logo
  • menu
  • Markets
  • ETFs
  • Live
  • Spot
  • Futures
  • Learn
  • Sign In
  • Sign Up
  • Downloads
  • English
  • |
  • USD
  • |
Sign Up
Crypto PricesLearnLatest NewsDownloadsMarketsSpotAnnouncements
Home/
Latest News/
Markets

BitGo Patches Critical Vulnerability First Discovered by Fireblocks

By Cornell Rachel
Mar 20, 2023
4 
★
★
★
★
★
★
★
★
★
★
 62 User Rating
Share

Cryptocurrency wallet BitGo has patched a critical vulnerability that could have exposed the private keys of retail and institutional users.

The cryptography research team Fireblocks discovered the vulnerability and notified the BitGo team in December 2022. The vulnerability is related to the BitGo Threshold Signature Scheme (TSS) wallet, potentially exposing the private keys of exchanges, banks, businesses, and users of the platform.

The Fireblocks team named the vulnerability the BitGo Zero Proof Vulnerability, which allows potential attackers to extract private keys in under a minute using a small amount of JavaScript code. BitGo suspended the vulnerable service on December 10 and issued a patch in February 2023, requiring clients to update to the latest version by March 17. The Fireblocks team outlined how it identified vulnerabilities using free BitGo accounts on mainnet. Part of the mandatory zero-knowledge proofs missing from BitGo's ECDSA TSS wallet protocol allowed the team to expose private keys through a simple attack.

Industry-standard enterprise-grade cryptoasset platforms utilize multi-party computation (MPC/TSS) or multi-signature technology to eliminate the possibility of a single point of attack. This is done by distributing private keys among multiple parties to ensure security controls should one party be compromised. Fireblocks was able to demonstrate two possible ways that an internal or external attacker could gain access to the full private key.

Infected client users can initiate transactions to obtain some of the private keys held in the BitGo system. BitGo will then perform signature calculations before sharing information that leaks BitGo key fragments. "An attacker can now reconstruct the full private key, load it into an external wallet, and withdraw funds immediately or at a later time."

The second case is considered an attack if BitGo is compromised. An attacker would wait for a client to initiate a transaction before replying with a malicious value. This is then used to sign transactions with the client's key shard. An attacker can use the response to reveal the user's key shard, which can then be combined with BitGo's key shard to take control of the wallet.

Fireblocks noted that the identified vectors have not yet carried out any attacks, but warned users to consider creating new wallets and transferring funds from ECDSA TSS BitGo wallets before installing the patch. Hacking wallets has become commonplace across the cryptocurrency industry in recent years. In August 2022, over $8 million was lost from over 7,000 Solana-based Slope wallets. Algorand web wallet service MyAlgo was also the target of a wallet hack, resulting in the loss of more than $9 million from various high-profile wallets.

Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of BitKan. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. BitKan shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. Products mentioned in this article may not be available in your region.

Related News

  • Bitcoin Slumps Below $77k as Iran Tensions & Inflation Rise

    Bitcoin Slumps Below $77k as Iran Tensions & Inflation Rise

    Bitcoin (BTC) plummeted to a session low of approximately $76,720 on May 18, 2026, marking a decisive break from the previous weeks of consolidation above the $80,000 range.
    Martha Grizzard
    May 18, 2026
  • US Inflation Hits 3.8%: High Rates to Stay, Crypto Pressured

    US Inflation Hits 3.8%: High Rates to Stay, Crypto Pressured

    The U.S. Bureau of Labor Statistics’ latest report shows a 3.8% year-over-year increase in the Consumer Price Index (CPI), surpassing the 3.7% consensus forecast.
    Hallie Gill
    May 13, 2026
  • Circle Arc Token Hits $222M Raise as Q1 Revenue Soars 20%

    Circle Arc Token Hits $222M Raise as Q1 Revenue Soars 20%

    Circle has finalized its ARC token pre-sale, successfully raising $222,000,000 from a consortium of global financial institutions.
    Wayne Ingram
    May 12, 2026

Latest News

Industry

Cryptocurrency

Airdrop

Markets

  • VerifiedX Launches Bitcoin Sidechain for Native DeFi Privacy

    VerifiedX Launches Bitcoin Sidechain for Native DeFi Privacy

    VerifiedX has officially introduced a decentralized "reliever chain" designed to bring programmable, privacy-preserving functionality to the Bitcoin network.
    Martha Grizzard
    May 18, 2026
  • Japan’s SBI and Rakuten Plan Crypto Trusts as Rules Finalize

    Japan’s SBI and Rakuten Plan Crypto Trusts as Rules Finalize

    SBI Securities and Rakuten Securities have officially announced plans to introduce cryptocurrency investment trusts to their massive retail user bases.
    Craig Green
    May 18, 2026
  • Senate Advances CLARITY Act: A New Era for U.S. Crypto Oversight

    Senate Advances CLARITY Act: A New Era for U.S. Crypto Oversight

    The Senate Banking Committee advanced the CLARITY Act on May 14, 2026 to establish a comprehensive federal framework for the digital asset industry.
    May 15, 2026
  • TRC20-USDT Circulation Soars to 89.3 Billion Record on TRON

    TRC20-USDT Circulation Soars to 89.3 Billion Record on TRON

    The circulation of TRC20-USDT has officially ascended to a historic peak of 89.3 billion tokens, fundamentally expanding the liquidity threshold of the decentralized financial landscape.
    Hallie Gill
    May 12, 2026
  • 21Shares Debuts First Canton Network ETF (TCAN) on Nasdaq

    21Shares Debuts First Canton Network ETF (TCAN) on Nasdaq

    The TCAN ETF provides the first U.S.-listed gateway to Canton Coin (CC), the native utility token of the Canton Network.
    Martha Grizzard
    May 8, 2026
View more data 
BTCBTC(BTC)
$0
--(Last 24h)
SpotFutures

Top

View more
  1. 1S&P 500 Reclaims 200-Day Moving Average, Bitcoin Gains
  2. 2Trump Softens His Stance on Reciprocal Tariffs, US Stocks and Crypto Markets Rise
  3. 3Vitalik Buterin : The current price of ETH has not been affected by the merger event
  4. 4Vibhu Norby : Solana Spaces store to bring 100K people to Solana per month
  5. 5CZ: compared with the record high nine months ago, the current situation of the industry is much better

Top Gainers

View more
Opinion
OpinionOPN

$0.2164

+75.65%
Epic Chain
Epic ChainEPIC

$0.5520

+40.46%
Worldcoin
WorldcoinWLD

$0.5427

+37.36%
Backpack
BackpackBP

$0.2755

+31.38%
StakeStone
StakeStoneSTO

$0.0703

+26.44%

Top Trending

View more
Litecoin
LitecoinLTC

$46.8500

-1.70%
Uniswap
UniswapUNI

$2.7630

-1.78%
Humanity
HumanityH

$0.6065

-9.24%
Hyperliquid
HyperliquidHYPE

$74.0680

+5.55%
Solana
SolanaSOL

$71.4900

-3.92%

Recently added

View more
Citrea
CitreaCTR

$0.0178

-0.06%
Solstice
SolsticeSLX

$0.2497

-28.49%
Nexus
NexusNEX

$0.00000297

-12.67%
Zest Protocol
Zest ProtocolZEST

$0.1388

-4.94%
Animal Welfare Fund
Animal Welfare FundAWF

$0.001902

+41.41%

Learn

View more
  1. 1What is Bitwise Hyperliquid ETF? How Does BHYP Work?
  2. 2What is PaperTrade on HyperEVM? Is Zero Funding Real?
  3. 3What Is Circle Arc? How Does the New USDC Blockchain Work?
  4. 4What Is Circle Arc Whitepaper? How to Join Circle Arc Testnet?
  5. 5Is the Bear Market Over? Decoding Bitcoin On-Chain Data
About Us
  • About BitKan
  • Contact Us
  • Announcements
  • VIP Program
  • BitKan Ambassador
  • Institutional Services
Products
  • Spot
  • Futures
  • Crypto Prices
  • Learn
  • News
  • Markets
  • How to Buy Crypto
  • BTC to USD Calculator
  • Reward
Help
  • Help Center
  • Email Us
  • Live Chat
  • Download APP
  • Listing Application
  • Buy Bitcoin
  • Buy Ethereum
  • Buy Dogecoin
  • Buy Altcoins
Terms
  • Terms of Use
  • Privacy Policy
  • Trading Rules
  • Fee
K-Site
English
About Us
+
  • About BitKan
  • Contact Us
  • Announcements
  • VIP Program
  • BitKan Ambassador
  • Institutional Services
Products
+
  • Spot
  • Futures
  • Crypto Prices
  • Learn
  • News
  • Markets
  • How to Buy Crypto
  • BTC to USD Calculator
  • Reward
Help
+
  • Help Center
  • Email Us
  • Live Chat
  • Download APP
  • Listing Application
  • Buy Bitcoin
  • Buy Ethereum
  • Buy Dogecoin
  • Buy Altcoins
Terms
+
  • Terms of Use
  • Privacy Policy
  • Trading Rules
  • Fee
K-Site
+
  • Twitter
  • Facebook
  • Telegram
  • YouTube
  • Instagram
  • Medium
  • Linkedin
@2012-2026 BITKAN.com