← BitGo Inc.

2023 BitGo — threshold-signature implementation flaw disclosed by Fireblocks (Ethereum TSS wallets)

2023 Unknown records affected Share on X

Data compromised

Potential key compromise class for affected wallet configurations prior to patching—on-chain asset risk rather than a classic central-db leak

Technical writeup

Fireblocks publicly disclosed a critical flaw it called the ‘BitGo Zero Proof Vulnerability’ affecting BitGo Ethereum ECDSA TSS self-custody wallets, describing an attacker path to private key material; BitGo issued patches and both vendors published technical reports.

Root cause

Cryptographic / protocol implementation flaw in threshold signature handling (per coordinated disclosure)

References