Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

So, implications-wise: where is the rub here? Where can this be used or exploited for fun or profit?


1.) Pick one of the old abandoned Bitcoin addresses

2.) Start looking for a key match using this technique

3.) Heat death of the universe

4.) Profit!


I wonder how many of the Lastpass vaults had the private keys in the very unencrypted notes sections...


Find somewhere people look at only a small fraction of a hash?

That's mostly git commits.


Oh, that's evil.

In some places my tooling only shows 7 digits of the git SHA. I wonder how hard it would be to write something to tweak my commits until those are all the same. And I wonder how long it would take until someone noticed...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: