Skip to content
  • Categories
  • Recent
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Slate)
  • No Skin
Collapse
Brand Logo

hashpwn

Home | Donate | GitHub | Matrix Chat | PrivateBin | Rules

  1. Home
  2. General Discussion
  3. Solflare Crypto Wallet Vulnerability - "xpass exploit"

Solflare Crypto Wallet Vulnerability - "xpass exploit"

Scheduled Pinned Locked Moved General Discussion
16 Posts 7 Posters 2.1k Views 7 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • blandyB Offline
    blandyB Offline
    blandy
    Admin Trusted
    wrote on last edited by
    #6

    Yes, I remember their system seeming being owned, although they denied this. Too many high value wallets were compromised, likely by themselves I'd suspect. Users need to remember that they are putting a lot of trust into the owners of these software wallets.

    5x RTX 2080 Ti | 11x ZTEX v1.15y FPGA (bcrypt) | Cracker | Developer

    1 Reply Last reply
    0
    • oe3p32wedwO oe3p32wedw

      This vulnerability, as I understand, is directly related to the wallet files, and not to the algorithm?

      cycloneC Online
      cycloneC Online
      cyclone
      Admin Trusted
      wrote on last edited by cyclone
      #7

      @blandy Thanks! Hopefully Solflare users will transfer their crypto to a secure wallet before a threat actor exploits this in the wild.
      @oe3p32wedw That is correct. The encryption function Solflare used is similar to Phantom, which is secretbox with pbkdf2-sha256 KDF. To clarify, the encryption function is secure, but the vulnerability is what Solflare did after the encryption function.

      Sysadmin by day | Hacker by night | Go Developer | hashpwn site owner
      3x RTX 4090

      1 Reply Last reply
      0
      • tychotithonusT Offline
        tychotithonusT Offline
        tychotithonus
        Moderator Trusted
        wrote on last edited by
        #8

        Wow, amazing work!
        Suggestion: add a timeline to your GitHub info page, to document your interaction with the org.

        2x 4090 | 36x ZTEX 1.15y | hashcat / JtR / MDXfind

        1 Reply Last reply
        👍
        0
        • R Offline
          R Offline
          rickyc2024
          Banned
          wrote on last edited by
          #9

          Cyclone, this very much annoys me. How could you do this? I found this vulnerability and I had ALREADY reported it.

          1 Reply Last reply
          0
          • R Offline
            R Offline
            rickyc2024
            Banned
            wrote on last edited by
            #10
            This post is deleted!
            1 Reply Last reply
            0
            • cycloneC Online
              cycloneC Online
              cyclone
              Admin Trusted
              wrote on last edited by cyclone
              #11

              I independently found the vulnerability while reverse engineering the encryption function, wrote the solflare_pwn toolkit, and reported the vulnerability on Feb 12 to Solflare with a followup email on Feb 15. All of this with timestamps is disclosed on my post above.

              This is the 2nd time rickyc2024 has publicly taken credit for my solflare_pwn toolkit and my work on this project. To once again clarify, he has nothing to do with solflare_pwn or me discovering the vulnerability.

              @rickyc2024 has been banned.

              # EDIT 2025/02/21
              I've also banned his dup accounts below since running multiple accounts on the forum is not allowed. General Forum Rules: https://forum.hashpwn.net/post/11
              @rickyc2024 banned
              @rickyig2025 banned
              @donotban banned
              @youremail banned
              @jdjwjdiw banned

              Sysadmin by day | Hacker by night | Go Developer | hashpwn site owner
              3x RTX 4090

              1 Reply Last reply
              👍
              1
              • blandyB Offline
                blandyB Offline
                blandy
                Admin Trusted
                wrote on last edited by
                #12

                I can confirm I've worked with @cyclone and also have a working C# copy of the decrypter and also the vulnerability.

                Nice work @cyclone 🙂

                5x RTX 2080 Ti | 11x ZTEX v1.15y FPGA (bcrypt) | Cracker | Developer

                cycloneC 1 Reply Last reply
                🍻 👍
                1
                • blandyB blandy

                  I can confirm I've worked with @cyclone and also have a working C# copy of the decrypter and also the vulnerability.

                  Nice work @cyclone 🙂

                  cycloneC Online
                  cycloneC Online
                  cyclone
                  Admin Trusted
                  wrote on last edited by
                  #13

                  @blandy Thanks, great job porting this over to C#!

                  Sysadmin by day | Hacker by night | Go Developer | hashpwn site owner
                  3x RTX 4090

                  1 Reply Last reply
                  👍
                  0
                  • cycloneC Online
                    cycloneC Online
                    cyclone
                    Admin Trusted
                    wrote on last edited by cyclone
                    #14

                    New GitHub Release:
                    https://forum.hashpwn.net/post/434

                    Sysadmin by day | Hacker by night | Go Developer | hashpwn site owner
                    3x RTX 4090

                    1 Reply Last reply
                    👍
                    1
                    • D Offline
                      D Offline
                      dawp9duhn9gom
                      wrote last edited by
                      #15

                      @cyclone will you create versions of these for firefox aswell?

                      cycloneC 1 Reply Last reply
                      0
                      • D dawp9duhn9gom

                        @cyclone will you create versions of these for firefox aswell?

                        cycloneC Online
                        cycloneC Online
                        cyclone
                        Admin Trusted
                        wrote last edited by
                        #16

                        @dawp9duhn9gom
                        I can port the toolkit to Firefox if there is enough interest. However, I generally do not write tooling for Firefox due to the very low global usage only being approx 2%, while Chrome based browsers dominate the global usage at over 70%.

                        Sysadmin by day | Hacker by night | Go Developer | hashpwn site owner
                        3x RTX 4090

                        1 Reply Last reply
                        0

                        Reply
                        • Reply as topic
                        Log in to reply
                        • Oldest to Newest
                        • Newest to Oldest
                        • Most Votes


                        Who's Online [Full List]

                        15 users active right now (5 members and 10 guests).
                        hashpwn-bot, foobar, cyclone, freeroute

                        Board Statistics

                        Our members have made a total of 10.9k posts in 178 topics.
                        We currently have 379 members registered.
                        Please welcome our newest member, frodowithabs.
                        The most users online at one time was 49 on Thursday, December 26, 2024.

                        • Login

                        • Don't have an account? Register

                        • Login or register to search.
                        • First post
                          Last post
                        0
                        • Categories
                        • Recent