Elephant in the root on Nostr: They have cheap BLE tags. If those cannot be reverse-engineered maybe you can record ...
They have cheap BLE tags. If those cannot be reverse-engineered maybe you can record their beacons without the reach of any other device and then just replay them. Buying 256 tags may be worth it if the victim stores tens of millions satoshis.
I'd be really surprised if there isn't any way to sneak out 256 bits of data. Or less if the attacker wants to do some brute forcing.
Published at
2024-08-06 18:32:15Event JSON
{
"id": "0cd3d12b6866800256a7c651c6bf80279b993f97b95ed18a79329d7c45748301",
"pubkey": "6e77f4f3c9995e0887d02dc95b39692f58641ed5b073972ef86cd6b61ecc6bae",
"created_at": 1722969135,
"kind": 1,
"tags": [
[
"e",
"d7aa7483934981a890a77a3fede63cf3742b7d883ae18456890a5cafdc4163e8",
"",
"root"
],
[
"e",
"68769fdc3093ca1b181a227648ea89dbdfcf9f68412edf02d00922428752a199"
],
[
"e",
"469bd0a0b230e2ba9ef5f7f76b8a3bb46cff253f14332027403920154b2bb20e",
"",
"reply"
],
[
"p",
"6e77f4f3c9995e0887d02dc95b39692f58641ed5b073972ef86cd6b61ecc6bae"
],
[
"p",
"50d94fc2d8580c682b071a542f8b1e31a200b0508bab95a33bef0855df281d63"
],
[
"p",
"46fcbe3065eaf1ae7811465924e48923363ff3f526bd6f73d7c184b16bd8ce4d"
],
[
"p",
"3d2e51508699f98f0f2bdbe7a45b673c687fe6420f466dc296d90b908d51d594"
]
],
"content": "They have cheap BLE tags. If those cannot be reverse-engineered maybe you can record their beacons without the reach of any other device and then just replay them. Buying 256 tags may be worth it if the victim stores tens of millions satoshis.\n\nI'd be really surprised if there isn't any way to sneak out 256 bits of data. Or less if the attacker wants to do some brute forcing.",
"sig": "5c61f68f35bdeebaa38ab51703314117b74c11abb357defa02ab5a9098e20edf67cafce3079adf02b9c2d5472628310d51d385cb3a093878d75374249cb096b5"
}