A Formal Treatment of Deterministic Wallets
Poulami Das, Sebastian Faust, Julian Loss
Abstract
In cryptocurrencies such as Bitcoin or Ethereum, users control funds via secret keys. To transfer funds from one user to another, the owner of the money signs a new transaction that transfers the funds to the new recipient. This makes secret keys a highly attractive target for attacks, and has lead to prominent examples where millions of dollars worth in cryptocurrency have been stolen. To protect against these attacks, a widely used approach are so-called hot/cold wallets. In a hot/cold wallet system, the hot wallet is permanently connected to the network, while the cold wallet stores the secret key and is kept without network connection. In this work, we propose the first comprehensive security model for hot/cold wallets and develop wallet schemes that are provable secure within these models. At the technical level our main contribution is to provide a new provably secure ECDSA-based hot/cold wallet scheme that can be integrated into legacy cryptocurrencies such as Bitcoin. Our construction and security analysis uses a modular approach, where we show how to generically build secure hot/cold wallets from signature schemes that exhibit a rerandomizing property of the keys.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Cited by top-tier papers8
- Deterministic Wallets in a Quantum WorldNabil Alkeilani Alkadri, Poulami Das, Andreas Erwig, Sebastian Faust et al.CCS 2020 · 6 citations
- Of Secrets and Seedphrases: Conceptual Misunderstandings and Security Challenges for Seed Phrase Management among Cryptocurrency UsersFarida Eleshin, Qi Sun, Mengzhe Ye, Sauvik Das et al.CHI 2025 · 5 citations
- MuSig-DN: Schnorr Multi-Signatures with Verifiably Deterministic NoncesJonas Nick, Tim Ruffing, Yannick Seurin, Pieter WuilleCCS 2020 · 2 citations
- The Exact Security of BIP32 WalletsPoulami Das, Andreas Erwig, Sebastian Faust, Julian Loss et al.CCS 2021 · 1 citation
- SoK: Decentralized Finance (DeFi) AttacksLiyi Zhou, Xihan Xiong, Jens Ernstberger, Stefanos Chaliasos et al.S&P 2023
Related papers
- How to Back Up High-Value Secret KeysSanjam Garg, Noemi Glaeser, Abhishek Jain, Michael Lodder et al.CCS 2026
- Schnorr Signatures and MuSig2 are Jointly Secure, Even in Deterministic WalletsRenas Bacho, Yanbo Chen, Poulami Das, Julian Loss et al.CCS 2026
- A Composability Analysis Framework for Web3 Wallet Recovery MechanismsPanagiotis Chatzigiannis, Ke Coby Wang, Sunpreet S. Arora, Mohsen MinaeiS&P 2025
- Shoreline: Data-Driven Threshold Estimation of Online Reserves of Cryptocurrency Trading PlatformsXitong Zhang, He Zhu, Jiayu ZhouAAAI 2020 · 3 citations
- UC Non-Interactive, Proactive, Threshold ECDSA with Identifiable AbortsRan Canetti, Rosario Gennaro, Steven Goldfeder, Nikolaos Makriyannis et al.CCS 2020 · 135 citations
