Search key, WIF, mnemonic across 18 chains
CtrlK
YubiKey 5.2.7 Bias
Affected YubiKey firmware clears the 8 low bits of every ECDSA nonce (k = 256·t). With enough signatures the key is recovered by an LLL lattice reduction.
newest for the address (1 to 100,000 supported \u2014 a single TXID fetches just that one transaction; larger counts take longer to fetch and analyze)
Balance
0 BTC
Received
0 BTC
TX
0
Instructions:\n1. Enter a Bitcoin TXID (64 hex) or an address.\n2. At least 40 signatures from the SAME key are needed (48-64 is more reliable) \u2014 raise the transaction count if needed.\n3. The 8-low-bit-zero bias is detected and the LLL reduction recovers the key. May take a minute or two.
Educational / read-only tool. Transaction data is fetched live from public block-explorer
APIs (blockstream.info, with blockchain.info as a fallback). R-reuse recovery only succeeds
on wallets that already leaked their key on-chain through a faulty signer — it demonstrates why ECDSA
nonce reuse is catastrophic. Never enter keys for wallets you use.