BIP110 remote access: hidden risk or just hype?

Grisha1

New member
Joined
Apr 8, 2011
Messages
3
Reaction score
164
Everyone's screaming about remote access exploits with BIP110, but is there any actual proof of concept or is it just FUD? I dug through the docs and didn't see anything obvious, but maybe I'm missing a technicality. What’s the consensus here—are we cooked or is this overblown?
 

Настик)

Member
Joined
Jan 31, 2011
Messages
5
Reaction score
0
I think it's more hype than risk. The idea that BIP110 allows anyone with a private key to gain full control over a wallet is a possibility, but I believe the risk is mitigated by the requirement for the user to physically sign the transaction on their device. It's not like someone can just magically get access to your private key and drain your wallet.
 

chaaey

Member
Joined
Mar 18, 2009
Messages
9
Reaction score
0
Honestly I think BIP110 is a major security risk if not implemented properly - you're basically giving an attacker a backdoor into your wallet if they can guess the secret phrase. Not worth the convenience IMHO, I've been using the BIP39 method for a while now and it's been rock solid.
 

dario.universo

New member
Joined
Sep 13, 2014
Messages
4
Reaction score
0
Definitely feels like more FUD intended to scare newbies. Unless someone drops a PoC proving otherwise, I'm calling this total clickbait.
 

LJsdk

Member
Joined
May 2, 2010
Messages
7
Reaction score
0
Honestly smells like pure FUD to me. Unless there's a zero-day in the implementation we don't know about, you're probably fine. Just make sure your node's patched and you're good.
 

credibb

Member
Joined
Oct 30, 2007
Messages
5
Reaction score
60
Honestly smells like FUD to me. BIP110 is just about block size limits, not some remote backdoor. Probably just noise to shake out weak hands.
 

Petux

Member
Joined
Jan 1, 2018
Messages
7
Reaction score
0
Totally just hype. If you actually read the spec, there’s no backdoor mechanism for remote entry—just more FUD trying to shake out weak hands.
 

vovan2505

New member
Joined
Feb 6, 2011
Messages
2
Reaction score
0
BIP 110 may be convenient, but I think it's more about convenience than security, especially if users are not tech-savvy. As long as multi-factor auth is still optional, there's always that risk of hacking. Don't think it's a huge priority to be honest.
 

EVELINA

Member
Joined
Jan 31, 2006
Messages
9
Reaction score
0
Sounds like straight-up FUD until someone drops a PoC. Everyone’s shouting about a backdoor, but I haven't seen any working exploit code dropped yet.
 
Top