Author

Topic: How vulnerable is electrum to the seed issue that android has (Read 1294 times)

hero member
Activity: 715
Merit: 500
Bitcoin Venezuela
legendary
Activity: 2632
Merit: 1023
At this point I do not know if the android version of Electrum is concerned, but that's quite possible. I am investigating this problem right now.

update:
From what we can gather, this issue seems to be a Java PRNG implementation issue.
Electrum should be safe from this, because it does not use Java; it uses /dev/urandom directly.
However, there might be other bugs in the Android platform, which is under overall scrutiny following this issue.



how about the OSX
and windows version.?
legendary
Activity: 1896
Merit: 1353
I restored a wallet using a bit address single wallet private key qr code. All this was done over a android running a cm10 based mod.
Does the issue just apply to the seed or are the actual address's that are created off of it in question?

Am I at risk Wink specifically what are the implications of my bitaddress seed??

That issue had nothing to do with the seed, or the way private keys are generated. it had to do with the way transaction are signed.
Note that if you generated keys with Electrum, and then imported those keys in one of the Android wallets concerned with this issue, then you are at risk.
member
Activity: 84
Merit: 10
I restored a wallet using a bit address single wallet private key qr code. All this was done over a android running a cm10 based mod.
Does the issue just apply to the seed or are the actual address's that are created off of it in question?

Am I at risk Wink specifically what are the implications of my bitaddress seed??
legendary
Activity: 1896
Merit: 1353
At this point I do not know if the android version of Electrum is concerned, but that's quite possible. I am investigating this problem right now.

update:
From what we can gather, this issue seems to be a Java PRNG implementation issue.
Electrum should be safe from this, because it does not use Java; it uses /dev/urandom directly.
However, there might be other bugs in the Android platform, which is under overall scrutiny following this issue.
legendary
Activity: 2632
Merit: 1023
https://bitcointalksearch.org/topic/announce-android-key-rotation-271831

How vulnerable is electrum to the seed issue that android has
particularly on the various os

eg

OSX 10.8 +
WIN7 / WIN 8
UBUNTU

etc
etc

does any one even know???

how can we check we are not doing

http://www.nilsschneider.net/2013/01/28/recovering-bitcoin-private-keys.html

this?
Jump to: