BR087 - ColliderScript, BTCPay Server, OpenSecret, Matrix, Lottie player JS Attack, the Bullish Case for Vaults, LN Payment Censorship , EmailBTC, secp256k1-node vulnerability + MORE ft. Justin & Paul
Update: 2024-11-13
Description
I'm joined by guests Justin Moon & Future Paul & to go through the list.
Quote of the Day
00:00:48 Nobody knows anything
Housekeeping
00:06:00 New COLDCARD Tutorials
Major/Urgent Vulnerability Disclosures
00:06:26 Vulnerability in secp256k1-node affecting ECDH
00:08:01 Stalling peers cause disclosure of hindered block propagation
Bitcoin
• Software Releases & Project Updates
00:08:40 Bitcoin Core
00:09:11 Electrs
00:10:22 BTC Pay Server
00:11:57 libsecp256k1
00:14:18 Bitcoin Keeper
00:14:56 Liana
00:17:30 Bitcoin Safe
00:20:08 RoboSats
00:21:10 Bitkey Firmware
00:21:20 Raspiblitz
00:21:37 ESP-Miner
00:22:14 BoltzExchange
• Project Spotlight
00:22:21 Frost
00:23:12 ColliderScript
00:27:44 GreatRSI
00:28:16 Boltzmann TS monorepo
00:28:55 PlebDevs
00:29:51 SatSale
00:31:58 EmailBTC
Vulnerability Disclosures
00:33:21 Lottie player JS hacked, affecting Primal and 1inch
00:38:38 Hackers abuse emergency data requests
00:41:15 Tor relays targeted in spoofing attack
00:41:22 Synology devices exposed to zero-click flaw
00:42:03 North Korean hackers BlueNoroff target crypto firms with new macOS malware
00:44:45 Five dollar wrench attacks
Privacy & Other Related Bitcoin Projects
• Software Releases & Project Updates
00:52:50 Reticulum MeshChat
00:53:14 Matrix
Lightning & L2(+)
• Project Spotlight
00:54:52 Podcaster Boost Dashboard
00:55:06 zPay.live
00:55:14 BullishNuts
00:55:19 Athenut
00:55:33 TinyPine
• Software Releases & Project Updates
00:55:41 Fedimint
00:56:34 Zeus
00:58:19 Alby Go
00:58:28 Ride-The-Lightning
00:58:37 CLBOSS
00:58:40 Nutshell
00:59:00 Geyser
00:59:24 Clams Remote
Nostr
• Project spotlight
00:59:36 SnapNostr
00:59:42 OpenLibrarian
00:59:49 Jumble
00:59:54 Honeypot
1:00:00 Mutestr
1:00:08 Nostr Gadgets
1:00:16 Mostro Tools
Boosts
1:08:57 Shoutout to top boosters @Ape Mithrandir, @btconboard, @VonPhoto & @AVERAGE_GARY
Tech tip of the day
1:10:45 LocalSend
1:10:54 Protect iPhones from downgrade attacks by disabling 2G in Lockdown mode
News & Noteworthy
• Lightning + L2+
1:12:38 Ndolo and Tschorsch publish Payment Censorship in Lightning Network
1:14:01 Blockstream opens its newest research center in Lugano
1:14:05 CasaOS integrates Alby Hub
• Business & Finance
1:14:46 Block refocuses on bitcoin mining equipment and Bitkey
1:15:49 Fold App introduces insured deposits
1:16:33 Strike introduces Bitcoin auto-withdrawals
1:18:52 Ten31 launches Bitcoin Alpha
1:19:13 CleanSpark finalized its acquisition of GRIID Infrastructure
• Nostr
1:19:25 Nos.social is now live in Australia and New Zealand
• Funding
1:19:32 OpenSats announces its Eighth Wave of Nostr Grants
• Mining
1:20:23 MMS and Metzler partner on Bitcoin mining for grid stability
• Privacy
1:20:38 Tommy Robinson sentenced to 18 months for not unlocking phone for police
1:20:47 Ex-TD Bank employee indicted for sharing customer data on Telegram
1:21:02 Kenya to require phone IMEI declaration from 2025
1:21:09 Apple adds "inactivity timer" feature in iOS 18.1
• Protocol
1:22:16 Ren Crypto Fish, Steve Lee, and Lyn Alden publish Analyzing Bitcoin Consensus: Risks in Protocol Upgrades
1:25:30 BIP85 updated to final status, now widely deployed
1:25:47 LDK #3207 adds invoice requests to async payments
• Government & Political
1:26:05 US DOJ charges AurumXchange operator with laundering Silk Road fund
1:26:12 Roman Sterlingov sentenced to 12.5 years for money laundering
1:26:34 Argentina's central bank hosts a live Bitcoin mining art exhibit
1:26:50 BIS exits cross-border payments platform Project mBridge
1:26:56 EU and ECB debate digital euro control, raising sovereignty concerns
• Events
1:27:22 Btc Hel: The first ever large scale bitcoin conference in the Nordics.
• Reads
1:27:46 Top recently published reads
Links & Contacts:
Website: https://bitcoin.review/
Substack: https://substack.bitcoin.review/
Twitter: https://twitter.com/bitcoinreviewhq
NVK Twitter: https://twitter.com/nvk
Telegram: https://t.me/BitcoinReviewPod
Email: producer@coinkite.com
Nostr & LN:⚡nvk@nvk.org (not an email!)
Full show notes: https://bitcoin.review/podcast/episode-87
Quote of the Day
00:00:48 Nobody knows anything
Housekeeping
00:06:00 New COLDCARD Tutorials
Major/Urgent Vulnerability Disclosures
00:06:26 Vulnerability in secp256k1-node affecting ECDH
00:08:01 Stalling peers cause disclosure of hindered block propagation
Bitcoin
• Software Releases & Project Updates
00:08:40 Bitcoin Core
00:09:11 Electrs
00:10:22 BTC Pay Server
00:11:57 libsecp256k1
00:14:18 Bitcoin Keeper
00:14:56 Liana
00:17:30 Bitcoin Safe
00:20:08 RoboSats
00:21:10 Bitkey Firmware
00:21:20 Raspiblitz
00:21:37 ESP-Miner
00:22:14 BoltzExchange
• Project Spotlight
00:22:21 Frost
00:23:12 ColliderScript
00:27:44 GreatRSI
00:28:16 Boltzmann TS monorepo
00:28:55 PlebDevs
00:29:51 SatSale
00:31:58 EmailBTC
Vulnerability Disclosures
00:33:21 Lottie player JS hacked, affecting Primal and 1inch
00:38:38 Hackers abuse emergency data requests
00:41:15 Tor relays targeted in spoofing attack
00:41:22 Synology devices exposed to zero-click flaw
00:42:03 North Korean hackers BlueNoroff target crypto firms with new macOS malware
00:44:45 Five dollar wrench attacks
Privacy & Other Related Bitcoin Projects
• Software Releases & Project Updates
00:52:50 Reticulum MeshChat
00:53:14 Matrix
Lightning & L2(+)
• Project Spotlight
00:54:52 Podcaster Boost Dashboard
00:55:06 zPay.live
00:55:14 BullishNuts
00:55:19 Athenut
00:55:33 TinyPine
• Software Releases & Project Updates
00:55:41 Fedimint
00:56:34 Zeus
00:58:19 Alby Go
00:58:28 Ride-The-Lightning
00:58:37 CLBOSS
00:58:40 Nutshell
00:59:00 Geyser
00:59:24 Clams Remote
Nostr
• Project spotlight
00:59:36 SnapNostr
00:59:42 OpenLibrarian
00:59:49 Jumble
00:59:54 Honeypot
1:00:00 Mutestr
1:00:08 Nostr Gadgets
1:00:16 Mostro Tools
Boosts
1:08:57 Shoutout to top boosters @Ape Mithrandir, @btconboard, @VonPhoto & @AVERAGE_GARY
Tech tip of the day
1:10:45 LocalSend
1:10:54 Protect iPhones from downgrade attacks by disabling 2G in Lockdown mode
News & Noteworthy
• Lightning + L2+
1:12:38 Ndolo and Tschorsch publish Payment Censorship in Lightning Network
1:14:01 Blockstream opens its newest research center in Lugano
1:14:05 CasaOS integrates Alby Hub
• Business & Finance
1:14:46 Block refocuses on bitcoin mining equipment and Bitkey
1:15:49 Fold App introduces insured deposits
1:16:33 Strike introduces Bitcoin auto-withdrawals
1:18:52 Ten31 launches Bitcoin Alpha
1:19:13 CleanSpark finalized its acquisition of GRIID Infrastructure
• Nostr
1:19:25 Nos.social is now live in Australia and New Zealand
• Funding
1:19:32 OpenSats announces its Eighth Wave of Nostr Grants
• Mining
1:20:23 MMS and Metzler partner on Bitcoin mining for grid stability
• Privacy
1:20:38 Tommy Robinson sentenced to 18 months for not unlocking phone for police
1:20:47 Ex-TD Bank employee indicted for sharing customer data on Telegram
1:21:02 Kenya to require phone IMEI declaration from 2025
1:21:09 Apple adds "inactivity timer" feature in iOS 18.1
• Protocol
1:22:16 Ren Crypto Fish, Steve Lee, and Lyn Alden publish Analyzing Bitcoin Consensus: Risks in Protocol Upgrades
1:25:30 BIP85 updated to final status, now widely deployed
1:25:47 LDK #3207 adds invoice requests to async payments
• Government & Political
1:26:05 US DOJ charges AurumXchange operator with laundering Silk Road fund
1:26:12 Roman Sterlingov sentenced to 12.5 years for money laundering
1:26:34 Argentina's central bank hosts a live Bitcoin mining art exhibit
1:26:50 BIS exits cross-border payments platform Project mBridge
1:26:56 EU and ECB debate digital euro control, raising sovereignty concerns
• Events
1:27:22 Btc Hel: The first ever large scale bitcoin conference in the Nordics.
• Reads
1:27:46 Top recently published reads
Links & Contacts:
Website: https://bitcoin.review/
Substack: https://substack.bitcoin.review/
Twitter: https://twitter.com/bitcoinreviewhq
NVK Twitter: https://twitter.com/nvk
Telegram: https://t.me/BitcoinReviewPod
Email: producer@coinkite.com
Nostr & LN:⚡nvk@nvk.org (not an email!)
Full show notes: https://bitcoin.review/podcast/episode-87
Comments
Top Podcasts
The Best New Comedy Podcast Right Now – June 2024The Best News Podcast Right Now – June 2024The Best New Business Podcast Right Now – June 2024The Best New Sports Podcast Right Now – June 2024The Best New True Crime Podcast Right Now – June 2024The Best New Joe Rogan Experience Podcast Right Now – June 20The Best New Dan Bongino Show Podcast Right Now – June 20The Best New Mark Levin Podcast – June 2024
In Channel