Privacy Wallet Wars: Wasabi Vulnerabilities Denied by Developer

Bitcoin Privacy Wallet
Author
Author
Jaroslaw Adamowski
Last updated: 
Why Trust Cryptonews
Cryptonews has covered the cryptocurrency industry topics since 2017, aiming to provide informative insights to our readers. Our journalists and analysts have extensive experience in market analysis and blockchain technologies. We strive to maintain high editorial standards, focusing on factual accuracy and balanced reporting across all areas - from cryptocurrencies and blockchain projects to industry events, products, and technological developments. Our ongoing presence in the industry reflects our commitment to delivering relevant information in the evolving world of digital assets. Read more about Cryptonews

OXT Research, the team behind Bitcoin (BTC) wallet Samourai Wallet, has announced that its researchers have identified two potential privacy vulnerabilities in the open-source Wasabi Wallet that could impact the security of CoinJoin transactions carried out through the wallet. This said, zkSNACKs, which developed Wasabi Wallet, rejects these claims and accuses OXT Research of engaging in a conflict of interest.

Source: Adobe/Tsuboya

“In the past we have found numerous issues with Wasabi Wallet CoinJoin,” OXT Research said. “Those issues always related to mix quality and mix composition as per the metadata left over on blockchain. We never classified those issues as vulnerabilities, just poor design choices.”

They continued that after “extensive testing and research we were able to complete our internal analysis and verified the existence of two vulnerabilities that have likely existed since the inception of Wasabi Wallet” and could be classified as critical.

In detail, the “vulnerabilities break a core assumption of mixing, with each remix effectively cancelling out the privacy gains of the previous mix,” and OXT Research believes that they “have been present in the Wasabi Wallet code base for a long time, thus it is likely someone less than ethical has already discovered [them] and is exploiting” them.

The researchers claim they contacted zkSNACKs, requesting that they alert the wallet’s users on the vulnerabilities, and provide them with recommendations on how they should proceed to safeguard their cryptocurrency. OXT Research also claimed they would provide the wallet developer with suggested mitigation that could be implemented in the software, potentially fixing the identified vulnerabilities.

However, on August 19, a representative of zkSNACKS reportedly replied to OXT Research, saying they considered the communication as blackmail, and as such, “they have no interest in pursuing this further with us,” according to Samourai Wallet’s developer.

Cryptonews.com has contacted both OXT Research and zkSNACKs with requests for comment to hear their respective sides of the story. As of publication time, we have received a comment from zkSNACKs.

Adam Ficsor, Head of Research at zkSNACKs, told Cryptonews.com that, given that OXT Research is the blockchain analysis department of Samourai Wallet, “there is a conflict of interest”.

“They claimed Wasabi is broken because of the lack of randomness in coin selection for CoinJoins. More specifically, they tried to show that if an adversary knows all the UTXOs in a wallet, then it can tell which coin will be mixed next time. This is pointless as the only entity who knows the UTXOs in a wallet is the user itself,” said Ficsor. “Then they moved onto building more and more on this false premise, repeating their conclusion over and over again, and that’s the rest of the technical part of the letter.”

Ficsor said that “OXT/Samourai has claimed to ‘deanonymize’ Wasabi numerous times in the past without a responsible disclosure, so why the sudden change now?”

According to Ficsor, the “community knows their claims are inflated and in their latest attempt they seek more credibility by trying to get us to play along with their nonsense by writing us a blackmail letter that has all the social engineering tricks in it, like setting deadlines to create a sense of urgency, repeating their false conclusions over and over again, and presenting the possible options that we have and explaining the consequences of us not playing along to create a sense of fear.”

We will update should OXT Research reply.

____

Learn more: Bitcoin’s Wasabi Too Strong For Europol (UPDATED)

Logo

Why Trust Cryptonews

2M+
Active Monthly Users Around the World
250+
Guides and Reviews Articles
8
Years on the Market
70
International Team Authors
editors
+ 66 More

Best Crypto ICOs

Discover trending tokens still in presale — early-stage picks with potential

Explore Our Tools

Smart tools made for everyday crypto users

Market Overview

  • 7d
  • 1m
  • 1y
Market Cap
$3,801,057,073,902
8.94
Trending Crypto

More Articles

Altcoin News
Largest Bitcoin Darknet Marketplace Abacus Market Vanishes in Suspected Exit Scam
Amin Ayan
Amin Ayan
2025-07-15 06:51:31
Ethereum News
Nasdaq-Listed Bit Digital Plans to Raise $67.3M to Expand Ethereum Treasury
Amin Ayan
Amin Ayan
2025-07-15 06:17:52
Crypto News in numbers
editors
Authors List + 66 More
2M+
Active Monthly Users Around the World
250+
Guides and Reviews Articles
8
Years on the Market
70
International Team Authors