|

Bitcoin SV multisig mechanism gets hacked, user loses nearly $100,000

  • A BSV user reports that he has lost nearly $100,000 due to a multisig script bug.
  • BSV/USD shows little reaction to the news, continues moving inside the $150-$180 range.

The hackers exploited Bitcoin SV network vulnerability to steal the assets of a user. The Chinese media outlets report that at least one user lost 600 BSV, $97,000, due to the hack attack.

How the assets were stolen

The cryptocurrency user, aka aaron67, wrote in his blog post that the multisig solution implemented by Electrum SV contained a critical mistake that cost him 600 BSV.

The incident happened at around 2.00 am on November 6, when the user withdrew 6 UTXO (Unspent Transaction Output) with multisig, worth 100 BSV each. Later on the same day, he attempted another withdrawal of an extra 6 UTXO and an hour later, the hacker used the exploit to transfer all the money to the address 1LcKTzSzpMAwH4bzymGSkbhY2EBpmT7n5J. 

BSV transactions

BSV transactions

The co-founder of Blockstream, Gregory Maxwell, explained that Bitcoin SV developers ripped out the existing multisig mechanism P2SH and had to progress their own scheme. Thus, they came up with the idea of Electrum SV, also known as accumulator multisig.

This script looks similar to a P2PKH (Pay to Pubkey Hash) algorithm that adds up the number of passes and compares them to a threshold. In fact, the script used the 'less than or equal' parameter instead of 'greater than or equal' number of signatures in a multisig. 

The result is that these scripts had no security at all and could just be spent by a scriptsig that pushes a couple of zeros. Because the only sane usage is when you provide exactly the threshold number of signatures (why would you waste fees providing too many signatures?!?) they presumably only ever tested the 'orequals' path and didn't notice that it didn't work with too many signatures as intended but did work with too few signatures (such as none at all). 

A famous cryptographer, Adam Back, believes that this bug affects only BSV as the standard P2SH multisig was removed and replaced by a buggy home-brew solution after the fork.

BSV is locked in a range

Meanwhile, at the time of writing, Bitcoin SV is changing hands at $164. The coin with the current market capitalization of $3 billion has gained nearly 2% on a day-to-day basis amid the recovery from the recent low of $146 hit on November 4.  The coin has been locked in a range of $150-$180 since the beginning of September.

IntoTheBlock's data on In/Out of the Money Around Price (IOMAP) shows that there is strong resistance between the current price and $169 as nearly 100,000 addresses are holding 764 million coins there. This formidable supply wall can trigger a sharp downside correction if prices rebound strongly enough. 

Once it is out of the way, the next big cluster of addresses around $181, which roughly coincides with the upper border of the recent consolidation channel, will come into focus.

BSV's IOMP data

BSV's IOMAP data

On the other hand, the way to the south is less cluttered with the supply areas. Nearly 135,000 addresses holding over 500,000 coins create local support on approach to $160. If it gives way, the sell-off may gain traction. The IOMAP cohorts show that the next significant supply level sits around $155 and coincides with the lower barrier of the consolidation channel.

BSV/USD daily chart

BSV/USD daily chart

On the daily chart, the above-mentioned resistance of $181 is reinforced by EMA100 and the Bollinger Bands upper line. Meanwhile, the lower line of the BB confirms the support zone in the approach to $155 level.

Author

Tanya Abrosimova

Tanya Abrosimova

Independent Analyst

 

More from Tanya Abrosimova
Share:

Markets move fast. We move first.

Orange Juice Newsletter brings you expert driven insights - not headlines. Every day on your inbox.

By subscribing you agree to our Terms and conditions.

Editor's Picks

Ripple holds $1.82 support as low retail demand weighs on the token

Ripple (XRP) is trading between a key support at $1.82 and resistance at $2.00 at the time of writing on Thursday, reflecting the lethargic sentiment in the broader cryptocurrency market.

Aster declines for fifth straight day despite buyback efforts

Aster trades under intense selling pressure, recording 3% loss at press time on Thursday. The perpetual-focused exchange resumed its Stage 4 buyback program on Wednesday and currently holds almost 52 million ASTER tokens.

Crypto Today: Bitcoin, Ethereum hold steady while XRP slides amid mixed ETF flows

Bitcoin eyes short-term breakout above $87,000, underpinned by a significant increase in ETF inflows. Ethereum defends support around $2,800 as mild ETF outflows suppress its recovery. XRP holds above at $1.82 amid bearish technical signals and persistent inflows into ETFs.

Bitcoin steadies near $87,000 as strong ETF inflows offset bearish pressure

Bitcoin is attempting to stabilize, holding near $87,000 on Thursday after this week’s pullback. Institutional demand shows signs of optimism, as US-listed spot Bitcoin Exchange-Traded Funds (ETFs) recorded fresh inflows of over $457 million on Wednesday.

Orange Juice Newsletter – Smart insights by real people. Every day.

A free newsletter highlighting key market trends to help traders stay a step ahead. Daily insights on the most relevant trading topics, compiled by our experts in an easy-to-read format so you never miss an important move.

Bitcoin: Fed delivers, yet fails to impress BTC traders

Bitcoin (BTC) continues de trade within the recent consolidation phase, hovering around $92,000 at the time of writing on Friday, as investors digest the Federal Reserve’s (Fed) cautious December rate cut and its implications for risk assets.