I mean, nothing changed about them as airgapped signing devices aside from the RNG issue. There are a few things the RNG gets used in but they're lesser used features. Key teleport, hsm, that sort of thing.
Many are migrating out of an abundance of caution, but I haven't seen anything detailing an attack vector that applies.
We do know more about their sloppiness and poor testing though, so that's enough for some I guess...
Login to reply
Replies (2)
yeah the thing bothering me is the sloppiness and rushed approach to commits with such poor documentation. But I feel like people will go over everything with a fine toothed comb now and we will hopefully learn of any other potential exploits
Almost makes you sad they're still gonna go under.
Hope whoever gets their IP in liquidation open sources everything, because while the company was fucked the design is largely good.