According to ChainCatcher news, the Slowmist security team has disclosed a critical vulnerability (GHSA-vjh7-7g9h-fjfh) in the widely used elliptic encryption library.
Attackers can extract the private key with just one signature by crafting specific input, which may lead to the theft of digital assets or identity credentials. This vulnerability may affect blockchain applications and digital identity systems that rely on this encryption library.




