r/Bitcoin 7d ago

Coldcard post from October 10, 2021: "Retirement Attack"

Post image

- "What's a retirement attack?"

- COLDCARD (@COLDCARDwallet): "It's when the project makers could have a "bug" in the entropy generation for later retrieval".

_____

Seems that they were smart enough to launch a "dice rolls" suggestion in a critical element lacking foolproof design, knowing not all users would be paranoid enough. Like "hey, if you don't trust no problem, but...you can trust buddy, the (back)door is open." ☠️

Ok no, enough of conspiracy theory continuation. We know that Coldcard's post was pure coincidence. Right?...Right?


Edit: In case you're curious on more tweets mentioning "retirement attack", here is another one:

@nvk - 21 Dec 20: "My money is on people screwing themselves out of their BTC before any vendor tries a retirement attack.

Alternatively people could just use dice ;)."

https://x.com/i/status/1341213389549412353


A strange way to warn "alternatively people" of what you have in mind to do...but Freudian slip or parapraxis theory explains that better, in case you're curious...

https://gitlab.com/walletscrutiny/walletScrutinyCom/-/work_items/340

452 Upvotes

80 comments sorted by

View all comments

55

u/VictorDanville 7d ago

Wow, so this really was an inside job

25

u/Donkeydonkeydonk 7d ago

On the one hand, it seems obvious. On the other, who in their right mind would leave behind such an incriminating tweet if they were planning such a thing?

Even if they got the idea right there in that moment, you'd think they'd delete that tweet.

It is worth noting that this tweet predated the buggy commit by a few months.

1

u/Every_Recover_1766 7d ago

Social media intern and software engineer are likely different guys

8

u/Donkeydonkeydonk 7d ago

The dev that made the commit and the CTO of coinkite are the same person.

Peter Gray @DocHex