Coinkike knew about the issue for years and denied it.
那个币圈傻逼知道这问题好几年了,一直否认。
Most likely was a scam all along.
很可能从一开始就是个骗局。
那个币圈傻逼知道这问题好几年了,一直否认。
Coinkike knew about the issue for years and denied it.
那个币圈傻逼知道这问题好几年了,一直否认。
Most likely was a scam all along.
很可能从一开始就是个骗局。
>>62551313
customers need to file a class action against them
客户需要联合起来对他们提起集体诉讼。
>>62551327
Won't matter, nvk is probably already in Isreal.
没用,nvk很可能已经在以色列了。
Unfortunately the schizo who spams not your keys not your coin doesn't get affected by this as he is unlikely to have anything onchain (or offchain) to begin with (lol). Like there's no silver lining at all coming out of this mess, just pure miseries
可惜那个整天刷“不是你的钥匙不是你的币”的疯子不会受这个影响,因为他很可能链上链下都啥也没有(哈哈)。这个烂摊子里真是一点好处都没有,全是纯粹的痛苦。
>>62551343
Single sig wallets were always exposed to vendor attacks. The silver lining is people realise this and move to multi vendor multisig.
单签钱包一直暴露在供应商攻击下。好的一面是大家开始意识到这点,转向多供应商的多签。
>>62551343
Que? Use binance saaar very safu!
啥?用币安,特别安全!
>>62551346
How big of a deal is multisig if the seed phrase is properly generated on single sig?
如果助记词在单签上正常生成,多签到底有多重要?
>>62551354
It's absolutely critical and this attack shows why.
绝对关键,这次攻击就证明了为什么。
Yes sit
是的,坐。
>>62551361
The RNG on the seed phrase was inherently broken though
但那个助记词的随机数生成器从根本上就是坏的。
The hardware wallet was OPEN SOURCE, yet not a single bitchud can code so it was never found. Figures have you been to a bitcoin convention its all just Normies and Saylor comparing BTC to Gold, real estate, market cap and repeating we are early and moon talk nothing about bitcoin's tech, more of a fan expo for bitcoins brand (kek). Chain link conventions like Devcon now those real serious crypto industry leaders, they actually discuss cutting edge tech like the mathematical differences between Merkle and Verkle trees. ColdCards undoing was being a maxie, if they supported Chainlink this would of been flagged and patched 8 years ago.
硬件钱包明明是开源的吗?然而没有一个傻逼会写代码,所以从来没被发现。想想看,你去过比特币大会没?全是些普通人和 Saylor 在拿 BTC 跟黄金、房产、市值比来比去,念叨着“我们还在早期”和“奔月”,根本没人聊比特币的技术,更像是个比特币品牌的粉丝见面会(kek)。像 Devcon 那种 Chainlink 大会才是正经严肃的加密行业领袖聚会,他们真讨论前沿技术,比如 Merkle 树和 Verkle 树的数学区别。ColdCards 完蛋是因为太极端主义了,如果他们支持 Chainlink,这事八年前就会被发现并打补丁了。
>>62551377
The RNG was absolutely fine but they didn't call it, they fell back to weak pseudorandom number generation in software. They obsfucated this by hiding it behind a build flag. This indicates it was an intentional supply chain attack by the vendor, who also happens to be Jewish like every other financial scammer in history.
RNG 本来完全没问题,但他们没启用,反而退回软件里的弱伪随机数生成。他们靠一个构建标志把它藏起来混淆视听。这说明是供应商故意的供应链攻击,而且这供应商恰好是犹太人,跟历史上每个金融骗子一样。
>>62551389
Meds
>>62551409
kek
>>62551400
So like all “hacks” it is just an inside job. Am I safe with my ledger nano?
所以说所有“黑客攻击”其实都是内鬼干的。我那 Ledger Nano 还安全吗?
>>62551389
>Chain link
链条链接
>Serious
The left hand of the scammer does not know what the right hand of the scammer does
骗子的左手不知道右手在干啥
>>62551498
>am I save with my closed source hardware wallet
>我那个闭源硬件钱包还安全吗
>>62551503
So what should I do? Just transfer everything out into a newly generated eth address? Should I connect my ledger to it? I still have lots of funds on the eth address I originally generated with the ledger device
那我到底咋办?把所有的钱转到新生成的以太坊地址吗?要不要把 Ledger 连上去?我还有不少钱在那个用 Ledger 设备最初生成的以太坊地址里
>>62551516
>Just transfer everything out into a newly generated eth address
>把所有的钱转到新生成的以太坊地址
yes
>Should I connect my ledger to it?
>要不要把 Ledger 连上去?
no
If you really want to use a hardware wallet for your everyday transactions use a Trezor like I do. Long term holds on cold storage only.
如果你真想日常交易用硬件钱包,就买 Trezor,像我一样。长期持有的只放冷钱包。
>>62551313
Clue me in, how does a wallet get drained? Also what's the best practice re wallet security in '26? Only a few keywords, I'll do my research then.
给我解释一下,钱包是怎么被卷走的?还有 26 年钱包安全的最佳实践是啥?我只要几个关键词,然后自己去查。
>>62551535
Trezor can steal your funds also if they had faulty hardware
如果 Trezor 硬件有缺陷,他们也能盗你的钱
>>62551537
Multi vendor multisig
多厂商的多签
>>62551542
Would a ledger / trezor setup be good enough?
Ledger / Trezor 组合够用吗?
>>62551544
If have a 2-of-3 multisig ledger and trezor are fine, as long as you don't have 2 of the same vendor in the quorum.
如果用 2-of-3 多签,Ledger 和 Trezor 都行,只要别在多数里放同一厂商的两台设备就行。
>>62551547
What if I am a chainlink staker and my funds are staked with my ledger nano address and I can’t unstake and move to new multisig wallet without losing my spot
那我是个 Chainlink 质押者,我的钱质押在 Ledger Nano 地址上,不能解除质押转到新多签钱包,不然会丢位置,咋办
>>62551558
>What if I am a chainlink staker
>那我是个 Chainlink 质押者
Then you're ngmi
那你没救了
>>62551400
>The RNG was absolutely fine but they didn't call it
>RNG 本来完全没问题但他们没启用
so it wasn't fine. it's 100% their fault and not a systemic issue. if something similar had happened on hw wallets for adults, like trezor and ledger, then we would have already seen wallets getting drained. just follow the rules and don't cheap out on your hw wallet, no multisig required.
那就算有问题。这百分百是他们的锅,不是系统性问题。如果类似情况发生在主流硬件钱包上,比如 Trezor 和 Ledger,那我们早就看到钱包被卷了。照规矩来,别省那点买硬件钱包的钱,不需要多签也行。
>>62551313
It's not completely impossible, but that requires some NSA-level power. It is unlikely these retards had that. For brainlets, the NSA actually tried something like this once. Deliberately attempting to nudge an encryption standard in a way that would let them reverse-engineer private keys.
不是完全不可能,但这需要国安局级别的能力。这些傻逼不太可能有这种本事。对脑残来说,国安局确实试过一次类似的事情,故意试图推动某个加密标准,好让他们能反推私钥。
>>62551346
>multi vendor multisig
>多供应商多重签名
Imagine having to understand and manage all these elaborate security techniques just to not get your wealth stolen. All this hassle for these meager returns which might not come at all anymore. Bleak.
想想看,光是为了不让自己的财富被偷,就得理解和搞定这一堆复杂的安全技术。这么多麻烦,就为了这点可能再也等不来的微薄回报,真是惨淡。
>>62551699
They just "accidentally" left out a compile flag that completely dismantled the RNG, no nsa level power required
他们只是“碰巧”漏掉了一个编译选项,直接把随机数生成器废了,根本不需要国安局级别的能力。
>>62551313
THIS JUST IN
CHATGPT HACKED ALL THE CRYPTOWALLETS
SAM CAN'T SHOW PROOF BUT NEEDS A TRILLION DOLLARS
>>62551313
>Coinkike knew about the issue for years and denied it.
>Coinkike知道这个问题好几年了,还死不承认。
>Most likely was a scam all along.
>很可能从头到尾就是个骗局。
Name one coin that isn't.
你说一个不是的币出来。
>>62551516
ledger is fine. Don't do anything stupid, that's how people fuck up.
Ledger没问题。别干蠢事,人都是这么搞砸的。
The rng on a ledger is better than any phone or computer rng. And they have a huge security team and a huge reputation (not with customer private data though)
Ledger的随机数生成比任何手机或电脑的都强。而且他们有一支巨大的安全团队,和巨大的声誉(虽然不涉及客户隐私数据)。
If you want to mix in different entropy you can use the passphrase option on your ledger. But triple check it and write it down like you write down your seed. Don't rely on memory. How you can generate a strong passphrase: Use different independent wallets, creat some seeds. Pick 8 words and make the passphrase the first 4 letters of each word including spaces. That's an 88 bit entropy passphrase. Again back it up like your actual seed and double check it
如果你想混入额外的熵,可以用Ledger上的口令选项。但一定要再三确认,并且像写种子词一样把它记下来。别靠记忆。怎么生成强口令:用几个独立钱包,创建几组种子。挑8个词,用每个词的前4个字母拼成口令,带空格。这样就是88位的熵口令。再强调一次,像备份真正种子一样备份它,并反复检查。
>>62551313
Retardfag here, just how big of a deal is this and does it effect any other crypto coin other than bitcoin?
这里是个菜逼,这事到底有多严重,除了比特币还影响其他加密货币吗?
>>62551905
When cold wallet can even be hacked, Its best that you liquidate every coin you have and invest something that the law can protect you cause those coldwallet baggies are all homeless overnight now
连冷钱包都能被黑,你最好把手里所有币都变现,投资点法律能保护的东西,因为那些拿冷钱包的傻逼现在一夜之间全睡大街了。
So whats the point stealing all these accounts and not being able to spend it when you could have maybe taken 10k here and there and go under the radar? I mean they might have already done that no? Also how is it that someone can just nonchalantly say that they just lost 3 bitcoins.
那偷这么多账户又花不出去有什么意义?你本来可以这儿拿一万那儿拿一万,低调跑路不就行了?我是说他们可能早就干过了吧?还有,怎么有人能这么轻描淡写地说自己就这么丢了3个比特币。
Shalom
>>62551516
Dont listen to the trezor ledger fags, juat look up seed signer and roll a 24 word + passphrase and only come back with the same question when quantum becomes a real concern
别听那些Trezor Ledger傻逼的,自己去搜下seed signer,掷骰子掷出一个24词加口令的组合,等量子计算真成威胁了再来问同样的问题吧。
>>62551537
Seed signer, dice roll, multisig, seedphrase
Seed signer、掷骰子、多重签名、种子词。
>>62553208
Passphrase*
>>62551722
>imagine having to spend 1 hour on security measures to self-custody millions of dollars
>想象一下要花1小时做安全措施,来自己保管几百万美元。
(如果你觉得这篇文章有启发,可以点击这里付费)