Mysterious message is warning bitcoiners about a State sponsored attack!

on . Posted in Patriot News Network

NEW YORK (PNN) - August 18, 2016 - The next version of Bitcoin Core, one of the most popular bitcoin wallets in existence, might be replaced with a malicious version courtesy of government-backed hackers, a warning on Bitcoin.org, the site that hosts downloads for Core, states. The message, posted on Wednesday, warns that the site could be compromised by “State sponsored attackers” so that anybody downloading an upcoming version of the Bitcoin Core wallet, which people use to store their bitcoins, will actually be given a hacked version of the software. In particular, the alert encourages Chinese bitcoin users and services to be vigilant “due to the origin of the attackers”.

“In such a situation, not being careful before you download [the software] could cause you to lose all your coins,” the alert on Bitcoin.org states. “This malicious software might also cause your computer to participate in attacks against the Bitcoin network.”

If a government, or anybody else, were to compromise Bitcoin.org and disseminate a malicious copy of Bitcoin Core to enough people, it could be a crippling attack on bitcoin unlike any we’ve seen before, siphoning millions and millions of dollars out of the market. If the warning on Bitcoin.org is based on fact, it could be very serious.

Bitcoin.org is maintained as an open-source project, meaning that a slew of contributors can upload a page to the site, and it has a peer review system for posts. The contributor who uploaded the alert, “Cobra-Bitcoin,” is understood to be in control of Bitcoin.org, Core developer Peter Todd said in an encrypted message, and so was able to bypass the peer review process for posts to the site.

Core developer Eric Lombrozo said, "There's absolutely nothing in the Bitcoin Core binaries, as built by the Bitcoin Core team, that has been targeted by State sponsored attackers that we know of at this point.”

However, it’s worth noting that in order to serve someone a fake version of Bitcoin Core, an attacker only needs to compromise the Bitcoin.org site, or fake a cryptographic certificate that would allow them to intercept someone’s encrypted HTTPS connection to Bitcoin.org and replace the real download with a hacked one without anybody noticing. This is known as a man-in-the-middle attack.

To mitigate the effects of a possible hack, the post on Bitcoin.org encourages users to verify that the Bitcoin Core version they download hasn’t been tampered with by checking it against a cryptographic key that marks official software as being created by the team of legitimate Core developers.

“(As) long as you check signatures properly, even a State sponsored attacker would have a hard time compromising a build of the Bitcoin Core software,” Todd wrote in a message.

Verifying software is a fairly standard security practice, and so suggesting that users take this precaution doesn’t indicate any sort of malice on the part of Cobra-Bitcoin, unless its intent is simply to sow chaos and paranoia about the next Bitcoin Core release.

“I don't know much about the particular threat Cobra is concerned (with), but people should always work assuming similar threats exist,” Bitcoin Core developer Luke Dashjr wrote in an email. “Bitcoin calls for a heightened level of security among typical computer users that unfortunately most people do not have.”

Since the circumstances surrounding the alert and its veracity are totally unknown right now, the only thing most bitcoiners can do at this point is wait - and verify their download of Core when it’s released.

Things could be about to get very interesting in bitcoin land.

Eulogies

Eulogy for an Angel
1992-Dec. 20, 2005

Freedom
2003-2018

Freedom sm

My Father
1918-2010

brents dad

Dr. Stan Dale
1929-2007

stan dale

MICHAEL BADNARIK
1954-2022

L Neil Smith

A. Solzhenitsyn
1918-2008

solzhenitsyn

Patrick McGoohan
1928-2009

mcgoohan

Joseph A. Stack
1956-2010

Bill Walsh
1931-2007

Walter Cronkite
1916-2009

Eustace Mullins
1923-2010

Paul Harvey
1918-2009

Don Harkins
1963-2009

Joan Veon
1949-2010

David Nolan
1943-2010

Derry Brownfield
1932-2011

Leroy Schweitzer
1938-2011

Vaclav Havel
1936-2011

Andrew Breitbart
1969-2012

Dick Clark
1929-2012

Bob Chapman
1935-2012

Ray Bradbury
1920-2012

Tommy Cryer
1949-2012

Andy Griffith
1926-2012

Phyllis Diller
1917-2012

Larry Dever
1926-2012

Brian J. Chapman
1975-2012

Annette Funnicello
1942-2012

Margaret Thatcher
1925-2012

Richie Havens
1941-2013

Jack McLamb
1944-2014

James Traficant
1941-2014

jim traficant

Dr. Stan Monteith
1929-2014

stan montieth

Leonard Nimoy
1931-2015

Leonard Nimoy

Stan Solomon
1944-2015

Stan Solomon

B. B. King
1926-2015

BB King

Irwin Schiff
1928-2015

Irwin Schiff

DAVID BOWIE
1947-2016

David Bowie

Muhammad Ali
1942-2016

Muhammed Ali

GENE WILDER
1933-2016

gene wilder

phyllis schlafly
1924-2016

phylis schafly

John Glenn
1921-2016

John Glenn

Charles Weisman
1954-2016

Charles Weisman

Carrie Fisher
1956-2016

Carrie Fisher

Debbie Reynolds
1932-2016

Debbie Reynolds

Roger Moore
1917-2017

Roger Moore

Adam West
1928-2017

Adam West

JERRY LEWIS
1926-2017

jerry lewis

HUGH HEFNER
1926-2017

Hugh Hefner

PROF. STEPHEN HAWKING
1942-2018

Hugh Hefner 

ART BELL
1945-2018

Art Bell

DWIGHT CLARK
1947-2018

dwight clark

CARL MILLER
1952-2017

Carl Miller

HARLAN ELLISON
1934-2018

Harlan Ellison

STAN LEE
1922-2018

stan lee

CARL REINER
1922-2020

Carl Reiner

SEAN CONNERY
1930-2020

dwight clark

L. NEIL SMITH
1946-2021

L Neil Smith

JOHN STADTMILLER
1946-2021

L Neil Smith