Exploiting pseudo-RNGs in slot machines (2017)
wired.com
wired.com
His plan for that is to extort an 8-figure sum out of the machine manufacturer to disclose the exploit and help them patch their PRNG to... help them more effectively exploit the gamers?
Planet Poker, one of the earliest online poker sites, had about the least secure shuffler one could imagine, including:
1) They used the default pRNG library that came with their Borland C++ compiler. 2) That pRNG generated only 32-bit outputs (slightly smaller than 52!) 3) They reseeded it for every shuffle, with the current system time, in milliseconds.
A former consultant eventually took advantage. With a reasonable guess for the server's system time, it was sometimes possible to identify the entire deck ordering based on one's first two cards, and almost certainly after seeing 5 cards (hole cards and flop, in holdem).
Even without source code access (as in the consultant case), 1 and 3 might have been sufficient for someone to guess their way into this exploit.
The original paper isn't loading for me, but here's a recap detailing even more problems than the above: http://www.lauradhamilton.com/random-lessons-online-poker-ex...
I must be missing something here, they can't be this grossly incompetent while gambling millions.
The exploit isn't being able to crack incredibly well designed RNGs, the exploit is being able to crack crap RNG based machines without the casino or machine manufacturer noticing. Slot machines are a huge industry and no one thinks of them as an attack vector, so these guys can probably milk quite a bit of cash out of them without anyone ever noticing. Meanwhile the cost of fixing these machines is high - they're not going to be set up for OTA updates, so the manufacturer now has to spend probably 2 days changing the RNG, and the next 6 months delivering updates to all their customers and explaining to them that their slot machines were probably costing them several hundred thousand dollars.
* Unless you can figure out where cosmic rays come from and model their propagation mechanism accurately, in which case you'll solve some long-standing astrophysics questions.
Also, if you need random numbers there are usually better ways to get them.