9.1
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Description
A cryptanalytic break in Altcha Proof-of-Work obfuscation mode version 0.8.0 and later allows for remote visitors to recover the Proof-of-Work nonce in constant time via mathematical deduction. NOTE: this is disputed by the Supplier because the product's objective is "to discourage automated scraping / bots, not guarantee resistance to determined attackers." The documentation states βthe goal is not to provide a secure cryptographic algorithm but to use a proof-of-work mechanism that allows any capable device to decrypt the hidden data.β
AI Analysis
Cryptanalytic break in Altcha Proof-of-Work obfuscation mode
Basic Information
ID
CVE-2025-65849
Source
mitre
Published
Dec 8, 2025 at 00:00
Modified
Dec 11, 2025 at 14:36
Affected Product
Vendor
Altcha
Product
Altcha
Version
0.8.0 and later
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
9.1 / 10
AI Severity
Critical
Vendor
Altcha
Product
Altcha Proof-of-Work
Version
0.8.0 and later