Live data from Hacker News

“My PGP key is compromised, and at least many of my bitcoins stolen”

twitter.com

441–450 of 564 posts

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#441
post #96

One of the linked transactions: https://www.blockchain.com/explorer/transactions/btc/432ded9... The destination address ( https://www.blockchain.com/explorer/addresses/btc/1YAR6opJCf... ) seems to have received ~216 BTC yesterday in the span of 4 minutes

The hacker will have a rough time converting these to USD without exposing himself. If they’re in Russia they probably don’t need to care, but there’s a reasonable chance they live in a country that the FBI can reach. On the other hand, no one can do anything until the coins are moved or more information is uncovered. What a nightmare to lose $3.6m overnight.

Just use Defi - take a loan from a "smart" script with a collateral of tainted bittokens, then cash out loaned tokens, and never repay the loan. Isn't Finance 2.0 amazing? :)

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#442

Earlier quoted context omitted.

That's why hardware based security is really the only way at this point. He might be a bitcoin core Dev but does he use ledger/trezor etc? Is his PGP key on his hardrive or a smartcard? In this day and age your computer not a bastion it once was. (It never really was but it's more of a problem in 2022 than 1982).

This completely talks past what the person you're replying to is saying: it doesn't matter if "hardware based security is [...] the only way," because its conspicuous absence indicates that even the experts fail to meet the onerous requirements placed on them by cryptocurrency.

Well his PGP key was compromised too.

So why is crypto the only thing getting attention?

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#443

Earlier quoted context omitted.

That's why hardware based security is really the only way at this point. He might be a bitcoin core Dev but does he use ledger/trezor etc? Is his PGP key on his hardrive or a smartcard? In this day and age your computer not a bastion it once was. (It never really was but it's more of a problem in 2022 than 1982).

When someone writes: > Soon you will see people saying you should have done this or that complicated thing and you answer: > Is his PGP key on his hardrive or a smartcard? you're proving their point.

Why is it his PGP key being compromised proves bitcoin is bad?

That's the absurd confirmation bias going on in this thread.

Cryptos piffy catchphrase is be your own bank. you can own security far beyond a bank vault for like £40 if you get a ledger nano...

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#444

Earlier quoted context omitted.

When someone writes: > Soon you will see people saying you should have done this or that complicated thing and you answer: > Is his PGP key on his hardrive or a smartcard? you're proving their point.

But is it a reasonable point? I would assume that if you are a major player in the bitcoin world, you should do complicated things to secure yourself. Its sort of like if someone wins the lottery, and tells the world they are putting the money under their mattress in their home. Its not unreasonable to say that such a person faces more risk than an ordinary person and should install an alarm system or something.

Exactly they are ignoring that this is a solved problem.

If you don't take up the easy convenient solution to your problem that's on you.

Hopefully this is a starting red flag for the bitcoin Dev team to implement hardware wallet support.

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#445
post #35

I still think the reason Satoshi vanished is that he lost his private key and couldn't handle the embarrassment.

I figured he’s a guy who works in the national security sector and didn’t want his extra curricular work drawing attention to himself. If he had to pass occasional polygraphs, it could create some weird situations. And if he signed a contract giving all intellectual output to his employer (including side projects), he could find himself in a lawsuit.

If polygraphs worked that is.

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#446

Context now that the editorialised title has changed, this is a core Bitcoin developer. These things happen every day, but happening to a core developer (if confirmed!) who has a deep understanding of the systems and security indicates just how fragile crypto can be (in my opinion)

Nice straw-man argument. Eventually, you will understand that bitcoin is not crypto. There's bitcoin and there's everything else. Everything else is a scam. Bitcoin is the hardest money ever.

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#447
post #271

Context now that the editorialised title has changed, this is a core Bitcoin developer. These things happen every day, but happening to a core developer (if confirmed!) who has a deep understanding of the systems and security indicates just how fragile crypto can be (in my opinion)

>These things happen every day, but happening to a core developer (if confirmed!) who has a deep understanding of the systems and security indicates just how fragile crypto can be (in my opinion) Based on the other comments in this thread it looks like he didn't bother using a hardware wallet (which is literally something that's recommended on bitcoin.org[1]), and kept his wallet.dat on a server exposed to the intern…

Sorry but bring a horse to water is more of an analogy for the unitiated and enlightened can he shown and not adopt. In this case they were at the highest level of crypto so not really. I think saying idiot isnt true considering what theyve accomplished in career. Sounds more like core design flaws. People want convenience with finance and hardware wallets arent convenient, so he knowingly sacrificed security for convenience.

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#448

Earlier quoted context omitted.

OMG "vrml dropouts"! ;) That's olde skul. [anon]>>>>> Does the bitcoin community realize how literally crazy this guy is? [deleted]>>>> They look the other way. He is by most accounts a talented coder who understands bitcoin's protocol better than most. His eccentricities are alternatively ignored or tolerated, as they are largely (but not always) harmless as far as Bitcoin is concerned. [deleted]>>>> This tradeoff s…

Plenty of great programmers are nut jobs. I personally know at least two sedevancatists who are amazing coders.

Well your code relies on some core tenants or it wont run, and some core ethics of catholicism in history have shifted that wouldnt be valid before, so its reasonable to see how theyd think logically on any topic.

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#449
post #271

Earlier quoted context omitted.

>These things happen every day, but happening to a core developer (if confirmed!) who has a deep understanding of the systems and security indicates just how fragile crypto can be (in my opinion) Based on the other comments in this thread it looks like he didn't bother using a hardware wallet (which is literally something that's recommended on bitcoin.org[1]), and kept his wallet.dat on a server exposed to the intern…

Doctors make the worst patients.

Best comment yet. Outside hospitals ridden with smokers.

Re: “My PGP key is compromised, and at least many of my bitcoins stolen”

#450
post #216

Earlier quoted context omitted.

1. Disable JavaScript. 2. Access (almost) any website in the internet 3. ????? 4. Profit edit: Mastodon doesn't work without JavaScript, holy hell. We truly are living in a dystopia. Thankfully you can still access his profile from another trusted instance such as mastodon.social at https://mastodon.social/@lukedashjr@bitcoinhackers.org

> https://mastodon.social/@lukedashjr@bitcoinhackers.org This just redirects me back to https://bitcoinhackers.org/@lukedashjr >.

Interesting, you might need to it yourself through the UI then, just copy everything after the slash and paste into the search of any trusted Mastodon instance and it should load the profile through there. Not sure why the URL redirects to the other instance.
Post reply on HN