front pagenews$3 million suddenly gushed out of a 10-year-old Bitcoin wallet — what exactly happened?

$3 million suddenly gushed out of a 10-year-old Bitcoin wallet — what exactly happened?

Published on

spot_img

Two years ago, a European cryptocurrency owner named "Michael" contacted hardware hacker Joe Grand for help. Michael had stored about $3 million worth of Bitcoin in an encrypted digital wallet. He created a 20-character password using RoboForm Password Manager and then encrypted it with TrueCrypt. Unfortunately, the encrypted file became corrupted and he was unable to access his 43.6 Bitcoins.

Michael does not store his passwords in RoboForm due to security concerns. This paranoia has led to his current predicament.

Joe Grand, the hacker who recovers lost cryptocurrency, started his journey back when he was 10 years old; he began hacking computing hardware. By 2008, he co-hosted the Discovery Channel show Prototype This, showcasing his skills. Today, he uses his expertise to provide consulting services to companies, helping them protect their digital systems from hardware hackers. In 2022, his techniques enabled him to crack a Trezor wallet, revealing its password and recovering a large amount of cryptocurrency.

This achievement attracted national attention. Many people sought his help to recover lost cryptocurrency, especially after he helped a person who forgot his password recover $2 million. Despite many requests, "Kingpin" (his hacker name) often denied these requests for various reasons.

Cracking Michael's lost Bitcoin password

Michael's cryptocurrencies were stored in a software wallet, so Grand's hardware skills couldn't help them. They considered brute-forcing the passwords, but that was impractical. Grand suspected that RoboForm Password Manager had a flaw, but he couldn't be sure.

In desperation, Michael contacted various cryptography experts, who all told him that recovery was impossible. But in June, he contacted Grand again. This time, Grand agreed to try, and teamed up with his friend Bruno in Germany, who was also good at hacking digital wallets.

Grand and Bruno spent months reverse engineering the version of RoboForm Michael was using. They discovered a major flaw in the pseudo-random number generator in RoboForm versions prior to 2015. The program tied generated passwords to the date and time on the user's computer, making them predictable. Knowing the date, time, and other parameters allowed them to recreate any password generated at that time.

Finding the correct password

Michael cannot remember the exact date he created his password. He knows he transferred bitcoins to his wallet on April 14, 2013. Grand and Bruno try to generate a 20-character password between March 1 and April 20, 2013 using the parameters Michael used, but fail. They then expand the time range to June 1, 2013, but still have no success.

Michael was repeatedly asked about the password parameters. Frustrated, he provided other passwords he had generated in 2013. It turned out that some of these passwords did not contain special characters. Grand and Bruno adjusted their methods and contacted Michael again in November. This time, they found the correct password, which was generated on May 15, 2013 at 4:10:40 PM GMT and had no special characters.

RoboForm's Risks on Bitcoin

RoboForm is one of the first password managers developed by Siber Systems. In 2015, the company fixed the flaw, but the exact fix was unclear. The changelog only mentioned increased randomness. Without knowing the specific details of the fix, Grand is still cautious about trusting the updated version.

After recovering the password, Grand and Bruno took a portion of Michael's Bitcoin as their compensation. At the time, Bitcoin was worth $38,000 per coin. When Bitcoin reached $62,000 per coin, Michael sold some of his Bitcoin. He now owns 30 Bitcoins, worth $3 million, and plans to sell again when Bitcoin reaches $100,000 per coin.

Michael recalled his experience.

Latest Articles

Eyenovia 转型为 Hyperion DeFi,推出 5000 万美元 HYPE 国库及 HYPD 代币。

眼科公司Eyenovia宣布建立由Hyperliquid代币支持的50亿美元HYPE基金Eyenovia公司确认了一项价值5000万美元的计划,建立一个由Hyperliquid代币支持的HYPE基金。...

泰国批准仅针对持牌平台的五年加密税免除政策

泰国批准数字资产销售所得五年免税政策根据财政部的声明,泰国已批准对数字资产销售所得的五年免税政策。免税政策将于2025年1月1日开始,并于2029年12月31日结束。该措施取消了通过授权平台销售加密货...

狗狗币跌破上升通道,技术指标显示将下跌138%

2025年6月18日,狗狗币(DOGE)跌破上升通道 2025年6月18日,狗狗币(DOGE)交易价格为0.169美元,已经跌破其在2025年4月至6月初之间形成的上升通道,下跌幅度达22%。这一结...

《2025年6月18日仓鼠战斗每日组合与密码》

Hamster Kombat更新:关注社区与性能Hamster Kombat,这款基于Telegram的加密策略游戏,随着今日6月18日的每日组合和密码更新,继续其迅猛发展的势头。由GameDev H...

More Articles

Eyenovia 转型为 Hyperion DeFi,推出 5000 万美元 HYPE 国库及 HYPD 代币。

眼科公司Eyenovia宣布建立由Hyperliquid代币支持的50亿美元HYPE基金Eyenovia公司确认了一项价值5000万美元的计划,建立一个由Hyperliquid代币支持的HYPE基金。...

泰国批准仅针对持牌平台的五年加密税免除政策

泰国批准数字资产销售所得五年免税政策根据财政部的声明,泰国已批准对数字资产销售所得的五年免税政策。免税政策将于2025年1月1日开始,并于2029年12月31日结束。该措施取消了通过授权平台销售加密货...

狗狗币跌破上升通道,技术指标显示将下跌138%

2025年6月18日,狗狗币(DOGE)跌破上升通道 2025年6月18日,狗狗币(DOGE)交易价格为0.169美元,已经跌破其在2025年4月至6月初之间形成的上升通道,下跌幅度达22%。这一结...
en_GBEnglish