@TheChoamNomski@BTC_JEDI21 💯. Exceptional device for technical users. I plan to continue using mine, but I wasnt vulnerable from this issue. The primary thing that gives me pause is how insanely bad this error was. Its like designing a luxurious bathroom and forgetting to save room for the toilet.
Generate a random master Seed with 110 casino dice. Never transact with the master seed. Stamp it in steel. Generate random child seeds using bip-85 (using random index values). Never transact with the main child seeds. Add a STRONG 25th word passphrase to the bip-85 derived child seed(s). Secure AF.
Or use bip39, or bip85... there were numerous ways to protect against it. Not blaming the victims here, but self-custody is not for everybody, and if you are unwilling to learn and implement a security protocol beyond simply generating a seed and writing down 12 words, the risk is high.
I agree, Peter. And on the Coinkite point, I am with you and at odds with many ither influencers. The fact is this bug was sitting in plain view for 4 fucking years an nobody -- NOBODY -- found it. And while the bug was the equivalent of building a luxury bathroom but neglecting to plan for a toilet, it was a mistake, not an act of deception or dishonesty. Not to blame anyone who lost anything, especially since those who selected a coinkite device are more likely to have done their due diligence and done things right, but had users deployed any of the simple features that coinkite had integrated -- passphrases, entropy with dice, bip-85 child wallets, etc -- even this major threat could be protected against.
Coinkite will take a flogging for this and may go out of business. But they still have the most rich suite of security features on the market.
Spoken like a genuine retard. Why are you here if not for the self-soverign middle finger that separates money from state through raw democratic force of open tech. I dont want some stupid custodied token that requires KYC and their permission. I prefer to own my bitcoin and be my own bank, and that is why I am here...
@Pepe_frogimer@jackmallers Same boat, brother. 100 rolls for a 24-word seed on my end. Im also curious if the same compromised code used for generating entropy for master keys contaminated derived bip85 child seeds.
Meh. Ive had one since the beta. No seed phrase is a downer. For this price, the coldcard q is a better option. I stopped using bitkey when cashapp suspended my account for an apparent TOS violation. They provided no information regarding what the violation, and won't budge on the appeal. Im not associating my cold storage with a company that uses that level of authoritarian overreach.
@elonmusk spell out this xAi deal to the public. As someone who has admired you for a decade, who uses FSD 99% of the time and has promoted Grok to everyone i know, please tell me the details.
The american people do not want fully autonomous war machines or mass Ai domestic surveillance. Time for a poll?