Description
A cryptanalytic break in Altcha Proof-of-Work obfuscation mode version 0.8.0 and later allows for remote visitors to recover the Proof-of-Work nonce in constant time via mathematical deduction. NOTE: this is disputed by the Supplier because the product's objective is "to discourage automated scraping / bots, not guarantee resistance to determined attackers." The documentation states “the goal is not to provide a secure cryptographic algorithm but to use a proof-of-work mechanism that allows any capable device to decrypt the hidden data.”
INFO
Published Date :
2025-12-08T00:00:00.000Z
Last Modified :
2025-12-11T14:36:52.373Z
Source :
mitre
AFFECTED PRODUCTS
The following products are affected by CVE-2025-65849 vulnerability.
| Vendors | Products |
|---|---|
| Altcha |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-65849.