Post
Topic
Board Hardware wallets
Re: It is NOT secure to use hardware wallets (and it never was)
by
Spendulus
on 10/04/2018, 03:55:17 UTC
Right, although the "someone" who has unfettered access to a computer with Intel ME is Intel themselves (and anyone else holding the code signing key for executing code on the ME processor). I think exploits were discovered last year where an attacker circumvented the use of the Intel code signing key, but I forget the specifics.

You see we can agree on somethings but few MS developers have woken up to the fact that Microsoft is locking them
out from the OS all over the place let alone are spying on every byte of data they can see.

Who would ever had thought that you would be getting a merit from me and take it from me, I don't get many to
give away but I am stuck with MS because it's all I know.

I suspect Goolge on Android devices is nearly as bad, they both have a bad track record, both work for the CIA/NSA

Just take an old laptop, load your favorite wallet and coins, then break or disable the wireless networking. Then break or disable the wired networking.

Although hardware wallets may have some issues, those issues are nothing compared to the problems of binding a machine to the greater world, uploading data and reporting in fashions the user is not privy to, and requiring downloading of supposed "updates" that are not comprehensible.

Yeah, but you don't want just any old laptop to do that on.  Like if you were to get one of your old laptops from 10 years ago that you were downloading a whole bunch of sketchy stuff on through limewire, I wouldn't think to recommend using something like that.  The most secure way is to buy a cheap laptop that has no wireless or bluetooth capabilities, and then load trusted/gpg verified files on the computer through booting it on a live-USB.

Any old laptop?

An old laptop with a new SSD running a new Linux can be a pretty nice and secure computer. I say "a new SSD" only because an old hard drive is pretty risky.

Look, it's important to think clearly about the issues in this thread. Most any machine is safe, if it is loaded with a wallet that allows you access to your private keys, and if it is not capable of getting on the internet.

Don't just disable the networking, break or remove the adapter. Then you have a machine that can only be interfaced with through the USB or other ports.