The Cold Wallet SCAM No One’s Talking About (Dark Skippy)

แชร์
ฝัง
  • เผยแพร่เมื่อ 20 ก.ย. 2024

ความคิดเห็น • 276

  • @cyberscrilla
    @cyberscrilla  28 วันที่ผ่านมา +17

    These cold wallets will keep your crypto safe from this hack: th-cam.com/video/DFHS1kGHCEk/w-d-xo.html
    God bless,
    Alex

    • @user-wg2vw3mz1v
      @user-wg2vw3mz1v 28 วันที่ผ่านมา +1

      @cyberscrilla This is a lot more than just a _"scam"_
      ...but for once I appreciate the clickbait title so thumbs up!

  • @tobiuchiha8370
    @tobiuchiha8370 28 วันที่ผ่านมา +87

    Every hardware device I bought came straight from the manufacture. No third party what so ever. Not even from Amazon

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +13

      THIS is the way.

    • @eddie.b2k
      @eddie.b2k 28 วันที่ผ่านมา

      Good luck when the manufacturer leaks your address.

    • @Spearoman
      @Spearoman 28 วันที่ผ่านมา +5

      @@tobiuchiha8370 you can’t prove that. What if someone from the manufacturer is a hacker? What now?

    • @Sig_ben2
      @Sig_ben2 28 วันที่ผ่านมา +2

      Boom​@@Spearoman

    • @Spearoman
      @Spearoman 28 วันที่ผ่านมา

      @@tobiuchiha8370 nothing is 100% safe!

  • @braddater5834
    @braddater5834 21 วันที่ผ่านมา +9

    BUY cold storage from the manufacturer only

  • @rashidismail9537
    @rashidismail9537 25 วันที่ผ่านมา +3

    " Don't connect your main cold storage wallet to dapps.Use a burner wallet..." you said.It's not a question of using a burner wallet.It's a question of moving asset from point A to point B.Say you wanna trade/swap on a dex...or you wanna stake on a smart contract or other stuffs that you wanna do with your hardware wallet each time you're online .Yupp ! That's right ! You need to move the desired crypto asset that you wish to swap or stake or whatever...from point A to point B. Meaning..from the main cold storage wallet to a burner wallet. That alone requires our signature from the hardware wallet.Why? Because we moving from point A to point B. We haven't even connected to dapps. Just moving the desired crypto asset from main cold storage to a burner wallet.That alone is a loophole.Why? Because we need to sign the txn. And that's where ' Dark Skippy ' comes in place.

    • @cyberscrilla
      @cyberscrilla  25 วันที่ผ่านมา +3

      Yeah but that’s to avoid the most common scam in crypto which is a phishing attacks. And it’s still effective for that.
      Basically all cold wallets on the market are immune to Dark Skippy. You need to understand: Unless you install the malicious firmware, you won’t be affected by dark skippy.

  • @GrantOakes
    @GrantOakes 28 วันที่ผ่านมา +23

    Back in 2018 I bought a Ledger hardware wallet on Amazon and during the setup phase something didn't work correctly. Looking back I might have gotten a corrupted device.

    • @mtnvortex
      @mtnvortex 28 วันที่ผ่านมา +6

      As you probably now understand, these wallets should ALWAYS be purchased from the actual company.
      For the benefit of others reading this:
      If, for some reason, you end up buying one on Amazon or elsewhere, a reset should be performed before using it. Never just use a seed phrase provided with the Amazon purchase. Most wallets will have some sort of "reset" function, with which you can create a fresh seed phrase or private key to improve your odds of having a secure wallet.

    • @GrantOakes
      @GrantOakes 28 วันที่ผ่านมา

      @@mtnvortex Fortunately I didn't use it. A friend wanted to buy from me so I sold it.

  • @ThomasConservative
    @ThomasConservative 27 วันที่ผ่านมา +10

    Good information.

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +2

      THANK YOU 🙏
      God bless

  • @-zerocool-
    @-zerocool- 28 วันที่ผ่านมา +4

    CTO at Ledger tweeted about it on the day of disclosure (5th Aug 24), its good practice to follows these types of security researcher to stay up to date.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      I saw that. But no public announcements from the hardware wallet brands themselves.
      The average consumer doesn’t follow the CEO/CTO/CXOs of these companies.

  • @djkidloco-official
    @djkidloco-official 28 วันที่ผ่านมา +29

    Tangem + pin + biometric. I dont see how this can affect IT. Not to mention card

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +19

      Yep, Tangem is safe. More so because the user can’t install firmware on Tangem nor are any firmware updates required.

    • @djkidloco-official
      @djkidloco-official 28 วันที่ผ่านมา +1

      @@cyberscrilla agree. Once i decide to add real money wanna add a bit to safety. Same as you buy brand New phone...but you dont wanna buy case or protective glasa. Xoxoxo. But Great video

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +10

      I use my Tangem wallet on my every day phone. I just use a different phone when recording videos 😉

    • @roysams8483
      @roysams8483 28 วันที่ผ่านมา +4

      So if you use a Tangem wallet, then you’re good from this hack, since the scammers can’t install their shady firmware on your Tangem. Is that correct??

    • @djkidloco-official
      @djkidloco-official 28 วันที่ผ่านมา

      @@roysams8483 yup

  • @catalinathiersen6629
    @catalinathiersen6629 27 วันที่ผ่านมา +2

    Hi Alex. This is great info. I'm based in South Africa and we can only buy from resellers in SA. There is no shipping from the manufacturers in our country

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +2

      I understand. Make sure to buy a device that allows you to verify firmware authenticity (Tangem, Trezor, Ledger, Onekey, Keystone)

    • @warhoofd74
      @warhoofd74 24 วันที่ผ่านมา +1

      Its a best practice to always reset your cold Wallet to factory settings before you start using it

    • @cyberscrilla
      @cyberscrilla  24 วันที่ผ่านมา +1

      As long as the device asks you to setup a new wallet (generate a new seed phrase) no need to rest it.

  • @Anthony-mh1oj
    @Anthony-mh1oj 28 วันที่ผ่านมา +14

    Well done Alex. Much appreciated

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thanks for watching

    • @FathomFrequency
      @FathomFrequency 28 วันที่ผ่านมา

      🙄😬...this made me think of canned (smoked) skip jacks...I hope they get smoked...😂...thanks for the heads up!

  • @MJ-ge6jz
    @MJ-ge6jz 12 วันที่ผ่านมา

    I was a victim of the Atomic Wallet attack. All my crypto was drained. I'm wondering if my private key's were derived from my transactions? I've joined a class action lawsuit but who knows what outcome this will bring.

  • @Jadamog
    @Jadamog 19 วันที่ผ่านมา +1

    Just to clarify, a secure element, a secure bootloader or verifying your firmware is authentic, does not prevent this attack. The attack occurs with malicious firmware, and if the manufacuture of the hardware wallet it malicious, then the firmware can be malicious, even if it is shown as "authentic".
    To prevent this attack, the hardware wallet needs to support the Anti-klepto protocol. Only a two hardware wallets I know of support this. The BitBox02 and Jade.

    • @cyberscrilla
      @cyberscrilla  19 วันที่ผ่านมา

      But those mechanisms prevent downloading a malicious firmware, thus it helps to prevent this attack

  • @52msdiane
    @52msdiane 24 วันที่ผ่านมา

    Thx Alex!!!!! Question! If I am transfering crypto from Uphold to Tangem do I sent it to XRP or XRP Ledger? As always, we appreciate you!!! thank you!

  • @zainghani7116
    @zainghani7116 24 วันที่ผ่านมา +1

    what about trezor model t

  • @52msdiane
    @52msdiane 28 วันที่ผ่านมา +1

    Thx Alex! Can we use Face ID along with Access code fir Tangem? Requiring both to log in? And if I wanted to disable Face ID could I do that too? Thank you for your hard work! 💪🤩

  • @SlykeThePhoxenix
    @SlykeThePhoxenix 28 วันที่ผ่านมา +3

    Verify transactions on Sparrow before broadcasting.

    • @ighayinosayi
      @ighayinosayi 28 วันที่ผ่านมา +1

      Or never connect your hardware wallet to anysite.
      I try as much as possible to use only secondary software wallets to interact with websites

  • @DJ_Megahertz
    @DJ_Megahertz 12 วันที่ผ่านมา

    I use Ballet is that still safe? Bought directly from them.

    • @cyberscrilla
      @cyberscrilla  12 วันที่ผ่านมา

      ANY WALLET THAT USES THIS CHIP WAS MENTIONED IN THE VIDEO.

  • @GalutiaFamilyChannel
    @GalutiaFamilyChannel 28 วันที่ผ่านมา +2

    These attacks are always evolving.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      @@GalutiaFamilyChannel Exactly! Gotta remain vigilant

  • @ardayarday4660
    @ardayarday4660 28 วันที่ผ่านมา +4

    thanks, another great video.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thanks for stopping by!

  • @prestonhudman
    @prestonhudman 28 วันที่ผ่านมา

    Are the private keys getting compromised or is the Seed phrase to the wallet getting compromised? It seems a lot more difficult to somehow steal multiple private keys compared to only having to steal one seed phrase/recovery phrase.

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +1

      Seed phrase.

    • @prestonhudman
      @prestonhudman 26 วันที่ผ่านมา

      @@cyberscrilla I have a very unpopular theory which is that the safest way to hold crypto is to use The Exodus desktop wallet on laptops and PCs only, and to forgo creating a password when it prompts you to which means you can't access or see the seed phrase, and then when you're done sending crypto to the wallet just write down each one's private key onto paper accurately, then do a factory reset on the device making it impossible for anyone to ever access that wallet again. The seed phrase was created locally on the machine, and no communication made two outside servers so after the reset the seed phrase remains a mystery forever. Of course the crypto is safe thanks to the piece of paper with the private keys. Can import those into a new wallet anytime, and I wish I knew of other desktop wallets that worked like Exodus does. Since the crypto itself doesn't leave the blockchain and is governed by a long and complicated password called the private key, doesn't it make sense the most secure method would be to reduce the footprint of that password down to just a piece of paper that is governed by you and is unhackable because it doesn't exist online or in any device, or continue relying on the seed phrase (possibly compromised) and neglect the long and complicated passwords that actually control things, so that you can use a third-party companies tools to create additional password barriers, starting with the PIN code or password creation that is instantly imposed on us on mobile. Doing it my way makes it a 2 person thing, me and my money, but creating a pin word and or password in using two-factor authentication... you're telling the wallet maker to keep anyone who can't cross these barriers away from your money including you. If the password equals the money and I can keep the password safe, as long as I can transact as needed there's literally no reason to involve anyone else at that point and additional passwords that stem from involving a third party makes me fundamentally less secure.
      Whatever. Good luck people. I'm confident that my method is the only method proven to be 99% "probably" safe. I think all the other wallets, including Exodus once you have created a password, are far less than 99% probably safe. In my opinion they are like 44% probably not safe. Lol.

    • @Praptoprapti2023
      @Praptoprapti2023 25 วันที่ผ่านมา

      ​@@cyberscrillahow about the pass phrase?

  • @masterj7048
    @masterj7048 28 วันที่ผ่านมา +1

    Definitely keep up with all the scams and hacks out there I feel like this is only going to get worse going into the bull market we need to stay on top of this as much as possible

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +2

      THIS. Cybercrime is a massive and lucrative business. It will only continue to grow.

  • @JesusIsLord1976
    @JesusIsLord1976 18 วันที่ผ่านมา

    Until Tangem Pay Visa comes out. Is there another option for spending via a credit card or pre paid card with funds from cold / hard wallet?

  • @darrinshaw8832
    @darrinshaw8832 27 วันที่ผ่านมา

    Thanks for the heads up Bro!

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา

      Thanks for watching man!

  • @panachi6103
    @panachi6103 28 วันที่ผ่านมา

    i just found you videos, so much is been said in the world about the crypto ., so i am now giving it a try, and want to learn about crypto, so i can invest, are you offering any course for new bees to learn about crypto etc

    • @CJStrykr
      @CJStrykr 28 วันที่ผ่านมา +1

      First step is to assume everyone in the comments is a clever scammer

    • @panachi6103
      @panachi6103 28 วันที่ผ่านมา

      @@CJStrykr ohhh ok yes i seen before some or many talks about a particular person who trades etc , so its a scammer . thanks

  • @genesyz-
    @genesyz- 27 วันที่ผ่านมา +1

    Thanks for make this video i asked for im new in this channel and love the content 🚀

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา

      Yes, thank you for bringing this to my attention and thanks for watching!

  • @mopz1ner
    @mopz1ner 28 วันที่ผ่านมา

    I need some advice, If you make a new SOL token and its not yet listed on a cold wallet, how can you send it new to you're new cold wallet, and what is the best SOL supported cold wallet besides ledger? In you're opinion.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +4

      If the wallet supports SOL, then you can send any token on SOL to that wallet as it’s supported.
      For SOL, I like Tangem, Ledger, and Trezor

  • @curiouspeople6441
    @curiouspeople6441 28 วันที่ผ่านมา +4

    Good thing I used a Tangem wallet , you can’t change the firmware. Also ledger is at high risk . Which why I stopped using ledger

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +1

      Yep, no firmware updates on Tangem.
      Also, Ledger is not at all high risk. And I’d recommend Ledger to anyone looking for a secure wallet.
      Don’t fall for the FUD.
      I covered my reasoning as to why Ledger is solid in this video:
      th-cam.com/video/gQB0by9NDh8/w-d-xo.htmlsi=O38X8RRTSr9qsjm8

    • @MrKey-jt6zm
      @MrKey-jt6zm 28 วันที่ผ่านมา +3

      You don't verify the firmware on Ledger, just show them trust. They have stated this.

    • @curiouspeople6441
      @curiouspeople6441 28 วันที่ผ่านมา

      @@cyberscrilla if I am a 🐑 I will trust ledger , ledger is a risk

    • @cyndilee5862
      @cyndilee5862 26 วันที่ผ่านมา

      I think the key phrase is “ air gapped”

  • @yanan3681
    @yanan3681 28 วันที่ผ่านมา +2

    How safe is ellipal?

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +2

      Ellipal is fine. Not my favorite wallet though. But since you can verify ellipal firmware, Dark Skippy isn’t a threat to it.
      Just don’t download any malicious firmware and your good-that’s the moral of this video

    • @yanan3681
      @yanan3681 28 วันที่ผ่านมา

      @cyberscrilla thank you for your reply.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thanks for watching the video!

  • @beniferra5736
    @beniferra5736 12 วันที่ผ่านมา

    Everyone is talking about it

  • @BigTwoTrey
    @BigTwoTrey 25 วันที่ผ่านมา

    Which tokens have been shown to have this malware on it? thats the only way I could see this effecting hardware wallets, transaction/smart contract interaction itself

    • @cyberscrilla
      @cyberscrilla  25 วันที่ผ่านมา +1

      I explained it in the video. It’s a malicious firmware. If you install it on your device, it could potentially affect any transaction.
      The example shown on the Dark Skippy website is BTC

  • @rowanwilliams7441
    @rowanwilliams7441 26 วันที่ผ่านมา

    Password managers... proprietary hardware wallets n firmware... targets.
    Big money involved.
    What could go wrong

  • @hanshags
    @hanshags 28 วันที่ผ่านมา

    Nice video thanks 👍 Good to know about 😊 Will having a passphrase (25th word) change anything - if you did get this malicious firmware code installed? Just wondering 😊🤔 Update: I see in another comment you did answer this would not help - just can't quite wrap my head around how that works, but kindda see that once wallet is "open" for signing, it's the malicious code that works on the signature end of the transaction, hence a passphrase is not really of any added benefit 🥴🤪👍

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Exactly. If you get the malicious firmware, it’s game over.

  • @format1998
    @format1998 27 วันที่ผ่านมา

    The reason why no ones talking about it... is because its common knowledge buy from a manufacturer website and only update firmware from the manufacture.....The whole point of a hard ware wallet is security.

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา

      There’s no such thing as common knowledge or common sense in crypto. Or at least if there is, it’s few and far between

    • @delmarcalifornia8154
      @delmarcalifornia8154 14 วันที่ผ่านมา

      Ive been in crypto 4 yrs and barely getting to buy a cold wallet, I looked up BEST BUY but did more research and stumbled on to here. Its not common knowledge to me lol but makes total sense.

  • @ddddaaddaaaa
    @ddddaaddaaaa 28 วันที่ผ่านมา +1

    pls more of this Alex

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      More of what exactly? Or what did you like most about this video? Thanks for watching!

    • @ddddaaddaaaa
      @ddddaaddaaaa 28 วันที่ผ่านมา

      @cyberscrilla I mean this kind of video where you tackle scams and crypto security threats in general

  • @ionescuion3251
    @ionescuion3251 27 วันที่ผ่านมา

    keystone pro is secure against dark skippy?

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา

      It has the security features to keep you safe from this attack.

  • @Praptoprapti2023
    @Praptoprapti2023 25 วันที่ผ่านมา

    Pass phrase can be extracted too?

  • @curtssallee9807
    @curtssallee9807 22 วันที่ผ่านมา +1

    PROTECT YO SCRILLA......thanks fam✌️

    • @cyberscrilla
      @cyberscrilla  22 วันที่ผ่านมา +1

      Always! Thanks for watching man 🤜🤛

  • @Epictetus888
    @Epictetus888 28 วันที่ผ่านมา

    So you saying a Air Gapped wallet is good or bad? Cheers 🙂

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Neither. I’m saying an air gapped wallet does not provide any extra security against this attack or other types of attacks for the most part.
      There are more important security features your should look for, such as the ones I mentioned in this video.

    • @Epictetus888
      @Epictetus888 28 วันที่ผ่านมา

      @@cyberscrilla awesome, thanks for the clarification., much appreciated ❤️
      Also I often wonder, with technology evolving so fast, who knows how safe any of the current standards will be in 5, 10, even 20 years time. I guess U could keep up with the evolving tech, but if you pass away and leave millions in crypto to a loved one.

  • @Cryptony9
    @Cryptony9 28 วันที่ผ่านมา +1

    Apparently IOS and Android have to be careful with updates right now especially. I guess hackers are mimicking updates on those phones that are not regular updates it's just mailware that they are just installing on your IOS or Android. Hackers are definitely getting clever.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +2

      Interesting…

    • @ummb7963
      @ummb7963 25 วันที่ผ่านมา

      Where did you hear this?

  • @helderdossantos7665
    @helderdossantos7665 28 วันที่ผ่านมา

    Good job ...thank you 😊

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thanks for watching!

  • @kingWaterBoy
    @kingWaterBoy 28 วันที่ผ่านมา +1

    Can you look into Dcent wallet ?

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +2

      I have DCENT. I don’t like it. It’s 100% closed source. Would not recommend it

    • @kingWaterBoy
      @kingWaterBoy 28 วันที่ผ่านมา

      @@cyberscrilla can u look into Ryder wallet? As of now tangem might be my wallet soon

    • @xtophgerard1169
      @xtophgerard1169 27 วันที่ผ่านมา

      ⁠@@cyberscrillaclosed source is a good way to not allow hackers to study the code for weaknesses and exploit them. Isn’t ledger closed source as well? Btw, safenet is also closed source…

    • @earth2steven197
      @earth2steven197 27 วันที่ผ่านมา

      What does that mean & What makes the Dcent unsafe?

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +1

      Closed source means we don’t know what happens in the backend of the wallet. We don’t know how the seed phrase is generated, or if it’s safe, as the code is only known by the manufacturer. There’s no way to verify any of the company’s claims are true

  • @chafik0566
    @chafik0566 28 วันที่ผ่านมา +1

    Hmm ... to check if one's hardware wallet has been compromised it might be a good idea to do a small on chain transfer and then to run the skippy attack to see if the seed phrase can be reconstructed, right? Maybe certain shady sources/wallet resellers can be exposed.

  • @FishingFettish
    @FishingFettish 28 วันที่ผ่านมา +1

    Trezor goes through this when I set up a new wallet 💯 I got it from Amazon, the seals were intact and still wiped and flashed Trezor firmware better safe than sorry

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +5

      As long as you confirmed the device/firmware is genuine, you should be good to go.
      I’d still never recommend buying a hardware wallet from a third party though.

    • @ZombieCorp999
      @ZombieCorp999 23 วันที่ผ่านมา

      ​@cyberscrilla Is Amazon a third party if the store within Amazon is the orginal company? Example, I looked up the "Amazon choice" Trezor and the seller is "the Trezor store".

  • @richardthomas-wt1lj
    @richardthomas-wt1lj 28 วันที่ผ่านมา

    Thanks for Tangem !

  • @vijay_kolkata
    @vijay_kolkata 28 วันที่ผ่านมา

    Alex nice information thanks 🙏

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Glad you liked it! Thanks for watching

  • @user-wg2vw3mz1v
    @user-wg2vw3mz1v 28 วันที่ผ่านมา +1

    This is a lot more than just a _"scam"_

  • @Beats-t7h
    @Beats-t7h 28 วันที่ผ่านมา +1

    What about dcent wallet

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +1

      Likely fine when it comes to this attack.
      But I don’t like DCENT in general though because it’s 100% closed source.

    • @Ologun1
      @Ologun1 28 วันที่ผ่านมา

      ​@@cyberscrillawhat do u mean closed source?

    • @Soarex83
      @Soarex83 25 วันที่ผ่านมา +1

      @@cyberscrillacan you do a video about open source and closed source hardware wallets…I don’t know the advantages and disadvantages of

  • @rashidismail9537
    @rashidismail9537 28 วันที่ผ่านมา

    What's a crypto hardware wallet? A signing device.And that's where it is targeted at.When signing txn.Doesn't matter when connected to dapps etc...we're screwed altogether eventually.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +1

      Don’t connect your main cold storage wallet to dapps. Use a burner wallet.

    • @cyndilee5862
      @cyndilee5862 26 วันที่ผ่านมา

      @@cyberscrillacan u help me understand what you mean by burner wallet?

    • @cyberscrilla
      @cyberscrilla  26 วันที่ผ่านมา

      Any wallet that doesn’t have all your crypto stored on it, just one you can use to transact. Could be a hot or cold wallet.

    • @OLOLZULU
      @OLOLZULU 26 วันที่ผ่านมา

      @@cyberscrilla So if I transfer coins from cold storage to an exchange and then connect the exchange to dapps I should be good?

    • @cyberscrilla
      @cyberscrilla  26 วันที่ผ่านมา

      You can’t connect an exchange to dapps.
      It’s simple. Have 1 wallet to hold all you coins (this is never connected to a dapp)
      Have another wallet only for transactions with just the amount of money you need to transact. Once you’re done doing whatever, send back to your storage wallet for safe keeping.

  • @nowheretorun2857
    @nowheretorun2857 22 วันที่ผ่านมา

    I use D'Cent with the biometrics, I should be fine right?

    • @cyberscrilla
      @cyberscrilla  22 วันที่ผ่านมา +1

      @@nowheretorun2857 Not sure as DCENT is 100% closed source. So we don’t know anything about the wallet other than what to company tells us.

    • @nowheretorun2857
      @nowheretorun2857 22 วันที่ผ่านมา

      @cyberscrilla oh thank you.
      I just watched your follow up video on best wallets, and Tangem is very interesting.

    • @cyberscrilla
      @cyberscrilla  22 วันที่ผ่านมา +1

      Tangem is one of my favorites. And a lot of people would agree! Definitely the most enjoyable hardware wallet I own

    • @nowheretorun2857
      @nowheretorun2857 22 วันที่ผ่านมา

      @@cyberscrilla it's done. I used your code. Thank you.

    • @cyberscrilla
      @cyberscrilla  22 วันที่ผ่านมา +1

      Wow, you’re quick! Thank you. Let me know if you have any questions

  • @cyndilee5862
    @cyndilee5862 26 วันที่ผ่านมา

    How does one know the firmware is malicious?

    • @cyberscrilla
      @cyberscrilla  26 วันที่ผ่านมา +1

      Your hardware wallet will tell you. Or if you’re not downloading it form the manufacturers website you can just assume its malicious

  • @cloud10property40
    @cloud10property40 23 วันที่ผ่านมา

    Exodus?
    Phantom?

    • @cyberscrilla
      @cyberscrilla  23 วันที่ผ่านมา

      You’re fine. But you shouldn’t be storing crypto in a hot wallet in the first place. Huge risk

  • @mehrdaddavani3532
    @mehrdaddavani3532 28 วันที่ผ่านมา +1

    With tangem is zero percent hack

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      With most wallets on the market that I can think of

  • @democratsaretrash9366
    @democratsaretrash9366 5 วันที่ผ่านมา

    Buying Ledger nano x from Best buy would be safe right?

    • @cyberscrilla
      @cyberscrilla  5 วันที่ผ่านมา

      I wouldn’t do it. But you’re likely okay

  • @Storynews743
    @Storynews743 28 วันที่ผ่านมา

    What about safepal S1 ?

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +1

      Safepal is fine

    • @Storynews743
      @Storynews743 28 วันที่ผ่านมา

      @@cyberscrilla thanks

  • @Iwnd0
    @Iwnd0 28 วันที่ผ่านมา

    What if its only available from 3rd party in my country...but the 3rd party listed on official keystone website..

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Keystone lets you verify that the device and firmware are authentic, so you’re likely okay.
      However, it's still best practice to avoid ordering wallets from third-party sellers.

    • @Iwnd0
      @Iwnd0 28 วันที่ผ่านมา

      The problem is they dont ship to my country..keystone only available on 3rd party in my country..tho the 3rd party is listed in the official keystone website...thanks for the reply!

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      I understand.

    • @Iwnd0
      @Iwnd0 28 วันที่ผ่านมา

      @@cyberscrilla unrelated to coldwallet...do you use yubico key to secure all of your digital information/media etc?

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      No, I use my Ledger flex, which is similar as it offers U2FA.

  • @aresares8523
    @aresares8523 28 วันที่ผ่านมา +2

    What about Trezor with Passphrase?

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +3

      Trezor is good. Passphrase doesn’t help in the case of this attack. But like I said, most wallets have security features in place to prevent it-including Trezor

  • @vogters12345
    @vogters12345 28 วันที่ผ่านมา

    Great video!

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thank you for watching!

  • @Deepak-s8e9b
    @Deepak-s8e9b 27 วันที่ผ่านมา +2

    Storing crypto is actually harder than anything else in this field.
    The only reason why ppl are chasing crypto is because of high returns.
    Apart from this crypto is actually useless

  • @crossing3790
    @crossing3790 28 วันที่ผ่านมา

    love my tangem card

  • @vipuljivani7692
    @vipuljivani7692 28 วันที่ผ่านมา

    Super information

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thanks for watching!

  • @AlexanderVadimovich
    @AlexanderVadimovich 27 วันที่ผ่านมา +1

    unpopular opinion:
    i just keep everything in trust wallet in a dedicated smartphone with no app/email , equipped with antivirus and vpn 🤷‍♂

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา

      Yikes… not worth the risk in my opinion

  • @Tell_It_Right
    @Tell_It_Right 26 วันที่ผ่านมา

    This guy loves saying, "Dark Skippy".

    • @cyberscrilla
      @cyberscrilla  26 วันที่ผ่านมา +1

      So… have you heard about dark skippy? 😆

  • @Spearoman
    @Spearoman 27 วันที่ผ่านมา

    There called gateways. Your crypto isn’t safe with cold wallets.

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +1

      Source: you made it up

    • @Spearoman
      @Spearoman 27 วันที่ผ่านมา

      @@cyberscrilla Ha! Research…the ledger is completely safe. But there called Gateways, back doors. Research!!! 🧐

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +2

      My guy. Ledger does not have a backdoor.
      Look up the definition of a backdoor. Then go “research” how Ledger Recover works-which anyone can do considering it’s 100% open source.
      If Ledger truly had a backdoor they would have gone out of business a longtime ago.
      Also, your comment was directed at all cold wallets, not just Ledger, so your statement is a bit misleading.
      But for real, don’t fall for the FUD. 99% of the crap online is misinformation. So if that’s what you’re consuming (without doing your own due diligence) then you’re being mislead.
      Careful..

    • @Spearoman
      @Spearoman 27 วันที่ผ่านมา +1

      @@cyberscrilla wow, that’s a long response. Who are really trying to convince? You googled it didn’t you…😂😂😂

  • @wrfootball3847
    @wrfootball3847 28 วันที่ผ่านมา

    Great video

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thanks for watching!

  • @chrisrasmussen-il9bo
    @chrisrasmussen-il9bo 16 วันที่ผ่านมา

    Fuck I’m still paper Wallets 😮

  • @justinheard3895
    @justinheard3895 28 วันที่ผ่านมา

    Do I throw away my ledger Nano x? Sheesh

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      No way! Ledger Nano X is solid.

  • @Spearoman
    @Spearoman 28 วันที่ผ่านมา +1

    The solution to not losing your crypto. #1 don’t own too much crypto. AKA XRP, own under 10k.
    #2 keep your XRP on the xrp ledger and having the most regulated crypto exchange.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +3

      Just, no…

    • @GFYM_Finance
      @GFYM_Finance 28 วันที่ผ่านมา +2

      This is .... the worst crypto advice in the history of crypto advice.

  • @Ghairco
    @Ghairco 28 วันที่ผ่านมา

    Scammers in these comments. Stay woke

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Don’t worry. I delete/ban them. Just takes me a minute to notice them sometimes

  • @martincro3
    @martincro3 28 วันที่ผ่านมา +1

    Technically ledger is safe due to simplicity of device?

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +1

      Ledger is a secure wallet

    • @a1toppg
      @a1toppg 27 วันที่ผ่านมา

      Backdoor? Not sure which cold wallet company it was.

    • @xtophgerard1169
      @xtophgerard1169 27 วันที่ผ่านมา +1

      @@a1toppgno back door. Just don’t use those apps allowing to access you walllet directly . Use it as a wallet only like I do.

    • @a1toppg
      @a1toppg 27 วันที่ผ่านมา

      @xtophgerard1169 how do u use yours?

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +2

      Ledger never had a backdoor. That was misinformation that keeps getting spread. Don’t use Ledger Recover if you don’t want and you’re good

  • @TheGreatestBeyonder
    @TheGreatestBeyonder 27 วันที่ผ่านมา

    Ledger wallets suck!!

    • @cyberscrilla
      @cyberscrilla  27 วันที่ผ่านมา +1

      Why? Ledger has nothing to do with this attack

  • @SutboxSutty
    @SutboxSutty 25 วันที่ผ่านมา

    you mention AIR GAP WALLET NO GOOD IT WOULD BE GOOD IF YOU EXPLAINED WHY CHEERS

    • @cyberscrilla
      @cyberscrilla  25 วันที่ผ่านมา

      Because that’s not going to save you from this attack. It’s at the firmware level. An air gap device doesn’t protect you from downloading a malicious firmware. You need other security features in place.

  • @ProductionJunction1
    @ProductionJunction1 27 วันที่ผ่านมา

    This is why GOLD

  • @dalehub
    @dalehub 28 วันที่ผ่านมา

  • @Peterogen
    @Peterogen 28 วันที่ผ่านมา

    ❤❤❤❤❤❤❤❤❤

  • @nickconnor8667
    @nickconnor8667 28 วันที่ผ่านมา

    This why you should never allow automatic firmware updates

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา +1

      Mmm. Not exactly.
      If you don’t trust the manufacturer, then sure.
      But if you don’t trust the manufacturer, why use their wallet in the first place?

    • @nickconnor8667
      @nickconnor8667 28 วันที่ผ่านมา

      @@cyberscrilla it's not about trusting the manufacturer , their servers that send firmware updates could get exploited by a hacker who could then upload a fake firmware update if you have automatic firmware downloads then the attacker has all your funds and it wouldn't even be the wallet manufacturer's fault at that point this attack has happened with several firmware servers for several other electronic products allowing hackers to hack various computers and I believe this attack will happen to hardware wallets next

  • @tribeblessed3232
    @tribeblessed3232 28 วันที่ผ่านมา

    Is trevor vulnerable?

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Did you watch the video?

  • @brt525
    @brt525 28 วันที่ผ่านมา

    👍👍👍👍

  • @jadebennett-jr8er
    @jadebennett-jr8er 27 วันที่ผ่านมา

    👍👍👍😁

  • @maaifoediedelarey4335
    @maaifoediedelarey4335 28 วันที่ผ่านมา

    Ledger and Trezor are crap. In fact, the absolute best cold hardware Bitcoin wallet is simply this : Take USB drive, flash latest verified TAILS on it (which automatically will include latest verified Electrum wallet), and *only* connect it to Linux pc which are connected to router via ethernet cable.

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      A USB drive? No thanks.
      Ledger and Trezor have several security features that not only prevent a person from physically accessing your device, but also prevents various types of digital attacks.

    • @maaifoediedelarey4335
      @maaifoediedelarey4335 26 วันที่ผ่านมา

      ​@@cyberscrilla Ledger and Trezor had been hacked before - they're tainted and can never be trusted again. No other hardware wallet can claim to be safe, they may or may not be, only the future will tell (including open-sourced ones - who really inspects these codes ?) - I will not trust any of them with my BTC. It's not about the USB obviously, the whole drive is wiped & formatted and encrypted by TAILS, there are no other software on it, your BTC is safely in the verified Electrum Wallet inside TAILS, you boot directly into TAILS, bypassing the host pc, it connects only via TOR, and like I said - avoid wifi and only connect via ethernet. There is not a single weakness in it, there simply is no safer alternative.

  • @ballzout8146
    @ballzout8146 28 วันที่ผ่านมา +1

    Great video thank you!!

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      Thank you for watching!!

  • @csrtwolegends1265
    @csrtwolegends1265 28 วันที่ผ่านมา

    I don't care 😂😂I can't even access to my own cold storage

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      lol why not?

    • @csrtwolegends1265
      @csrtwolegends1265 28 วันที่ผ่านมา

      @cyberscrilla idk I tried to access it but kept saying connection error I don't think it's big of a deal I use ledger

    • @cyberscrilla
      @cyberscrilla  28 วันที่ผ่านมา

      @@csrtwolegends1265 So it’s an issue with Ledger Live, not your wallet or loss of seed phrase

    • @csrtwolegends1265
      @csrtwolegends1265 28 วันที่ผ่านมา

      @@cyberscrilla no not at all

    • @csrtwolegends1265
      @csrtwolegends1265 28 วันที่ผ่านมา

      @@cyberscrilla yes just ledger live

  • @DigitalAssetNews
    @DigitalAssetNews 28 วันที่ผ่านมา

    🫡👏👏👏

  • @robzz5109
    @robzz5109 28 วันที่ผ่านมา

    Final DUMP ahead😫😩🦢🦢