The Cold Wallet SCAM No One’s Talking About (Dark Skippy)

Поделиться
HTML-код
  • Опубликовано: 2 ноя 2024

Комментарии • 282

  • @cyberscrilla
    @cyberscrilla  2 месяца назад +19

    These cold wallets will keep your crypto safe from this hack: ruclips.net/video/DFHS1kGHCEk/видео.html
    God bless,
    Alex

    • @JPs-q1o
      @JPs-q1o 2 месяца назад +1

      @cyberscrilla This is a lot more than just a _"scam"_
      ...but for once I appreciate the clickbait title so thumbs up!

  • @tobiuchiha8370
    @tobiuchiha8370 2 месяца назад +92

    Every hardware device I bought came straight from the manufacture. No third party what so ever. Not even from Amazon

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +14

      THIS is the way.

    • @eddie.b2k
      @eddie.b2k 2 месяца назад

      Good luck when the manufacturer leaks your address.

    • @Spearoman
      @Spearoman 2 месяца назад +5

      @@tobiuchiha8370 you can’t prove that. What if someone from the manufacturer is a hacker? What now?

    • @Sig_ben2
      @Sig_ben2 2 месяца назад +2

      Boom​@@Spearoman

    • @Spearoman
      @Spearoman 2 месяца назад

      @@tobiuchiha8370 nothing is 100% safe!

  • @braddater5834
    @braddater5834 2 месяца назад +11

    BUY cold storage from the manufacturer only

  • @rashidismail9537
    @rashidismail9537 2 месяца назад +3

    " Don't connect your main cold storage wallet to dapps.Use a burner wallet..." you said.It's not a question of using a burner wallet.It's a question of moving asset from point A to point B.Say you wanna trade/swap on a dex...or you wanna stake on a smart contract or other stuffs that you wanna do with your hardware wallet each time you're online .Yupp ! That's right ! You need to move the desired crypto asset that you wish to swap or stake or whatever...from point A to point B. Meaning..from the main cold storage wallet to a burner wallet. That alone requires our signature from the hardware wallet.Why? Because we moving from point A to point B. We haven't even connected to dapps. Just moving the desired crypto asset from main cold storage to a burner wallet.That alone is a loophole.Why? Because we need to sign the txn. And that's where ' Dark Skippy ' comes in place.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +4

      Yeah but that’s to avoid the most common scam in crypto which is a phishing attacks. And it’s still effective for that.
      Basically all cold wallets on the market are immune to Dark Skippy. You need to understand: Unless you install the malicious firmware, you won’t be affected by dark skippy.

  • @GrantOakes
    @GrantOakes 2 месяца назад +24

    Back in 2018 I bought a Ledger hardware wallet on Amazon and during the setup phase something didn't work correctly. Looking back I might have gotten a corrupted device.

    • @mtnvortex
      @mtnvortex 2 месяца назад +6

      As you probably now understand, these wallets should ALWAYS be purchased from the actual company.
      For the benefit of others reading this:
      If, for some reason, you end up buying one on Amazon or elsewhere, a reset should be performed before using it. Never just use a seed phrase provided with the Amazon purchase. Most wallets will have some sort of "reset" function, with which you can create a fresh seed phrase or private key to improve your odds of having a secure wallet.

    • @GrantOakes
      @GrantOakes 2 месяца назад

      @@mtnvortex Fortunately I didn't use it. A friend wanted to buy from me so I sold it.

  • @52msdiane
    @52msdiane 2 месяца назад

    Thx Alex!!!!! Question! If I am transfering crypto from Uphold to Tangem do I sent it to XRP or XRP Ledger? As always, we appreciate you!!! thank you!

  • @djkidloco-official
    @djkidloco-official 2 месяца назад +31

    Tangem + pin + biometric. I dont see how this can affect IT. Not to mention card

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +20

      Yep, Tangem is safe. More so because the user can’t install firmware on Tangem nor are any firmware updates required.

    • @djkidloco-official
      @djkidloco-official 2 месяца назад +1

      @@cyberscrilla agree. Once i decide to add real money wanna add a bit to safety. Same as you buy brand New phone...but you dont wanna buy case or protective glasa. Xoxoxo. But Great video

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +10

      I use my Tangem wallet on my every day phone. I just use a different phone when recording videos 😉

    • @roysams8483
      @roysams8483 2 месяца назад +4

      So if you use a Tangem wallet, then you’re good from this hack, since the scammers can’t install their shady firmware on your Tangem. Is that correct??

    • @djkidloco-official
      @djkidloco-official 2 месяца назад

      @@roysams8483 yup

  • @ThomasConservative
    @ThomasConservative 2 месяца назад +12

    Good information.

  • @-zerocool-
    @-zerocool- 2 месяца назад +4

    CTO at Ledger tweeted about it on the day of disclosure (5th Aug 24), its good practice to follows these types of security researcher to stay up to date.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      I saw that. But no public announcements from the hardware wallet brands themselves.
      The average consumer doesn’t follow the CEO/CTO/CXOs of these companies.

  • @52msdiane
    @52msdiane 2 месяца назад +1

    Thx Alex! Can we use Face ID along with Access code fir Tangem? Requiring both to log in? And if I wanted to disable Face ID could I do that too? Thank you for your hard work! 💪🤩

  • @catalinathiersen6629
    @catalinathiersen6629 2 месяца назад +2

    Hi Alex. This is great info. I'm based in South Africa and we can only buy from resellers in SA. There is no shipping from the manufacturers in our country

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      I understand. Make sure to buy a device that allows you to verify firmware authenticity (Tangem, Trezor, Ledger, Onekey, Keystone)

    • @warhoofd74
      @warhoofd74 2 месяца назад +1

      Its a best practice to always reset your cold Wallet to factory settings before you start using it

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      As long as the device asks you to setup a new wallet (generate a new seed phrase) no need to rest it.

  • @Anthony-mh1oj
    @Anthony-mh1oj 2 месяца назад +14

    Well done Alex. Much appreciated

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Thanks for watching

    • @FathomFrequency
      @FathomFrequency 2 месяца назад

      🙄😬...this made me think of canned (smoked) skip jacks...I hope they get smoked...😂...thanks for the heads up!

  • @panachi6103
    @panachi6103 2 месяца назад

    i just found you videos, so much is been said in the world about the crypto ., so i am now giving it a try, and want to learn about crypto, so i can invest, are you offering any course for new bees to learn about crypto etc

    • @CJStrykr
      @CJStrykr 2 месяца назад +1

      First step is to assume everyone in the comments is a clever scammer

    • @panachi6103
      @panachi6103 2 месяца назад

      @@CJStrykr ohhh ok yes i seen before some or many talks about a particular person who trades etc , so its a scammer . thanks

  • @MJ-ge6jz
    @MJ-ge6jz Месяц назад

    I was a victim of the Atomic Wallet attack. All my crypto was drained. I'm wondering if my private key's were derived from my transactions? I've joined a class action lawsuit but who knows what outcome this will bring.

  • @Jadamog
    @Jadamog 2 месяца назад +1

    Just to clarify, a secure element, a secure bootloader or verifying your firmware is authentic, does not prevent this attack. The attack occurs with malicious firmware, and if the manufacuture of the hardware wallet it malicious, then the firmware can be malicious, even if it is shown as "authentic".
    To prevent this attack, the hardware wallet needs to support the Anti-klepto protocol. Only a two hardware wallets I know of support this. The BitBox02 and Jade.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      But those mechanisms prevent downloading a malicious firmware, thus it helps to prevent this attack

  • @genesyz-
    @genesyz- 2 месяца назад +1

    Thanks for make this video i asked for im new in this channel and love the content 🚀

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Yes, thank you for bringing this to my attention and thanks for watching!

  • @JesusIsLord1976
    @JesusIsLord1976 2 месяца назад

    Until Tangem Pay Visa comes out. Is there another option for spending via a credit card or pre paid card with funds from cold / hard wallet?

  • @prestonhudman
    @prestonhudman 2 месяца назад

    Are the private keys getting compromised or is the Seed phrase to the wallet getting compromised? It seems a lot more difficult to somehow steal multiple private keys compared to only having to steal one seed phrase/recovery phrase.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Seed phrase.

    • @prestonhudman
      @prestonhudman 2 месяца назад

      @@cyberscrilla I have a very unpopular theory which is that the safest way to hold crypto is to use The Exodus desktop wallet on laptops and PCs only, and to forgo creating a password when it prompts you to which means you can't access or see the seed phrase, and then when you're done sending crypto to the wallet just write down each one's private key onto paper accurately, then do a factory reset on the device making it impossible for anyone to ever access that wallet again. The seed phrase was created locally on the machine, and no communication made two outside servers so after the reset the seed phrase remains a mystery forever. Of course the crypto is safe thanks to the piece of paper with the private keys. Can import those into a new wallet anytime, and I wish I knew of other desktop wallets that worked like Exodus does. Since the crypto itself doesn't leave the blockchain and is governed by a long and complicated password called the private key, doesn't it make sense the most secure method would be to reduce the footprint of that password down to just a piece of paper that is governed by you and is unhackable because it doesn't exist online or in any device, or continue relying on the seed phrase (possibly compromised) and neglect the long and complicated passwords that actually control things, so that you can use a third-party companies tools to create additional password barriers, starting with the PIN code or password creation that is instantly imposed on us on mobile. Doing it my way makes it a 2 person thing, me and my money, but creating a pin word and or password in using two-factor authentication... you're telling the wallet maker to keep anyone who can't cross these barriers away from your money including you. If the password equals the money and I can keep the password safe, as long as I can transact as needed there's literally no reason to involve anyone else at that point and additional passwords that stem from involving a third party makes me fundamentally less secure.
      Whatever. Good luck people. I'm confident that my method is the only method proven to be 99% "probably" safe. I think all the other wallets, including Exodus once you have created a password, are far less than 99% probably safe. In my opinion they are like 44% probably not safe. Lol.

    • @Praptoprapti2023
      @Praptoprapti2023 2 месяца назад

      ​@@cyberscrillahow about the pass phrase?

  • @mopz1ner
    @mopz1ner 2 месяца назад

    I need some advice, If you make a new SOL token and its not yet listed on a cold wallet, how can you send it new to you're new cold wallet, and what is the best SOL supported cold wallet besides ledger? In you're opinion.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +4

      If the wallet supports SOL, then you can send any token on SOL to that wallet as it’s supported.
      For SOL, I like Tangem, Ledger, and Trezor

  • @hanshags
    @hanshags 2 месяца назад

    Nice video thanks 👍 Good to know about 😊 Will having a passphrase (25th word) change anything - if you did get this malicious firmware code installed? Just wondering 😊🤔 Update: I see in another comment you did answer this would not help - just can't quite wrap my head around how that works, but kindda see that once wallet is "open" for signing, it's the malicious code that works on the signature end of the transaction, hence a passphrase is not really of any added benefit 🥴🤪👍

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Exactly. If you get the malicious firmware, it’s game over.

  • @DJ_Megahertz
    @DJ_Megahertz Месяц назад

    I use Ballet is that still safe? Bought directly from them.

    • @cyberscrilla
      @cyberscrilla  Месяц назад

      ANY WALLET THAT USES THIS CHIP WAS MENTIONED IN THE VIDEO.

  • @GalutiaFamilyChannel
    @GalutiaFamilyChannel 2 месяца назад +2

    These attacks are always evolving.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      @@GalutiaFamilyChannel Exactly! Gotta remain vigilant

  • @darrinshaw8832
    @darrinshaw8832 2 месяца назад

    Thanks for the heads up Bro!

  • @SlykeThePhoxenix
    @SlykeThePhoxenix 2 месяца назад +3

    Verify transactions on Sparrow before broadcasting.

    • @ighayinosayi
      @ighayinosayi 2 месяца назад +1

      Or never connect your hardware wallet to anysite.
      I try as much as possible to use only secondary software wallets to interact with websites

  • @vintage4562
    @vintage4562 Месяц назад

    "air gap wallet which is completely useless against this attack" i am lost, can you please elaborate?

    • @cyberscrilla
      @cyberscrilla  Месяц назад

      Simple. An air gap wallet wouldn’t protect you from this attack.

  • @BigTwoTrey
    @BigTwoTrey 2 месяца назад

    Which tokens have been shown to have this malware on it? thats the only way I could see this effecting hardware wallets, transaction/smart contract interaction itself

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      I explained it in the video. It’s a malicious firmware. If you install it on your device, it could potentially affect any transaction.
      The example shown on the Dark Skippy website is BTC

  • @curiouspeople6441
    @curiouspeople6441 2 месяца назад +4

    Good thing I used a Tangem wallet , you can’t change the firmware. Also ledger is at high risk . Which why I stopped using ledger

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      Yep, no firmware updates on Tangem.
      Also, Ledger is not at all high risk. And I’d recommend Ledger to anyone looking for a secure wallet.
      Don’t fall for the FUD.
      I covered my reasoning as to why Ledger is solid in this video:
      ruclips.net/video/gQB0by9NDh8/видео.htmlsi=O38X8RRTSr9qsjm8

    • @MrKey-jt6zm
      @MrKey-jt6zm 2 месяца назад +3

      You don't verify the firmware on Ledger, just show them trust. They have stated this.

    • @curiouspeople6441
      @curiouspeople6441 2 месяца назад

      @@cyberscrilla if I am a 🐑 I will trust ledger , ledger is a risk

    • @cyndilee5862
      @cyndilee5862 2 месяца назад

      I think the key phrase is “ air gapped”

  • @ardayarday4660
    @ardayarday4660 2 месяца назад +4

    thanks, another great video.

  • @Epictetus888
    @Epictetus888 2 месяца назад

    So you saying a Air Gapped wallet is good or bad? Cheers 🙂

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Neither. I’m saying an air gapped wallet does not provide any extra security against this attack or other types of attacks for the most part.
      There are more important security features your should look for, such as the ones I mentioned in this video.

    • @Epictetus888
      @Epictetus888 2 месяца назад

      @@cyberscrilla awesome, thanks for the clarification., much appreciated ❤️
      Also I often wonder, with technology evolving so fast, who knows how safe any of the current standards will be in 5, 10, even 20 years time. I guess U could keep up with the evolving tech, but if you pass away and leave millions in crypto to a loved one.

  • @masterj7048
    @masterj7048 2 месяца назад +1

    Definitely keep up with all the scams and hacks out there I feel like this is only going to get worse going into the bull market we need to stay on top of this as much as possible

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      THIS. Cybercrime is a massive and lucrative business. It will only continue to grow.

  • @zainghani7116
    @zainghani7116 2 месяца назад +1

    what about trezor model t

  • @format1998
    @format1998 2 месяца назад

    The reason why no ones talking about it... is because its common knowledge buy from a manufacturer website and only update firmware from the manufacture.....The whole point of a hard ware wallet is security.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      There’s no such thing as common knowledge or common sense in crypto. Or at least if there is, it’s few and far between

    • @delmarcalifornia8154
      @delmarcalifornia8154 Месяц назад

      Ive been in crypto 4 yrs and barely getting to buy a cold wallet, I looked up BEST BUY but did more research and stumbled on to here. Its not common knowledge to me lol but makes total sense.

  • @yanan3681
    @yanan3681 2 месяца назад +2

    How safe is ellipal?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      Ellipal is fine. Not my favorite wallet though. But since you can verify ellipal firmware, Dark Skippy isn’t a threat to it.
      Just don’t download any malicious firmware and your good-that’s the moral of this video

    • @yanan3681
      @yanan3681 2 месяца назад

      @cyberscrilla thank you for your reply.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Thanks for watching the video!

  • @colinpowda
    @colinpowda 16 дней назад

    Best place to keep your crypto is on the exchanges. Seriously too many moving parts, too many point of failures with cold wallets. No need this stress. You bet on one good exchange, your chance of failure will be significantly less.

    • @cyberscrilla
      @cyberscrilla  16 дней назад

      @@colinpowda No. This is bad advice.

    • @colinpowda
      @colinpowda 16 дней назад

      @@cyberscrilla why? everyone says ooh don't do that etc. but your worst enemy is yourself. Plus I just learnt Trezor doesn't even hold more than 5-6 coins. You need metamask etc. Such a scam this cold wallet market.

    • @cyberscrilla
      @cyberscrilla  16 дней назад

      Keeping your crypto on an exchange defeats the point of owning crypto since you don’t actually control it.
      And it sounds like you just haven’t found the right wallet yet. There are plenty of really good /user friendly options out there.
      But my friend, please do not trust these exchanges to manage YOUR money for you. There are WAY too many horror stories and they generally happen on “good exchanges”.
      I’ve seen it myself, and it doesn’t matter how much money you have on them. They will lock your account. They will make it so you can’t sell. It happens EVERY SINGLE DAY.
      All exchanges are the same.
      I’m more than happy to help you find a cold wallet. This video will help you learn what things to look for to find the right now: ruclips.net/video/d-9OYPT0JLk/видео.htmlsi=20KMJSihwwxxOoBq
      Or just get something like Tangem which supports over 70 different blockchain networks and thousands of coins natively-no third party wallet required.
      If you want to learn more about Tangem: ruclips.net/video/bPZpzjJl3ts/видео.htmlsi=gN0fzybJQG9uCn4h

  • @Cryptony9
    @Cryptony9 2 месяца назад +1

    Apparently IOS and Android have to be careful with updates right now especially. I guess hackers are mimicking updates on those phones that are not regular updates it's just mailware that they are just installing on your IOS or Android. Hackers are definitely getting clever.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      Interesting…

    • @ummb7963
      @ummb7963 2 месяца назад

      Where did you hear this?

  • @Praptoprapti2023
    @Praptoprapti2023 2 месяца назад

    Pass phrase can be extracted too?

  • @nowheretorun2857
    @nowheretorun2857 2 месяца назад

    I use D'Cent with the biometrics, I should be fine right?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      @@nowheretorun2857 Not sure as DCENT is 100% closed source. So we don’t know anything about the wallet other than what to company tells us.

    • @nowheretorun2857
      @nowheretorun2857 2 месяца назад

      @cyberscrilla oh thank you.
      I just watched your follow up video on best wallets, and Tangem is very interesting.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Tangem is one of my favorites. And a lot of people would agree! Definitely the most enjoyable hardware wallet I own

    • @nowheretorun2857
      @nowheretorun2857 2 месяца назад

      @@cyberscrilla it's done. I used your code. Thank you.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Wow, you’re quick! Thank you. Let me know if you have any questions

  • @ionescuion3251
    @ionescuion3251 2 месяца назад

    keystone pro is secure against dark skippy?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      It has the security features to keep you safe from this attack.

  • @rowanwilliams7441
    @rowanwilliams7441 2 месяца назад

    Password managers... proprietary hardware wallets n firmware... targets.
    Big money involved.
    What could go wrong

  • @chafik0566
    @chafik0566 2 месяца назад +1

    Hmm ... to check if one's hardware wallet has been compromised it might be a good idea to do a small on chain transfer and then to run the skippy attack to see if the seed phrase can be reconstructed, right? Maybe certain shady sources/wallet resellers can be exposed.

  • @vijay_kolkata
    @vijay_kolkata 2 месяца назад

    Alex nice information thanks 🙏

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Glad you liked it! Thanks for watching

  • @FishingFettish
    @FishingFettish 2 месяца назад +1

    Trezor goes through this when I set up a new wallet 💯 I got it from Amazon, the seals were intact and still wiped and flashed Trezor firmware better safe than sorry

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +7

      As long as you confirmed the device/firmware is genuine, you should be good to go.
      I’d still never recommend buying a hardware wallet from a third party though.

    • @ZombieCorp999
      @ZombieCorp999 2 месяца назад

      ​@cyberscrilla Is Amazon a third party if the store within Amazon is the orginal company? Example, I looked up the "Amazon choice" Trezor and the seller is "the Trezor store".

  • @kingWaterBoy
    @kingWaterBoy 2 месяца назад +1

    Can you look into Dcent wallet ?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      I have DCENT. I don’t like it. It’s 100% closed source. Would not recommend it

    • @kingWaterBoy
      @kingWaterBoy 2 месяца назад

      @@cyberscrilla can u look into Ryder wallet? As of now tangem might be my wallet soon

    • @xtophgerard1169
      @xtophgerard1169 2 месяца назад

      ⁠@@cyberscrillaclosed source is a good way to not allow hackers to study the code for weaknesses and exploit them. Isn’t ledger closed source as well? Btw, safenet is also closed source…

    • @earth2steven197
      @earth2steven197 2 месяца назад

      What does that mean & What makes the Dcent unsafe?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Closed source means we don’t know what happens in the backend of the wallet. We don’t know how the seed phrase is generated, or if it’s safe, as the code is only known by the manufacturer. There’s no way to verify any of the company’s claims are true

  • @vogters12345
    @vogters12345 2 месяца назад

    Great video!

  • @democratsaretrash9366
    @democratsaretrash9366 Месяц назад

    Buying Ledger nano x from Best buy would be safe right?

    • @cyberscrilla
      @cyberscrilla  Месяц назад

      I wouldn’t do it. But you’re likely okay

  • @JPs-q1o
    @JPs-q1o 2 месяца назад +1

    This is a lot more than just a _"scam"_

  • @rashidismail9537
    @rashidismail9537 2 месяца назад

    What's a crypto hardware wallet? A signing device.And that's where it is targeted at.When signing txn.Doesn't matter when connected to dapps etc...we're screwed altogether eventually.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Don’t connect your main cold storage wallet to dapps. Use a burner wallet.

    • @cyndilee5862
      @cyndilee5862 2 месяца назад

      @@cyberscrillacan u help me understand what you mean by burner wallet?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Any wallet that doesn’t have all your crypto stored on it, just one you can use to transact. Could be a hot or cold wallet.

    • @OLOLZULU
      @OLOLZULU 2 месяца назад

      @@cyberscrilla So if I transfer coins from cold storage to an exchange and then connect the exchange to dapps I should be good?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      You can’t connect an exchange to dapps.
      It’s simple. Have 1 wallet to hold all you coins (this is never connected to a dapp)
      Have another wallet only for transactions with just the amount of money you need to transact. Once you’re done doing whatever, send back to your storage wallet for safe keeping.

  • @helderdossantos7665
    @helderdossantos7665 2 месяца назад

    Good job ...thank you 😊

  • @cyndilee5862
    @cyndilee5862 2 месяца назад

    How does one know the firmware is malicious?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Your hardware wallet will tell you. Or if you’re not downloading it form the manufacturers website you can just assume its malicious

  • @ddddaaddaaaa
    @ddddaaddaaaa 2 месяца назад +1

    pls more of this Alex

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      More of what exactly? Or what did you like most about this video? Thanks for watching!

    • @ddddaaddaaaa
      @ddddaaddaaaa 2 месяца назад

      @cyberscrilla I mean this kind of video where you tackle scams and crypto security threats in general

  • @Iwnd0
    @Iwnd0 2 месяца назад

    What if its only available from 3rd party in my country...but the 3rd party listed on official keystone website..

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Keystone lets you verify that the device and firmware are authentic, so you’re likely okay.
      However, it's still best practice to avoid ordering wallets from third-party sellers.

    • @Iwnd0
      @Iwnd0 2 месяца назад

      The problem is they dont ship to my country..keystone only available on 3rd party in my country..tho the 3rd party is listed in the official keystone website...thanks for the reply!

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      I understand.

    • @Iwnd0
      @Iwnd0 2 месяца назад

      @@cyberscrilla unrelated to coldwallet...do you use yubico key to secure all of your digital information/media etc?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      No, I use my Ledger flex, which is similar as it offers U2FA.

  • @curtssallee9807
    @curtssallee9807 2 месяца назад +1

    PROTECT YO SCRILLA......thanks fam✌️

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Always! Thanks for watching man 🤜🤛

  • @wrfootball3847
    @wrfootball3847 2 месяца назад

    Great video

  • @richardthomas-wt1lj
    @richardthomas-wt1lj 2 месяца назад

    Thanks for Tangem !

  • @Beats-t7h
    @Beats-t7h 2 месяца назад +1

    What about dcent wallet

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Likely fine when it comes to this attack.
      But I don’t like DCENT in general though because it’s 100% closed source.

    • @Ologun1
      @Ologun1 2 месяца назад

      ​@@cyberscrillawhat do u mean closed source?

    • @Soarex83
      @Soarex83 2 месяца назад +1

      @@cyberscrillacan you do a video about open source and closed source hardware wallets…I don’t know the advantages and disadvantages of

  • @vipuljivani7692
    @vipuljivani7692 2 месяца назад

    Super information

  • @aresares8523
    @aresares8523 2 месяца назад +2

    What about Trezor with Passphrase?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +3

      Trezor is good. Passphrase doesn’t help in the case of this attack. But like I said, most wallets have security features in place to prevent it-including Trezor

  • @Tell_It_Right
    @Tell_It_Right 2 месяца назад

    This guy loves saying, "Dark Skippy".

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      So… have you heard about dark skippy? 😆

  • @Spearoman
    @Spearoman 2 месяца назад

    There called gateways. Your crypto isn’t safe with cold wallets.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Source: you made it up

    • @Spearoman
      @Spearoman 2 месяца назад

      @@cyberscrilla Ha! Research…the ledger is completely safe. But there called Gateways, back doors. Research!!! 🧐

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      My guy. Ledger does not have a backdoor.
      Look up the definition of a backdoor. Then go “research” how Ledger Recover works-which anyone can do considering it’s 100% open source.
      If Ledger truly had a backdoor they would have gone out of business a longtime ago.
      Also, your comment was directed at all cold wallets, not just Ledger, so your statement is a bit misleading.
      But for real, don’t fall for the FUD. 99% of the crap online is misinformation. So if that’s what you’re consuming (without doing your own due diligence) then you’re being mislead.
      Careful..

    • @Spearoman
      @Spearoman 2 месяца назад +1

      @@cyberscrilla wow, that’s a long response. Who are really trying to convince? You googled it didn’t you…😂😂😂

  • @cloud10property40
    @cloud10property40 2 месяца назад

    Exodus?
    Phantom?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      You’re fine. But you shouldn’t be storing crypto in a hot wallet in the first place. Huge risk

  • @Storynews743
    @Storynews743 2 месяца назад

    What about safepal S1 ?

  • @beniferra5736
    @beniferra5736 Месяц назад

    Everyone is talking about it

  • @martincro3
    @martincro3 2 месяца назад +1

    Technically ledger is safe due to simplicity of device?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Ledger is a secure wallet

    • @a1toppg
      @a1toppg 2 месяца назад

      Backdoor? Not sure which cold wallet company it was.

    • @xtophgerard1169
      @xtophgerard1169 2 месяца назад +1

      @@a1toppgno back door. Just don’t use those apps allowing to access you walllet directly . Use it as a wallet only like I do.

    • @a1toppg
      @a1toppg 2 месяца назад

      @xtophgerard1169 how do u use yours?

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +2

      Ledger never had a backdoor. That was misinformation that keeps getting spread. Don’t use Ledger Recover if you don’t want and you’re good

  • @justinheard3895
    @justinheard3895 2 месяца назад

    Do I throw away my ledger Nano x? Sheesh

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      No way! Ledger Nano X is solid.

  • @Ghairco
    @Ghairco 2 месяца назад

    Scammers in these comments. Stay woke

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Don’t worry. I delete/ban them. Just takes me a minute to notice them sometimes

  • @Spearoman
    @Spearoman 2 месяца назад +1

    The solution to not losing your crypto. #1 don’t own too much crypto. AKA XRP, own under 10k.
    #2 keep your XRP on the xrp ledger and having the most regulated crypto exchange.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +3

      Just, no…

    • @GFYM_Finance
      @GFYM_Finance 2 месяца назад +2

      This is .... the worst crypto advice in the history of crypto advice.

  • @mehrdaddavani3532
    @mehrdaddavani3532 2 месяца назад +1

    With tangem is zero percent hack

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      With most wallets on the market that I can think of

  • @crossing3790
    @crossing3790 2 месяца назад

    love my tangem card

  • @chrisrasmussen-il9bo
    @chrisrasmussen-il9bo Месяц назад

    Fuck I’m still paper Wallets 😮

  • @ProductionJunction1
    @ProductionJunction1 2 месяца назад

    This is why GOLD

  • @TheGreatestBeyonder
    @TheGreatestBeyonder 2 месяца назад

    Ledger wallets suck!!

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Why? Ledger has nothing to do with this attack

  • @AlexanderVadimovich
    @AlexanderVadimovich 2 месяца назад +1

    unpopular opinion:
    i just keep everything in trust wallet in a dedicated smartphone with no app/email , equipped with antivirus and vpn 🤷‍♂

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Yikes… not worth the risk in my opinion

  • @KrishnaDeepak.V
    @KrishnaDeepak.V 2 месяца назад +2

    Storing crypto is actually harder than anything else in this field.
    The only reason why ppl are chasing crypto is because of high returns.
    Apart from this crypto is actually useless

  • @Dalehub
    @Dalehub 2 месяца назад

  • @Peterogen
    @Peterogen 2 месяца назад

    ❤❤❤❤❤❤❤❤❤

  • @nickconnor8667
    @nickconnor8667 2 месяца назад

    This why you should never allow automatic firmware updates

    • @cyberscrilla
      @cyberscrilla  2 месяца назад +1

      Mmm. Not exactly.
      If you don’t trust the manufacturer, then sure.
      But if you don’t trust the manufacturer, why use their wallet in the first place?

    • @nickconnor8667
      @nickconnor8667 2 месяца назад

      @@cyberscrilla it's not about trusting the manufacturer , their servers that send firmware updates could get exploited by a hacker who could then upload a fake firmware update if you have automatic firmware downloads then the attacker has all your funds and it wouldn't even be the wallet manufacturer's fault at that point this attack has happened with several firmware servers for several other electronic products allowing hackers to hack various computers and I believe this attack will happen to hardware wallets next

  • @SutboxSutty
    @SutboxSutty 2 месяца назад

    you mention AIR GAP WALLET NO GOOD IT WOULD BE GOOD IF YOU EXPLAINED WHY CHEERS

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      Because that’s not going to save you from this attack. It’s at the firmware level. An air gap device doesn’t protect you from downloading a malicious firmware. You need other security features in place.

  • @tribeblessed3232
    @tribeblessed3232 2 месяца назад

    Is trevor vulnerable?

  • @brt525
    @brt525 2 месяца назад

    👍👍👍👍

  • @jadebennett-jr8er
    @jadebennett-jr8er 2 месяца назад

    👍👍👍😁

  • @maaifoediedelarey4335
    @maaifoediedelarey4335 2 месяца назад

    Ledger and Trezor are crap. In fact, the absolute best cold hardware Bitcoin wallet is simply this : Take USB drive, flash latest verified TAILS on it (which automatically will include latest verified Electrum wallet), and *only* connect it to Linux pc which are connected to router via ethernet cable.

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      A USB drive? No thanks.
      Ledger and Trezor have several security features that not only prevent a person from physically accessing your device, but also prevents various types of digital attacks.

    • @maaifoediedelarey4335
      @maaifoediedelarey4335 2 месяца назад

      ​@@cyberscrilla Ledger and Trezor had been hacked before - they're tainted and can never be trusted again. No other hardware wallet can claim to be safe, they may or may not be, only the future will tell (including open-sourced ones - who really inspects these codes ?) - I will not trust any of them with my BTC. It's not about the USB obviously, the whole drive is wiped & formatted and encrypted by TAILS, there are no other software on it, your BTC is safely in the verified Electrum Wallet inside TAILS, you boot directly into TAILS, bypassing the host pc, it connects only via TOR, and like I said - avoid wifi and only connect via ethernet. There is not a single weakness in it, there simply is no safer alternative.

  • @ballzout8146
    @ballzout8146 2 месяца назад +1

    Great video thank you!!

  • @csrtwolegends1265
    @csrtwolegends1265 2 месяца назад

    I don't care 😂😂I can't even access to my own cold storage

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      lol why not?

    • @csrtwolegends1265
      @csrtwolegends1265 2 месяца назад

      @cyberscrilla idk I tried to access it but kept saying connection error I don't think it's big of a deal I use ledger

    • @cyberscrilla
      @cyberscrilla  2 месяца назад

      @@csrtwolegends1265 So it’s an issue with Ledger Live, not your wallet or loss of seed phrase

    • @csrtwolegends1265
      @csrtwolegends1265 2 месяца назад

      @@cyberscrilla no not at all

    • @csrtwolegends1265
      @csrtwolegends1265 2 месяца назад

      @@cyberscrilla yes just ledger live

  • @DigitalAssetNews
    @DigitalAssetNews 2 месяца назад

    🫡👏👏👏

  • @robzz5109
    @robzz5109 2 месяца назад

    Final DUMP ahead😫😩🦢🦢