[a / b / c / d / e / f / g / gif / h / hr / k / m / o / p / s / t / u / v / vg / vm / vmg / vr / vrpg / vst / w / wg] [i / ic] [r9k / s4s / vip] [cm / hm / lgbt / y] [3 / aco / adv / an / bant / biz / cgl / ck / co / diy / fa / fit / gd / hc / his / int / jp / lit / mlp / mu / n / news / out / po / pol / pw / qst / sci / soc / sp / tg / toy / trv / tv / vp / vt / wsg / wsr / x / xs] [Settings] [Search] [Mobile] [Home]
Board
Settings Mobile Home
/biz/ - Business & Finance


Thread archived.
You cannot reply anymore.


[Advertise on 4chan]


Coinkike knew about the issue for years and denied it.

Most likely was a scam all along.
>>
>>62551313
customers need to file a class action against them
>>
>>62551327
Won't matter, nvk is probably already in Isreal.
>>
Unfortunately the schizo who spams not your keys not your coin doesn't get affected by this as he is unlikely to have anything onchain (or offchain) to begin with (lol). Like there's no silver lining at all coming out of this mess, just pure miseries
>>
>>62551343
Single sig wallets were always exposed to vendor attacks. The silver lining is people realise this and move to multi vendor multisig.
>>
File: 1762145248084409.jpg (99 KB, 1056x992)
99 KB JPG
>>62551343
Que? Use binance saaar very safu!
>>
>>62551346
How big of a deal is multisig if the seed phrase is properly generated on single sig?
>>
>>62551354
It's absolutely critical and this attack shows why.
>>
Yes sit
>>
>>62551361
The RNG on the seed phrase was inherently broken though
>>
File: index.jpg (6 KB, 159x250)
6 KB JPG
The hardware wallet was OPEN SOURCE, yet not a single bitchud can code so it was never found. Figures have you been to a bitcoin convention its all just Normies and Saylor comparing BTC to Gold, real estate, market cap and repeating we are early and moon talk nothing about bitcoin's tech, more of a fan expo for bitcoins brand (kek). Chain link conventions like Devcon now those real serious crypto industry leaders, they actually discuss cutting edge tech like the mathematical differences between Merkle and Verkle trees. ColdCards undoing was being a maxie, if they supported Chainlink this would of been flagged and patched 8 years ago.
>>
>>62551377
The RNG was absolutely fine but they didn't call it, they fell back to weak pseudorandom number generation in software. They obsfucated this by hiding it behind a build flag. This indicates it was an intentional supply chain attack by the vendor, who also happens to be Jewish like every other financial scammer in history.
>>
File: somewhere empty.jpg (150 KB, 728x801)
150 KB JPG
Oh no, please what do I do
>>
>>62551389
Meds
>>
>>62551409
kek
>>
>>62551400
So like all “hacks” it is just an inside job. Am I safe with my ledger nano?
>>
>>62551389
>Chain link
>Serious
The left hand of the scammer does not know what the right hand of the scammer does
>>
File: 1546667468034.png (1.04 MB, 905x830)
1.04 MB PNG
>>62551498
>am I save with my closed source hardware wallet
>>
>>62551503
So what should I do? Just transfer everything out into a newly generated eth address? Should I connect my ledger to it? I still have lots of funds on the eth address I originally generated with the ledger device
>>
>>62551516
>Just transfer everything out into a newly generated eth address
yes
>Should I connect my ledger to it?
no
If you really want to use a hardware wallet for your everyday transactions use a Trezor like I do. Long term holds on cold storage only.
>>
>>62551313
Clue me in, how does a wallet get drained? Also what's the best practice re wallet security in '26? Only a few keywords, I'll do my research then.
>>
>>62551535
Trezor can steal your funds also if they had faulty hardware
>>
>>62551537
Multi vendor multisig
>>
>>62551542
Would a ledger / trezor setup be good enough?
>>
>>62551544
If have a 2-of-3 multisig ledger and trezor are fine, as long as you don't have 2 of the same vendor in the quorum.
>>
>>62551547
What if I am a chainlink staker and my funds are staked with my ledger nano address and I can’t unstake and move to new multisig wallet without losing my spot
>>
>>62551558
>What if I am a chainlink staker
Then you're ngmi
>>
>>62551400
>The RNG was absolutely fine but they didn't call it
so it wasn't fine. it's 100% their fault and not a systemic issue. if something similar had happened on hw wallets for adults, like trezor and ledger, then we would have already seen wallets getting drained. just follow the rules and don't cheap out on your hw wallet, no multisig required.
>>
>>62551313
It's not completely impossible, but that requires some NSA-level power. It is unlikely these retards had that. For brainlets, the NSA actually tried something like this once. Deliberately attempting to nudge an encryption standard in a way that would let them reverse-engineer private keys.

https://en.wikipedia.org/wiki/Dual_EC_DRBG
>>
>>62551346
>multi vendor multisig
Imagine having to understand and manage all these elaborate security techniques just to not get your wealth stolen. All this hassle for these meager returns which might not come at all anymore. Bleak.
>>
>>62551699
They just "accidentally" left out a compile flag that completely dismantled the RNG, no nsa level power required
>>
>>62551313
THIS JUST IN
CHATGPT HACKED ALL THE CRYPTOWALLETS
SAM CAN'T SHOW PROOF BUT NEEDS A TRILLION DOLLARS
>>
>>62551313
>Coinkike knew about the issue for years and denied it.
>Most likely was a scam all along.
Name one coin that isn't.
>>
>>62551516
ledger is fine. Don't do anything stupid, that's how people fuck up.
The rng on a ledger is better than any phone or computer rng. And they have a huge security team and a huge reputation (not with customer private data though)
If you want to mix in different entropy you can use the passphrase option on your ledger. But triple check it and write it down like you write down your seed. Don't rely on memory. How you can generate a strong passphrase: Use different independent wallets, creat some seeds. Pick 8 words and make the passphrase the first 4 letters of each word including spaces. That's an 88 bit entropy passphrase. Again back it up like your actual seed and double check it
>>
>>62551313
Retardfag here, just how big of a deal is this and does it effect any other crypto coin other than bitcoin?
>>
>>62551905
When cold wallet can even be hacked, Its best that you liquidate every coin you have and invest something that the law can protect you cause those coldwallet baggies are all homeless overnight now
>>
So whats the point stealing all these accounts and not being able to spend it when you could have maybe taken 10k here and there and go under the radar? I mean they might have already done that no? Also how is it that someone can just nonchalantly say that they just lost 3 bitcoins.
>>
Shalom
>>
>>62551516
Dont listen to the trezor ledger fags, juat look up seed signer and roll a 24 word + passphrase and only come back with the same question when quantum becomes a real concern
>>
>>62551537
Seed signer, dice roll, multisig, seedphrase
>>
>>62553208
Passphrase*
>>
>>62551722
>imagine having to spend 1 hour on security measures to self-custody millions of dollars



[Advertise on 4chan]

Delete Post: [File Only] Style:
[Disable Mobile View / Use Desktop Site]

[Enable Mobile View / Use Mobile Site]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.