pull down to refresh

I think the attacker is just grinding out low entropy deterministic seeds from the bad RNG but and then scanning to see if there are any funds there

Yes, that much I gather. How do we know which transactions are that? (Such that we can arrive at the number 1131 BTC or whatever and show them publicly?)

where funds were swept to. Number is a minimum floor estimate. Likely more

https://coldcard-watch.vercel.app/methodology.html

reply

Aha, so basically attacker "revealed" himself by consolidating...?

reply

yea, I think there’s a ton of individual attackers now tho too since anyone with compute can do it

reply

Here is from the methodology section of the website.

If anything, I think they may be undercounting.

reply