC6979 has been the agreed industry recommendation for several years when generating signatures.

Ripple said that it is not an issue with the XRP ledger and that it’s an issue with ECDA signatures that are improperly made.

Ripple added that the systems using secp256k1 signatures and the ones that support reuse of private keys are affected and this includes Bitcoin, XRP Ledger, and many other blockchain systems.

Ripple recommended that users utilize Ed25519 keys or software using deterministic nonces in its signatures.

It went on to provide a flowchart and FAQ to help solve user queries.

Ripple Issues a Statement on “Biased Nonce Sense” Paper was originally found on Cryptocurrency News | Blockchain News | Bitcoin News | blokt.com.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Ripple (XRP) на Currencies.ru

$ 0.5181 (+0.31%)
Объем 24H $1.177b
Изменеия 24h: 3.33 %, 7d: -0.65 %
Cегодня L: $0.5162 - H: $0.5193
Капитализация $28.681b Rank 7
Цена в час новости $ 0.3278 (58.05%)

ripple paper digital blockchain signatures research biased

ripple paper → Результатов: 10


Ripple’s David Schwartz Shares Opinions For CoinDesk’s “Bitcoin At 10 The Satoshi White Paper” Series

David Schwartz is the CTO for Ripple, which has seen a lot of progress in the last few months. CoinDesk has been trying to bring more attention to the cryptocurrency world and its progress lately with a series titled, “Bitcoin at 10: The Satoshi White Paper.” Schwartz recently became a part of the series with […]

2018-10-30 09:44


Ripple’s CTO invented a distributed computer system 20 years before blockchain – ask him about it

The mysterious Satoshi Nakamoto is often credited with inventing blockchain – the tech behind the recent cryptocurrency and decentralization boom. But long before Nakamoto published his seminal paper that shaped Bitcoin as we know it, Ripple chief technology officer David Schwartz had already come up a similar concept.

2018-8-16 15:33