More Hardware wallet support
Andrew
Now i am fighting mexc who meed the dumbest police ijn the world to fill out s simple form so they can then speak with them theif was a staked
GTR ARGH
I DIDNT EXPECT THE FOLLOWING NOVEL BUT I JUST KEPT TYPING AND COULDNT STOP-
TLDR:
Its Fair to say we should have alot more hardware wallet support than Ledger I have owned , Ledger, Dcent, Keystone 3 pro & Airgap . The only one I dont own anymore is the ledger , if i want to use a closed source hardware wallet Id prefer something like D'cent way easier to use and the companion app is 10 x better
Fact:
All hardware wallets "CLAIM" to be Airgapped meaning the keys never touch an online device. " Hence the word COLD WALLET" Hot wallet is Pera , MyALgowallet, Atomic Wallet, Trust wallet <<<< All of these hot wallets are well known and all but PERA have been hacked i am one of the 5000 who lost 1.5million dollars and I know what people are thinking , I must of been careless with my key - NOPE - I wasn't phished, No virus in other words it was none of the users fault. others lost over 7 million.
You could have literally backed up the seed on paper swallowed it and stored it in your memory and still lost your money. This was a Co-ordinated attack with an insider who knew the codebase and vulnerabilities that no one else was given the chance to see . Yes i know what your thinking the ultimate blame lies with me " WHY THE FK DID YOU STORE YOUR FUNDS IN ATOMIC , I have had "What if" moments haunt my dreams for the last 9 months. Now relying on a class action to maybe obtain a small fraction of what i lost and just like the rest I was one of the people who had my key off line, never even spoke about my holdings , But because Atomic wallet is closed source no one to-date knows how the hack occurred. Why am i reiterating this?
I used to be like the rest of you never thought this would happen to me i was in this crypto community since 2013 mining in altcoin pools to trade for BTC for my reward. I built my own GPU miners, traded up to asics, modified Asics and boosted the hardware of those mini Pods giving them 20% more Power with a simple short circuit and soldering the right capacitator in the right place, the good old days these were FUN DIY hacks. so don't picture me as some beginner not knowing how to navigate the landscape i felt comfortable in this world. skip 10 yrs later - I was put in prison for a non violent , No victim harmless crime which isnt even a crime in some American states, Long story guys my morale was @ an all time low the Police had my crypto as someone who is not a full time criminal the last thing on your mind is to prepare for a 6am swat team rushing you like you are some kingpin that wasn't!!!
Lets skip the next few yrs hell on earth, picture you have 6months remaining and you want your crypto any ware except the states hands remember they raided your house and I like to say they stole things for nothing and threw them away by mistake- BS!!!! anyway my only communication i had was phone and wife and from memory AW was the easiest wallet which i can recall step by step and passed this on to my partner and i told her what parts are so important that if you don't take care of them someone you love will die , just pretend this is how important it is, she got the point and i even made her make a copy and give one to my sister, (KEYS/SEEDs) now i made her do some practice runs - buy $50 worth of btc and send to the wallet send back out and then back in , PASSED, Now lets pretend you lost your phone , can we recover ? I showed her how - PASSED . Ok now we have our return addresses to give to the authorities to send they wrongly confiscated, all, after 30days of round the world discussions with my wife being the mediator and the person who i used to vent out all frustrations she managed to accomplish all and give them the btc, eth and xrp addresses for them to return all my crypto , the day she said it was all done 4 months remain till freedom BTC price at the time @ 25kusd i was so proud she did it all what a "MACHINE"..... Now i said uninstall the app of your phone , now we will go through our final test picture the house went into flames and miraculously it burned through hardened steel and our backup is gone hence the reason for a 2nd backup, i noticed when you uninstall the shitty easy to use ATomic wallet next time you install it remembers your password so you simply re-enter the password seemed like this was just a gimmick thing because if you install the same wallet and restore wallet it asks you to insert a password no need for seed , this is why the next time we did the test i told her before uninstall this time Go to Setting > Apps> Atomic wallet> CLEAR DATA & CACHE and then uninstall the app. now its like it is a fresh phone which cannot remember you ever had AW installed- Now when you see my sister ask her to bring the paperwork as we are performing a drill test ... Install the app from play store and choose restore wallet using 12 word seed grab the backup you gave her and proceed to restore, once done we want to make sure all those funds are there. We did all this before we had the police send the major funds there , Now that I see all backups work im happy and i think she is ready. Once again erase data & Cache & Atomic wallet.. When the cops cyber team were ready to return my funds she was prepared as we typed out an email advising him all the receive addresses, when you have both hand tied behind your back and all you can do is rely on is someone who has no clue about crypto playing with big $ that not many people deal with day to day, after some cold sweats and few sleepless nights. I call her one day and hear those words , everything is in the wallet and all received ok from cops , I was like a feeling of serenity peace and fulfillment all this training and hard work paid off. She had AW installed on her phone during this period.
By now she knew how to check the tx ID on the block chain to confirm receipt, there were times she didn't know where she was reading and all i can do was listen with frustration . Ok its time to retrieve the forbidden paperwork and do the whole pretend house fire routine and install the actual wallet and then restore using the keys , Done & Done all was there i was that skeptical i made her repeat it all over again clear data re install and restore wallet. AAAAhhh i felt so light, at this point almost 3 months remaining BTC was going from 26K-30k and finally , the day of freedom is here.
Its been only couple yrs but everything felt different , because of the shock of coming out and anxiety , I ask her to retrieve the keys, keep in mind I had her store the wallet seed and then each individual private key for these wallets BTC/XRP/ETH . To make things simple i grabbed the 12 word seed and restored the wallet, all is good this wallet was created 7 months prior and the majority of the funds arrived in there starting from Jan when LE finally returned it all back to me, its now early May so the maximum coin held in there was sitting in there from JAN - MAY no hitch, no issue nothing, Deep down i knew the only reason i am using this wallet is because it was the easiest one i can recall to explain over the phone without me seeing the screen , i remember it all clearly, so yes I had my D'cent at the time but the LE had the seed and my trust with LE was at a all time low , what if a rogue agent kept the seed for 3 months after my release and then tried his luck to siphon the funds when we are all in our own world and even thought the only ppl it can be is LE good luck proving it. So I thought AW is safer than this as no one had seen the keys but me , wife and sister and I don't mean kept in memory i mean they once each had a copy of the paper wallets , so after release day i retrieved everything again in my mind I still had the idea the funds cannot stay in this hot wallet indefinitely , , after being released not sure if you realize you go through a slow motion mode where everything seems so fast and you feel like your in slow motion , i had this attitude toward everything including the wallet, almost 1 month after release June 2nd believe it or not 1st time i ever got Covid and I felt lethargic for a few days its now June 5th and im ok , I start to restore my Dcent hard wallet and create a new 24 word seed June 9th i decide to do my routine weekly checkup this time was almost 2 weeks since i last checked yes i had my portfolio which shows my holdings but not linked to any actual wallet. I don't know what it is i have to check the actual wallet itself and this is what assures me everything's ok but this time it was different.
The moment EVERYTHING changed , try imagine this as I logged in i notice the total being 850USD which is what i call empty and thought hurry up sync up!! 10, 20, 30 seconds went by and i thought this is weird never in my dreams did i think what I was about to find out actually happened TO ME out of all people ME no fukn way , this is the stuff i read on the news not happening to me no PLEASE GOD NO not 1 month after release, so just to make sure I'm not dreaming i open the individual addresses within the multicoin wallet and Let me try to explain the feeling I got when I saw an amount of 10+ BTC with a red minus symbol next to it meaning a TX of 10+ BTC has been sent out June 3rd i started too think was i drunk did i do this and cant remember, i open the TX ID i notice it went from wallet to wallet to wallet within several minutes i then started to think the worst I tried to make up everything under the sun that it could be other than what it actually was my mind wouldn't accept it, I always had BTC seed phrase and BTC address is impossible to brute force and if 256bit was crack-able, the world is in shit right now!!!!!!!, i then check my ETH and within the same 5 min time range 49.46ETH SENT out i still was in denial then XRP 22k+ sent out the exact same minute as ETH the BTC was 5 min after these 2 I slowly come to realize it was the seed not the BTC individual key how can anyone crack a SEED or a btc address nahhhh this is a Atomic wallet bug ... my body is now in shock cold sweat, white and a feeling like jail was a breeze , take me back there instead of this feeling. I then started to aim my guns at my wife thinking she may have accidently left the key in front of someone at this point she started to realize this is not just one of my little vent outs something serious has occurred and finally i do a google search on Atomic wallet and my heart sinks, 5000 others were in the same boat in a way i was glad i hated the thought that i would always think maybe it was her that messed up and she would be feeling the same... anyway if you are all thinking why didn't you just explain to her how to use the Dcent , look this was not an object i used to play with daily it was usually stored away and i forgot what the steps were and i just wanted to make things as easy as possible for her as she was scared shitless remember i was explaining all the steps of the top of my head over the phone and i cannot see her screen enough using atomic she didn't want to be blamed for a error she made which led to funds gone, which is why i went through practice runs with her made her send and receive small amounts before she even thought about using this for the bulk , i also didn't want to go through explaining how to update firmware and to do a checksum when creating a new dcent , i knew there would be a few new firmware's due for an update. THIS LED ME TO ATOMIC YES I KNOW I WISH I CAN TURN BACK TIME. By the way AW are liars they advertise as if they are a type of cold wallet and even claim as far as " Your funds are safe with atomic because its fully protected" IN THIER OWN WORDS , Here is the kicker they never had anyone read or check the terms and conditions prior to installing the wallet, all the new updates after June 3rd now have a terms and conditions where you must read before preceding to create a wallet. This in itself is a self own they just admitted with this action they should have done this before. Konstantin Gladych is the slimiest person in the crypto community after further investigating i realize he himself stores his funds on a trezor so even he himself doesn't trust his own wallet , the anger the embarrassment , the toll this has taken on my life is un-imaginable and him and people he as been in affiliations with in the last 10 years had always been involved in one shenanigan after another we should ALL IGNORE them until they prove to us and publish the full code back to front , You want to hear the funniest thing , after 7 months as a show-off gesture to pretend he cares he advertises a bug bounty which has never happened asking for anyone to figure out how this vulnerability occurred and the best part of this is THE CODE IS NOT OPEN yes no joke in fact his obfuscated the most important parts of the code which would hold the part where the keys a generated and what entropy method all this is hidden, to this date we only know of 1 company they gave authority to go thought the full code and the results were disastrous Feb 22 Least authority release a statement regarding the flaws in AW and if the users are not aware of this they are at risk of losing all there funds guess when we all hear about this after the hack occurred viewing through the way back machine, they were quick to shut them up and least excuse of why they removed the post was to not alert malicious actors who will then go ahead and act on this flaw- AW say they addressed the flaws but Least never had a chance to check again another 3rd party did the checking and this time they played ball , i guess they didn't want to look like extreme liars they claim to have said the security was enough , in other words Not Good or great . How can anybody that is using the wallet they like to call YOUR OWN BANK , sorry i will forever blame myself for using such a despicable wallet, Guarda i would call it the same shit owners are friends both are in court right now.
Sorry for the BLOG this isnt the place but now you know why I am so passionate about security even my own hardware wallet D'cent i will not use WHY? Closed source They fully support Algorand I would put them in the exact same category as Ledger .
THESE 2 below are different -
Both are fully open , reproducible and air gapped and never had an incident occur.
Believe it or not i own both below but guess what i use ? AIRGAP why? Its much easier to use more compatible and has a very open dev support kit to assist any other chain to implement their own coin. AP had it on xgov 108 and support was there but just needed a little more to get it over the line.
- Airgap.it
- Keystone 3 Pro
The above 2 on the other hand have proven full transparency, 1 is free and also has the framework toolkit which assists developers add their own chain "Isolated Modules" Support team are available via telegram and email and speak English properly
Keystone is another option but we will need to work from scratch I can see this being more difficult plus there team is in south Korea available via email and chat sometimes as-well as telegram
I didn't think i was going to be here for 3 hours writing this when i started but one thing led to another and oh well fuk it . POINT IS WE CANT RELY ON CLOSED SOURCE WALLETS EVEN IF THEY ARE HARD WALLETS. PLEASE FOR THE LOVE OF ALGO LETS GET AIRGAP GOING ITS THE QUICKEST PATH TO SAFTEY RIGHT NOW
GTR ARGH
We really Really need to protect our algo, there is a cheap open source software called AIRGAP and this utilises a spare smart phone aS your hardware wallet. If you use a Samsung well even Samsung hardware is open source. I have DCENT WALLET And I have now moved alll to airgap because DCENT is close source.
2 ways to do this add a feature in pera wallet which enables you to create a watch address but spendable with hardware key.. Via QR CODE signature.. This already exists and should be simple.
The other way is to utilise AIRGAP isolated moduke feature which enables you to. Add a complete seperate layer 1 chain to AIRGAP wallet and Vault. They have already created the code required to make this happen. Visit WWW.AIRGAP.IT
T
TechTangle
Please broaden hardware wallet support. The KEYSTONE 3 PRO with its open-source commitments is an interesting option. The Tangem wallet is accessible and mobile friendly.
Andrew
TechTangle only thing i dont like is the bkind signing. Why am i even here mynalgo is gone stolen my someone doing messina stake also
K
Kaj
TechTangle I made another petition here explicitly for Tangem: https://roadmap.perawallet.app/feature-requests/p/support-tangem-hardware-wallet-cards
Andrew
Trust me KEYSTONE 3 pro BIO-METRIC, Its a touchscreen , AIRGAPPED, Multisig function, multicoin. the best functionality in a wallet i have seen to date. go look for your self, you can have 3 x 24 +25th word phrases in the same wallet
GTR ARGH
Andrew Yes Airgap.it has the same features and would be quicker to accomplish
Nathan Adams
DCENT Wallet users are huge ALGO fans, being that we hold other ISO coins. It would be only logical to add support to D'CENT ASAP!
sonny
Im not a hardware wallet guy yet, but this would be another step forward for algo. So yes!
AP
Yes. We should have support for multiple hardware wallets which will help community to mitigate risk
Andrew
AP yeh that would been th speedbimb i neeeded. I lost all slgo. I think perpetrator was staking in mediins