← Trends

Implementation Bugs, Not Just Exploits, Threaten Custody

Cryptographic implementation errors in wallets and signers (biased nonces, reused randomness, faulty derivation) keep surfacing as a distinct custody risk alongside smart-contract exploits, eroding the assumption that certified hardware protects keys.

strengthening · confidence 78 · -2 7d · -22 30d · Medium term (3-9 months) · tracking since July 25, 2026 · updated September 14, 2026

Sign in to get threshold and movement alerts for this trend.

Score history

Daily conviction score, 0 to 100. Higher means the thesis is more strongly corroborated.

Sep 13 · 75Sep 14 · 78

Now 78 · +3 since Sep 13 · ranged 75 to 78

Showing the last few days. Unlock full score history.

Why the conviction moved

  • Sep 14
    Strengthened +3

    Entropy32 Plus generates Bitcoin seed phrases offline from radioactive decay, but its entropy output has not been independently tested or audited. An unvalidated randomness source in a key-generation device is the upstream version of the biased-nonce and reused-randomness failures the thesis tracks.

  • Sep 11
    Strengthened +5

    XRP Healthcare is winding down after roughly $450,000 was swept from 4,011 accounts, traced to a 55-character seed string that collapsed one wallet's key space to 2^46. This is a pure key-derivation/entropy failure rather than a contract exploit, and it took the project itself down — the custody-side risk class the thesis tracks.

Showing the last 2 days. Unlock the full record.

Source trail

  • Supporting · September 14, 2026

    A New Device Generates Bitcoin Seed Phrases From Radioactive Decay, With No Published Validation

    Entropy32 Plus generates Bitcoin seed phrases offline from radioactive decay, but its entropy output has not been independently tested or audited. An unvalidated randomness source in a key-generation device is the upstream version of the biased-nonce and reused-randomness failures the thesis tracks.

    crypto.news
  • Supporting · September 11, 2026

    A 55-Character String Cut One XRP Wallet's Key Space to 2 to the 46th, and the Project Is Closing

    XRP Healthcare is winding down after roughly $450,000 was swept from 4,011 accounts, traced to a 55-character seed string that collapsed one wallet's key space to 2^46. This is a pure key-derivation/entropy failure rather than a contract exploit, and it took the project itself down — the custody-side risk class the thesis tracks.

    CryptoSlate

Unlock full source trail, score history, and daily updates.

27 more sources in the full trail.

Unlock Trends

Affected regions & assets

RegionsGlobal
Assets2 assetsUnlock Trends

Townsquare

Argue the thesis in Townsquare.