Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Asking for public security audit concern to profanity vulnerability #28360

Closed
psixoz-korvin opened this issue Oct 12, 2022 · 1 comment
Closed
Labels
community Community contribution

Comments

@psixoz-korvin
Copy link

psixoz-korvin commented Oct 12, 2022

Good day, Solana adopters, as i'm a part of big solana dev familiy, I'm trully worried about profanity well known vulnerability in Eth network. As we know profanity gave an opportunity to create "smooth adresses" like 0x9999111110000aaabf
on Eth using BIP-39 base such as Solana.
johguse/profanity#61 showed security vulnerability of "smooth adresses" -> generated public\private keys based on eliptic curve encryption and that they much more likely can be force bruted.

So i would rather ask a team memebers, if it's possible, to audit and sound the results of such security audit: if Solana public keys\vote keys like these ones:
Frog1Fks1AVN8ywFH3HTFeYojq6LQqoEPzgQFx2Kz5Ch
LSV1G6qbrCWhsPQLmm623cqXU58Ha2mZKHJ9ZadbcLv
C1ocKDYMCm2ooWptMMnpd5VEB2Nx4UMJgRuYofysyzcA
Cogent51kHgGLHr7zpkpRjGYFXM57LgjHjDdqXd4ypdA
Certusm1sa411sMpV9FPqU5dXAYhmmhygvxJ23S6hJ24
are fully secure.
Thank you.

@psixoz-korvin psixoz-korvin added the community Community contribution label Oct 12, 2022
@steveluscher
Copy link
Contributor

Asked our resident cryptographer @samkim-crypto for some input here, and it sounded to me like there's nothing concrete we can do here. If you have suggestions, please feel free to reopen this!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
community Community contribution
Projects
None yet
Development

No branches or pull requests

2 participants