CVE-2023-39910General(libbitcoin / libbitcoin_explorer)

MEDIUMCVSS 7.5 · HIGH

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch libbitcoin libbitcoin_explorer systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

The cryptocurrency wallet entropy seeding mechanism used in Libbitcoin Explorer 3.0.0 through 3.6.0 is weak, aka the Milk Sad issue. The use of an mt19937 Mersenne Twister PRNG restricts the internal entropy to 32 bits regardless of settings. This allows remote attackers to recover any wallet private keys generated from "bx seed" entropy output and steal funds. (Affected users need to move funds to a secure new cryptocurrency wallet.) NOTE: the vendor's position is that there was sufficient documentation advising against "bx seed" but others disagree. NOTE: this was exploited in the wild in June and July 2023.

4.3/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-338

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • libbitcoin_explorer

Threat summary

  • Active exploitation appears in 2 classified signals
  • Patch or workaround signal is available
  • 12 mentions across 11 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 2 signals
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • General: 9 classified signals
  • Disclosure: 1 classified signal
  • Peaked 4d ago at 2 mentions (2026-08-03); latest day: 1
  • 12 total mentions across 11 days

Affected systems

Vendors
Products
libbitcoin_explorer

Deep dive

Activity timeline12 mentions / 11d
01122Mentions · 2026-01-30: 1Mentions · 2026-02-11: 1Mentions · 2026-07-29: 1Mentions · 2026-07-31: 1Mentions · 2026-08-01: 1Mentions · 2026-08-02: 1Mentions · 2026-08-03: 2Mentions · 2026-08-05: 1Mentions · 2026-08-09: 1Mentions · 2026-08-10: 1Mentions · 2026-08-26: 1Active Exploitation · 2026-02-11: 1Active Exploitation · 2026-08-09: 1Patch / Workaround · 2026-02-11: 1Technical Details · 2026-02-11: 1Technical Details · 2026-07-31: 1Technical Details · 2026-08-03: 1Technical Details · 2026-08-05: 1Technical Details · 2026-08-09: 101-3002-1107-2907-3108-0108-0208-0308-0508-0908-1008-26
Signal classification3 categories
General
975.0%
Active Exploitation
216.7%
Disclosure
18.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-01-301
General1
2026-02-111
Active Exploitation1
2026-07-291
General1
2026-07-311
General1
2026-08-011
General1
2026-08-021
General1
2026-08-032
General2
2026-08-051
Disclosure1
2026-08-091
Active Exploitation1
2026-08-101
General1
2026-08-261
General1
Full discourse12 posts
  • Eric Voskuil@evoskuil
    General

    Full details here: https://github.com/libbitcoin/libbitcoin-explorer/wiki/CVE-2023-39910

    Post summary

    The content merely points to a GitHub wiki page for CVE-2023-39910 without providing any further detail on the vulnerability, PoC, exploitation, or remediation.

    010611.0K
    11.6K followersView on X
  • Eric Voskuil@evoskuil
    General

    @PeterRizun This client-server (ZMQ) certificate generator warning is also in bx: "WARNING: entropy is obtained from the underlying platform." Guess what Bitcoin wallet accepts wallet seed entropy from the underlying platform. https://github.com/libbitcoin/libbitcoin-explorer/wiki/CVE-2023-39910 https://t.co/QTjr8HEN8r

    Post summary

    The tweet highlights CVE-2023-39910 by noting how both the client‑server certificate generator and the Bitcoin wallet rely on platform entropy, but it provides no PoC, exploit code, patch, or evidence of active exploitation.

    10021512
    11.6K followersView on X
  • Voidwalker@JustWantToQ1
    General

    Ahh I remebered it sorta right.. CVE-2023-39910) in Libbitcoin Explorer

    Post summary

    The text merely notes the presence of CVE‑2023‑39910 in Libbitcoin Explorer without sharing any further context, evidence of exploitation, or remediation steps.

    10030174
    3.2K followersView on X
  • Ashutosh Singh@0xAshutosh
    Active Exploitation

    Bitcoin’s cryptographic security isn’t just about whether secp256k1 is “broken.” Recent vulnerabilities show risks across the entire stack: • CVE-2024-49364 — private-key extraction • CVE-2024-48930 — ECDH private-key extraction • CVE-2023-49292 — private-key recovery • CVE-2023-39910 — weak wallet entropy • CVE-2021-38195 — invalid signature acceptance • CVE-2019-25003 — timing side channel CVE-2023-39910 (Milk Sad) was exploited in the wild, enabling recovery of vulnerable wallet private keys and theft of funds. August 2026 adds another warning: a Coldcard wallet flaw was linked to coordinated attacks reportedly draining nearly $89M from 1,000+ Bitcoin wallets. And vulnerabilities don’t always have CVEs. Reused/predictable ECDSA nonces, RNG failures, invalid-curve attacks, side channels, firmware bugs and supply-chain compromises can all threaten private keys. Bitcoin also relies on Schnorr signatures through BIP-340 and Taproot (BIP-341/342), not just ECDSA. Then there’s the long-term threat: quantum computers could eventually break the elliptic-curve cryptography securing Bitcoin. The risk isn’t that secp256k1 has suddenly been cracked. The risk is the entire security stack. Bitcoin needs continuous cryptographic auditing, secure randomness and nonce generation, hardened implementations, responsible disclosure, and a credible post-quantum migration path — before the threat becomes urgent.

    Post summary

    The post enumerates several Bitcoin CVEs, emphasizing that CVE-2023-39910 and a Coldcard wallet flaw have been actively exploited, though no PoC, exploit code, or patch is provided.

    00011384
    286 followersView on X
  • Kev Keyser@kevkeysr
    General

    Milk Sad (CVE-2023-39910) in 2023 was the same shape, Libbitcoin’s bx seed used a 32-bit Mersenne Twister seeded by system time. The playbook has been public for years.

    Post summary

    The post notes CVE‑2023‑39910 with a technical detail about Libbitcoin’s bx seed using a predictably seeded 32‑bit Mersenne Twister, but it offers no PoC, exploit, patch, or evidence of active exploitation.

    100101.7K
    67 followersView on X
  • Eric Voskuil@evoskuil
    General

    @midmagic The same goes for this nonsense. You are embarrassing yourself. https://github.com/libbitcoin/libbitcoin-explorer/wiki/CVE-2023-39910

    Post summary

    The post merely points to a GitHub page for CVE-2023-39910 without providing any substantive details, tools, or claims.

    1000076
    11.6K followersView on X
  • Eric Voskuil@evoskuil
    General

    @pezcore23 Documentation explains what a function does. Otherwise you are just making up your own. The documentation was absolutely clear, and the WARNING (not disclaimer) was for emphasis. https://github.com/libbitcoin/libbitcoin-explorer/wiki/CVE-2023-39910

    Post summary

    The post redirects to the CVE’s documentation, affirming that it clarifies a function definition, but it provides no technical details, exploit code, or patch information.

    0001057
    11.6K followersView on X
  • Prince “Heat” Inferno@PrinceHeat44402
    General

    @satsfortheseoul @AutisticHODL CoinKite used proprietary secure element chips, look how that turned out for them. This is a known vulnerability that has been exploited before on a software utility tool. CVE-2023-39910 CoinKite's secure element chip was proprietary, bound by NDAs.

    Post summary

    The tweet references CVE-2023-39910, noting historical exploitation via a software utility, but offers no technical details or actionable information.

    0001021
    570 followersView on X
  • Grok@grok
    Active Exploitation

    @SanctusGrail 鍵の脆弱性は無視されておらず、量子脅威(実用的リスク低、10,200 BTC影響)やメモリリーク(Bloodtrail Attack、CVE-2023-39910)で議論中。2025年ハックで鍵侵害が2.2億ドル損失の76%。対策: ハードウェアウォレット、ゼロ化、自己保管推奨。

    Post summary

    The post highlights CVE‑2023‑39910, noting it was actively exploited in a 2025 hack that caused significant financial loss, and recommends mitigation steps such as hardware wallets and zeroization.

    10000150
    8.1M followersView on X
  • Eric Voskuil@evoskuil
    General

    @satoshihead @1440000bytes I’m sure you’ve read this previously, which makes it clear that you aren’t attempting to be honest above. https://github.com/libbitcoin/libbitcoin-explorer/wiki/CVE-2023-39910

    Post summary

    The tweet merely references a CVE wiki page and accuses someone of dishonesty, providing no technical or exploit details.

    10000124
    11.4K followersView on X
  • Dwinity@dwinity_eco
    Disclosure

    @jamesob worth assuming the attacker mapped this curve before you did. milk sad (cve-2023-39910) was libbitcoin's bx seed on a 32-bit mersenne twister seeded by the clock, and the on-chain sweeping predated the 2023 advisory by years. tripwires measure their patience, not their reach.

    Post summary

    The tweet shares technical details about CVE‑2023‑39910, highlighting its seed mechanism and early on‑chain activity, but does not mention active exploitation, a PoC, patch, or debunking.

    00000141
    11.4K followersView on X
  • Prince “Heat” Inferno@PrinceHeat44402
    General

    Yup, it was called CVE-2023-39910. There's rarely ever a first time for a vulnerability like this. https://milksad.info/

    Post summary

    The text briefly acknowledges the existence of CVE-2023-39910 but offers no additional details, exploit evidence, or mitigation information.

    0000075
    570 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Applibbitcoinlibbitcoin_explorer---

Explore more