
AI-generated summary
BIP461 proposes a deterministic ECDSA signing procedure to detect deviations that could indicate wallet key leakage. It builds on concerns raised by the Dark Skippy disclosure about firmware-based key exfiltration via signatures.
Bitcoin improvement proposal BIP461 could make a hidden route for leaking wallet secrets easier to detect. The draft defines a common signing procedure for ECDSA, an existing Bitcoin signature scheme.
Independent compliant signers should produce identical signatures for the same secret key and message hash, creating a benchmark for detecting departures that could conceal key leakage.
Authored by Liam Gilligan, the proposal was merged into the BIPs repository on Sept. 16 and remains marked Draft. Its signatures work under existing Bitcoin consensus rules, so implementing this signing procedure requires no consensus change.
Comparing signatures for deviations
ECDSA allows a signer choices while creating a valid signature, including the nonce, a temporary value used in signing. Malicious firmware can exploit that freedom to hide key material in signatures that still pass verification, and BIP461 fixes those choices through a specified deterministic procedure.
Bitcoin’s acceptance of a signature cannot establish that its creation kept the key safe. A common specification supplies an expected output against which the signer’s behavior can be checked.
The comparison requires identical inputs and the exact same standard, including access to the secret key on another independent signer. That extra exposure is a practical cost of reproducing the signature. Different results for the same key and message hash show that at least one signer is not following BIP461.
An honest implementation using another valid ECDSA procedure can also disagree. A mismatch warrants investigation into compliance, but its cause remains unresolved. The comparison alone cannot identify a malicious device or demonstrate theft.
The prescribed algorithm also keeps signatures to at most 70 bytes in the standard DER encoding, excluding Bitcoin’s one-byte sighash flag.
The Dark Skippy disclosure pointed out that corrupted firmware can embed seed material in transaction signatures. In their original disclosure, the researchers said they had not seen the technique in the wild.
Dark Skippy’s original demonstration uses Schnorr signing, while BIP461 specifies ECDSA. Taproot uses the separate BIP340 Schnorr scheme, so this draft does not directly standardize a remedy for that demonstration.
The researchers’ mitigation discussion warned that a malicious signer could leak only on a selected transaction, so a device could produce compliant signatures in a test and leak on another transaction.
At the September merge, a reviewer said test vectors and a reference implementation were needed for BIP461 to advance to Complete.
For wallet users, its potential value is a shared benchmark that could make deviations visible. Delivering that value still depends on compliant implementations and comparisons that account for both detection limits and the risks of handling secrets.
AI outlook — possibilities, not facts
Wallet implementations will begin testing BIP461-compliant signing within the next 3-6 months.
Likely · Within months

Google launched Gemini 4 Argon, its new frontier AI model, claiming top performance in coding and cyber defense benchmarks. Argon scored 77.9% on DeepSWE v1.1, supports up to 1 million tokens per response, and shows improved resistance to indirect prompt injection at 0.7% on Gray Swan's test. The model is being rolled out via Google's Fairwind Program to vetted security teams and includes no built-in cyber guardrails to enable offensive security research, with wider availability planned for paid API users and Google AI Ultra subscribers at introductory pricing of $2 per million input tokens and $10 per million output tokens.

DogeOS opened a public testnet for its Dogecoin application layer, aiming to add Ethereum-like smart contract functionality via a zkVM-based rollup. The project, founded by the MyDoge wallet team, enables developers to test apps using test DOGE from a faucet. Early builders include lending, derivatives, stablecoin, prediction market, and gaming projects. Dogecoin founder Jackson Palmer and Billy Markus created the meme coin in 2013 as a joke; it has since evolved into a multi-billion dollar network. Dogecoin has fallen ~75% from its all-time high and remains in a bearish trend despite recent ETF launches. No mainnet launch date was set.

The FBI instructed employees to assume their personal information was stolen after cybercriminal group ShinyHunters claimed a breach of FBIjobs.gov via a zero-day flaw in Oracle's PeopleSoft, potentially exposing names, addresses, and family details of agents and applicants.

Bloomberg has launched a stablecoin dashboard on its Terminal, powered by Allium, providing financial professionals with onchain data tracking supply, issuance, and transaction activity for stablecoins representing over 98% of the market. The tool is available via RWAS <GO> and integrates with existing fixed-income, FX, and money-market tools.

Brazilian state oil company Petrobras has developed two blockchain applications using Cardano to track sustainability data for sustainable aviation fuel and Diesel R renewable fuel. The first application tokenizes environmental attributes of SAF into CS-SAF tokens using a Book-and-Claim model to prevent double counting, while the second creates digital checkpoints for Diesel R production, transportation, and use to support Scope 3 emissions reporting. The projects stem from a 2023 R&D collaboration with PUC-Rio’s Ledger Labs, expanded in 2025, with no disclosure on fuel volumes or deployment timelines.

Decrypt, Myriad and Rug Radio announce The Information Exchange, a network combining news, data, market prices, prediction markets and direct financial participation powered by the MYR token on Solana, aiming to eliminate friction between information consumption and market action.