How to set up a secure offline savings wallet - Bitcoin Wiki

Aeon

Aeon (AEON) is a private, secure, untraceable currency. You are your bank, you control your funds, and nobody can trace your transfers.
[link]

Masari: Simple Private Money

Masari (MSR) is a scalability-focused, untraceable, secure, and fungible cryptocurrency using the RingCT protocol. Masari is the first CryptoNote coin to develop uncle mining and a fully client side web wallet.
[link]

Official Nyancoin Subreddit

Official NyanCoin Subreddit!
[link]

Paper Wallet: How much safer creating from ubuntu live cd compared to windows offline? /r/Bitcoin

Paper Wallet: How much safer creating from ubuntu live cd compared to windows offline? /Bitcoin submitted by BitcoinAllBot to BitcoinAll [link] [comments]

Best bitcoin wallet for offline USB storage (PC/Windows)?

submitted by HurricaneTerminator to Bitcoin [link] [comments]

Windows Phone still has no proper offline wallet : Bitcoin

Windows Phone still has no proper offline wallet : Bitcoin submitted by gutigen to windowsphone [link] [comments]

What I currently use for privacy (after almost 2 years of long investing into it)

First of all, my threat model: I'm just an average person that wants to AVOID the maximum I can to be monitored and tracked by the government and big corps, a lot of people out there REALLY hate me and I've gone through lots of harassment and other stuff, I also plan to take my activism and love for freedom more seriously and to do stuff that could potentially lead me to very high danger or even put my life on the line. That being said, my main focus is on something that is privacy-friendly but also something with decent security (no point having a lot of privacy if a script kiddie can just break into it an boom, everything is gone) anonymity is also desirable but I'm pretty aware that true 100% anonymity is simply not possible and to achieve the maximum you can of it currently you'd have to give up A LOT of stuff in which I don't think I really could. So basically, everything that I said + I don't want to give up some hobbies of mine (as playing games etc)
Here's what I use/have done so far, most of it is based on privacytools.io list and research I've done.
Mobile:
Google Pixel 3a XL running GrapheneOS
Apps: Stock apps (Vanadium, Gallery, Clock, Contacts etc) + F-DROID, NewPipe, OsmAnd+, Joplin, Tutanota, K-9 Mail, Aegis Authenticator, KeePassDX, Syncthing, Signal, Librera PRO, Vinyl, Open Camera and Wireguard.
I also use BlahDNS as my private DNS.
Other smartphone stuff/habits: I use a Supershieldz Anti Spy Tempered Glass Screen Protector on my phone and I also have a Faraday Sleeve from Silent Pocket which my phone is on most of the times (I don't have smartphone addiction and would likely advice you to break free from smartphone addiction if you have it). I NEVER use bluetooth (thank god Pixel 3a have a headphone jack so yeah, no bluetooth earphones here) and always keep my Wi-Fi off if I'm not using it.
Computer:
I have a desktop that I built (specs: Asus B450M Gaming, AMD Ryzen 3 3300X, Radeon RX 580 8GB, 16GB DDR4 2666Mhz, 3TB HDD, 480GB SSD) that is dualbooted with QubesOS and Arch Linux.
Qubes is my main OS that I use as daily driver and for my tasks, I use Arch for gaming.
I've installed linux-hardened and its headers packages on my Arch + further kernel hardening using systctl and boot parameters, AppArmor as my MAC system and bubblewrap for sandboxing programs. I also spoof my MAC address and have restricted root access, I've also protected my GRUB with password (and use encrypted boot) and have enabled Microcode updates and have NTP and IPV6 disabled.
Also on Arch, I use iptables as a firewall denying all incoming traffic, and since it's my gaming PC, I don't game on the OS, instead, I use a KVM/QEMU Windows VM for gaming (search "How I Built The "Poor-Shamed" Computer" video to see what I'm talking about) I also use full disk encryption.
Software/Providers:
E-Mails: I use ProtonMail (Plus Account paid with bitcoin) and Tutanota (free account as they don't accept crypto payment yet, come on Tutanota, I've been waiting for it for 2 years already) since I have plus account on ProtonMail it allows me to use ProtonMail Bridge and use it on Claws Mail (desktop) and K-9 Mail (mobile) as for Tutanota I use both desktop and mobile app.
Some other e-mails habits of mine: I use e-mail aliases (ProtonMail plus account provides you with 5) and each alias is used for different tasks (as one for shopping, one for banking, one for accounts etc) and none of my e-mails have my real name on it or something that could be used to identify me. I also highly avoid using stuff that require e-mail/e-mail verification for usage (e-mail is such a pain in the ass tbh) I also make use of Spamgourmet for stuff like temporary e-mail (best service I found for this doing my research, dunno if it's really the best tho, heard that AnonAddy does kinda the same stuff but dunno, recommendations are welcomed)
Browsers/Search Engine: As mentioned, I use Vanadium (Graphene's stock browser) on mobile as it is the recommended browser by Graphene and the one with the best security for Android, for desktop I use a Hardened Firefox (pretty aware of Firefox's security not being that good, but it's the best browser for PC for me as Ungoogled Chromium is still not there in A LOT of things + inherent problems of Chrome as not being able to disable WebRTC unless you use an extension etc) with ghacks-user.js and uBlock Origin (hard mode), uMatrix (globally blocking first party scripts), HTTPS Everywhere (EASE Mode), Decentraleyes (set the recommended rules for both uBlock Origin and uMatrix) and Temporary Containers as addons. I also use Tor Browser (Safest Mode) on a Whonix VM on Qubes sometimes. DuckDuckGo is my to-go search engine and I use DNS over HTTPS on Firefox (BlahDNS as my provider once again)
browsing habits: I avoid JavaScript the maximum I can, if it's really needed, I just allow the scripts temporarely on uBlock Origin/uMatrix and after I'm done I just disable it. I also generally go with old.reddit.com instead of reddit.com (as JavaScript is not required to browse the old client), nitter.net for checking twitter stuff (although I rarely have something peaking my interest on Twitter) and I use invidious.snopyta.org as youtube front-end (I do however use YouTube sometimes if a video I wanna see can't be played on invidious or if I wanna watch a livestream) and html.duckduckgo.com instead of duckduckgo.com other than avoiding JavaScript most of my browsing habits are just common sense at this point I'd say, I also use privatebin (snopyta's instance) instead of pastebin. I also have multiple firefox profiles for different tasks (personal usage, shopping, banking etc)
VPN: I use Mullvad (guess you can mention it here since it's PTIO's recommended) paid with bitcoin and honestly best service available tbh. I use Mullvad's multihop implementation on Wireguard which I manually set myself as I had the time and patience to learn how.
password manager: KeePassXC on desktop and KeePassDX on my smartphone, my password database for my desktop is stored on a USB flash driver I encrypted with VeraCrypt.
some other software on desktop: LibreOffice (as a Microsoft Office substitute), GIMP (Photshop substitute), Vim (I use it for multiple purposes, mainly coding IDE and as a text editor), VLC (media player), Bisq (bitcoin exchange), Wasabi (bitcoin wallet), OBS (screen recording), Syncthing (file sync), qBitTorrent (torrent client) and Element (federated real-time communication software). I sadly couldn't find a good open-source substitute to Sony Vegas (tested many, but none was in the same level of Vegas imo, KDENLive is okay tho) so I just use it on a VM if I need it (Windows VM solely for the purpose of video editing, not the same one I use for gaming)
Other:
router: I have an Asus RT-AC68U with OpenWRT as its firmware. I also set a VPN on it.
cryptocurrency hardware wallet: I store all of my cryptocurrency (Bitcoin and Monero) on a Ledger Nano S, about 97% of my money is on crypto so a hardware wallet is a must for me.
I have lots of USB flash drivers that I use for Live ISOs and for encrypted backups. I also have a USB Data Blocker from PortaPow that I generally use if I need to charge my cellphone in public or in a hotel while on a trip (rare occasion tbh).
I have a Logitech C920e as webcam and a Blue Yeti microphone in which I never let them plugged, I only plug them if it's necessary and after I'm done I just unplug them.
I also have a Nintendo Switch Lite as a gaming console that I most of the times just use offline, I just connect to the internet if needed for a software update and then just turn the Wi-Fi off from it.
Other Habits/Things I've done:
payments: I simply AVOID using credit card, I try to always pay on cash (I live in a third-world country so thank god most of people here still depend on cash only) physically and online I try my best to either by using cryptocurrency or using gift cards/cash by mail if crypto isn't available. I usually buy crypto on Bisq as I just don't trust any KYC exchange (and neither should you) and since there aren't many people here in my area to do face to face bitcoin trade (and I'm skeptical of face to face tbh), I use the Wasabi Wallet (desktop) to coinjoin bitcoin before buying anything as this allows a bit more of privacy, I also coinjoin on Wasabi before sending my bitcoins to my hardware wallet. I also don't have a high consumerism drive so I'm not constantly wanting to buy everything that I see (which helps a lot on this criteria)
social media/accounts: as noted, aside from Signal and Element (which I don't even use that often) I just don't REALLY use any social media (tried Mastodon for a while but I was honestly felt it kinda desert there and most of its userbase from what I've seen were some people I'd just... rather don't hang with tbh) and, althoug not something necessary is something that I really advise people to as social media is literally a poison to your mind.
I also don't own any streaming service like Netflix/Amazon Prime/Spotify etc, I basically pirate series/movies/songs and that's it.
I've also deleted ALL my old accounts from social media (like Twitter etc) and old e-mails. ALL of my important and main accounts have 2FA enabled and are protected by a strong password (I use KeePass to generate a 35 character lenght password with numbers, capital letters, special symbols etc, each account uses a unique password) I also NEVER use my real name on any account and NEVER post any pictures of myself (I rarely take pictures of stuff if anything)
iot/smart devices: aside from my smartphone, I don't have any IOT/smart device as I honestly see no need for them (and most of them are WAY too expensive on third-world countries)
files: I constatly backup all of my files (each two weeks) on encrypted flash drivers, I also use BleachBit for temporary data cleaning and data/file shredding. I also use Syncthing as a substitute to stuff like Google Drive.
Future plans:
learn to self-host and self-host an e-mail/NextCloud (and maybe even a VPN)
find something like BurneHushed but FOSS (if you know any please let me know)
So, how is it? anything that I should do that I'm probably not doing?
submitted by StunningDistrust to privacytoolsIO [link] [comments]

Bob The Magic Custodian



Summary: Everyone knows that when you give your assets to someone else, they always keep them safe. If this is true for individuals, it is certainly true for businesses.
Custodians always tell the truth and manage funds properly. They won't have any interest in taking the assets as an exchange operator would. Auditors tell the truth and can't be misled. That's because organizations that are regulated are incapable of lying and don't make mistakes.

First, some background. Here is a summary of how custodians make us more secure:

Previously, we might give Alice our crypto assets to hold. There were risks:

But "no worries", Alice has a custodian named Bob. Bob is dressed in a nice suit. He knows some politicians. And he drives a Porsche. "So you have nothing to worry about!". And look at all the benefits we get:
See - all problems are solved! All we have to worry about now is:
It's pretty simple. Before we had to trust Alice. Now we only have to trust Alice, Bob, and all the ways in which they communicate. Just think of how much more secure we are!

"On top of that", Bob assures us, "we're using a special wallet structure". Bob shows Alice a diagram. "We've broken the balance up and store it in lots of smaller wallets. That way", he assures her, "a thief can't take it all at once". And he points to a historic case where a large sum was taken "because it was stored in a single wallet... how stupid".
"Very early on, we used to have all the crypto in one wallet", he said, "and then one Christmas a hacker came and took it all. We call him the Grinch. Now we individually wrap each crypto and stick it under a binary search tree. The Grinch has never been back since."

"As well", Bob continues, "even if someone were to get in, we've got insurance. It covers all thefts and even coercion, collusion, and misplaced keys - only subject to the policy terms and conditions." And with that, he pulls out a phone-book sized contract and slams it on the desk with a thud. "Yep", he continues, "we're paying top dollar for one of the best policies in the country!"
"Can I read it?' Alice asks. "Sure," Bob says, "just as soon as our legal team is done with it. They're almost through the first chapter." He pauses, then continues. "And can you believe that sales guy Mike? He has the same year Porsche as me. I mean, what are the odds?"

"Do you use multi-sig?", Alice asks. "Absolutely!" Bob replies. "All our engineers are fully trained in multi-sig. Whenever we want to set up a new wallet, we generate 2 separate keys in an air-gapped process and store them in this proprietary system here. Look, it even requires the biometric signature from one of our team members to initiate any withdrawal." He demonstrates by pressing his thumb into the display. "We use a third-party cloud validation API to match the thumbprint and authorize each withdrawal. The keys are also backed up daily to an off-site third-party."
"Wow that's really impressive," Alice says, "but what if we need access for a withdrawal outside of office hours?" "Well that's no issue", Bob says, "just send us an email, call, or text message and we always have someone on staff to help out. Just another part of our strong commitment to all our customers!"

"What about Proof of Reserve?", Alice asks. "Of course", Bob replies, "though rather than publish any blockchain addresses or signed transaction, for privacy we just do a SHA256 refactoring of the inverse hash modulus for each UTXO nonce and combine the smart contract coefficient consensus in our hyperledger lightning node. But it's really simple to use." He pushes a button and a large green checkmark appears on a screen. "See - the algorithm ran through and reserves are proven."
"Wow", Alice says, "you really know your stuff! And that is easy to use! What about fiat balances?" "Yeah, we have an auditor too", Bob replies, "Been using him for a long time so we have quite a strong relationship going! We have special books we give him every year and he's very efficient! Checks the fiat, crypto, and everything all at once!"

"We used to have a nice offline multi-sig setup we've been using without issue for the past 5 years, but I think we'll move all our funds over to your facility," Alice says. "Awesome", Bob replies, "Thanks so much! This is perfect timing too - my Porsche got a dent on it this morning. We have the paperwork right over here." "Great!", Alice replies.
And with that, Alice gets out her pen and Bob gets the contract. "Don't worry", he says, "you can take your crypto-assets back anytime you like - just subject to our cancellation policy. Our annual management fees are also super low and we don't adjust them often".

How many holes have to exist for your funds to get stolen?
Just one.

Why are we taking a powerful offline multi-sig setup, widely used globally in hundreds of different/lacking regulatory environments with 0 breaches to date, and circumventing it by a demonstrably weak third party layer? And paying a great expense to do so?
If you go through the list of breaches in the past 2 years to highly credible organizations, you go through the list of major corporate frauds (only the ones we know about), you go through the list of all the times platforms have lost funds, you go through the list of times and ways that people have lost their crypto from identity theft, hot wallet exploits, extortion, etc... and then you go through this custodian with a fine-tooth comb and truly believe they have value to add far beyond what you could, sticking your funds in a wallet (or set of wallets) they control exclusively is the absolute worst possible way to take advantage of that security.

The best way to add security for crypto-assets is to make a stronger multi-sig. With one custodian, what you are doing is giving them your cryptocurrency and hoping they're honest, competent, and flawlessly secure. It's no different than storing it on a really secure exchange. Maybe the insurance will cover you. Didn't work for Bitpay in 2015. Didn't work for Yapizon in 2017. Insurance has never paid a claim in the entire history of cryptocurrency. But maybe you'll get lucky. Maybe your exact scenario will buck the trend and be what they're willing to cover. After the large deductible and hopefully without a long and expensive court battle.

And you want to advertise this increase in risk, the lapse of judgement, an accident waiting to happen, as though it's some kind of benefit to customers ("Free institutional-grade storage for your digital assets.")? And then some people are writing to the OSC that custodians should be mandatory for all funds on every exchange platform? That this somehow will make Canadians as a whole more secure or better protected compared with standard air-gapped multi-sig? On what planet?

Most of the problems in Canada stemmed from one thing - a lack of transparency. If Canadians had known what a joke Quadriga was - it wouldn't have grown to lose $400m from hard-working Canadians from coast to coast to coast. And Gerald Cotten would be in jail, not wherever he is now (at best, rotting peacefully). EZ-BTC and mister Dave Smilie would have been a tiny little scam to his friends, not a multi-million dollar fraud. Einstein would have got their act together or been shut down BEFORE losing millions and millions more in people's funds generously donated to criminals. MapleChange wouldn't have even been a thing. And maybe we'd know a little more about CoinTradeNewNote - like how much was lost in there. Almost all of the major losses with cryptocurrency exchanges involve deception with unbacked funds.
So it's great to see transparency reports from BitBuy and ShakePay where someone independently verified the backing. The only thing we don't have is:
It's not complicated to validate cryptocurrency assets. They need to exist, they need to be spendable, and they need to cover the total balances. There are plenty of credible people and firms across the country that have the capacity to reasonably perform this validation. Having more frequent checks by different, independent, parties who publish transparent reports is far more valuable than an annual check by a single "more credible/official" party who does the exact same basic checks and may or may not publish anything. Here's an example set of requirements that could be mandated:
There are ways to structure audits such that neither crypto assets nor customer information are ever put at risk, and both can still be properly validated and publicly verifiable. There are also ways to structure audits such that they are completely reasonable for small platforms and don't inhibit innovation in any way. By making the process as reasonable as possible, we can completely eliminate any reason/excuse that an honest platform would have for not being audited. That is arguable far more important than any incremental improvement we might get from mandating "the best of the best" accountants. Right now we have nothing mandated and tons of Canadians using offshore exchanges with no oversight whatsoever.

Transparency does not prove crypto assets are safe. CoinTradeNewNote, Flexcoin ($600k), and Canadian Bitcoins ($100k) are examples where crypto-assets were breached from platforms in Canada. All of them were online wallets and used no multi-sig as far as any records show. This is consistent with what we see globally - air-gapped multi-sig wallets have an impeccable record, while other schemes tend to suffer breach after breach. We don't actually know how much CoinTrader lost because there was no visibility. Rather than publishing details of what happened, the co-founder of CoinTrader silently moved on to found another platform - the "most trusted way to buy and sell crypto" - a site that has no information whatsoever (that I could find) on the storage practices and a FAQ advising that “[t]rading cryptocurrency is completely safe” and that having your own wallet is “entirely up to you! You can certainly keep cryptocurrency, or fiat, or both, on the app.” Doesn't sound like much was learned here, which is really sad to see.
It's not that complicated or unreasonable to set up a proper hardware wallet. Multi-sig can be learned in a single course. Something the equivalent complexity of a driver's license test could prevent all the cold storage exploits we've seen to date - even globally. Platform operators have a key advantage in detecting and preventing fraud - they know their customers far better than any custodian ever would. The best job that custodians can do is to find high integrity individuals and train them to form even better wallet signatories. Rather than mandating that all platforms expose themselves to arbitrary third party risks, regulations should center around ensuring that all signatories are background-checked, properly trained, and using proper procedures. We also need to make sure that signatories are empowered with rights and responsibilities to reject and report fraud. They need to know that they can safely challenge and delay a transaction - even if it turns out they made a mistake. We need to have an environment where mistakes are brought to the surface and dealt with. Not one where firms and people feel the need to hide what happened. In addition to a knowledge-based test, an auditor can privately interview each signatory to make sure they're not in coercive situations, and we should make sure they can freely and anonymously report any issues without threat of retaliation.
A proper multi-sig has each signature held by a separate person and is governed by policies and mutual decisions instead of a hierarchy. It includes at least one redundant signature. For best results, 3of4, 3of5, 3of6, 4of5, 4of6, 4of7, 5of6, or 5of7.

History has demonstrated over and over again the risk of hot wallets even to highly credible organizations. Nonetheless, many platforms have hot wallets for convenience. While such losses are generally compensated by platforms without issue (for example Poloniex, Bitstamp, Bitfinex, Gatecoin, Coincheck, Bithumb, Zaif, CoinBene, Binance, Bitrue, Bitpoint, Upbit, VinDAX, and now KuCoin), the public tends to focus more on cases that didn't end well. Regardless of what systems are employed, there is always some level of risk. For that reason, most members of the public would prefer to see third party insurance.
Rather than trying to convince third party profit-seekers to provide comprehensive insurance and then relying on an expensive and slow legal system to enforce against whatever legal loopholes they manage to find each and every time something goes wrong, insurance could be run through multiple exchange operators and regulators, with the shared interest of having a reputable industry, keeping costs down, and taking care of Canadians. For example, a 4 of 7 multi-sig insurance fund held between 5 independent exchange operators and 2 regulatory bodies. All Canadian exchanges could pay premiums at a set rate based on their needed coverage, with a higher price paid for hot wallet coverage (anything not an air-gapped multi-sig cold wallet). Such a model would be much cheaper to manage, offer better coverage, and be much more reliable to payout when needed. The kind of coverage you could have under this model is unheard of. You could even create something like the CDIC to protect Canadians who get their trading accounts hacked if they can sufficiently prove the loss is legitimate. In cases of fraud, gross negligence, or insolvency, the fund can be used to pay affected users directly (utilizing the last transparent balance report in the worst case), something which private insurance would never touch. While it's recommended to have official policies for coverage, a model where members vote would fully cover edge cases. (Could be similar to the Supreme Court where justices vote based on case law.)
Such a model could fully protect all Canadians across all platforms. You can have a fiat coverage governed by legal agreements, and crypto-asset coverage governed by both multi-sig and legal agreements. It could be practical, affordable, and inclusive.

Now, we are at a crossroads. We can happily give up our freedom, our innovation, and our money. We can pay hefty expenses to auditors, lawyers, and regulators year after year (and make no mistake - this cost will grow to many millions or even billions as the industry grows - and it will be borne by all Canadians on every platform because platforms are not going to eat up these costs at a loss). We can make it nearly impossible for any new platform to enter the marketplace, forcing Canadians to use the same stagnant platforms year after year. We can centralize and consolidate the entire industry into 2 or 3 big players and have everyone else fail (possibly to heavy losses of users of those platforms). And when a flawed security model doesn't work and gets breached, we can make it even more complicated with even more people in suits making big money doing the job that blockchain was supposed to do in the first place. We can build a system which is so intertwined and dependent on big government, traditional finance, and central bankers that it's future depends entirely on that of the fiat system, of fractional banking, and of government bail-outs. If we choose this path, as history has shown us over and over again, we can not go back, save for revolution. Our children and grandchildren will still be paying the consequences of what we decided today.
Or, we can find solutions that work. We can maintain an open and innovative environment while making the adjustments we need to make to fully protect Canadian investors and cryptocurrency users, giving easy and affordable access to cryptocurrency for all Canadians on the platform of their choice, and creating an environment in which entrepreneurs and problem solvers can bring those solutions forward easily. None of the above precludes innovation in any way, or adds any unreasonable cost - and these three policies would demonstrably eliminate or resolve all 109 historic cases as studied here - that's every single case researched so far going back to 2011. It includes every loss that was studied so far not just in Canada but globally as well.
Unfortunately, finding answers is the least challenging part. Far more challenging is to get platform operators and regulators to agree on anything. My last post got no response whatsoever, and while the OSC has told me they're happy for industry feedback, I believe my opinion alone is fairly meaningless. This takes the whole community working together to solve. So please let me know your thoughts. Please take the time to upvote and share this with people. Please - let's get this solved and not leave it up to other people to do.

Facts/background/sources (skip if you like):



Thoughts?
submitted by azoundria2 to QuadrigaInitiative [link] [comments]

Top 10 Tricks to keep your wallet secure with Bitcoin

If you are keen on building a Bitcoin portfolio, then getting a Bitcoin wallet is one of the main things you need to remember. You can have several choices, but when it comes to using a Bitcoin wallet, you also need to know how to keep a secure Bitcoin wallet.
To keep your Bitcoin wallet safe, 10 tips and tricks:
  1. There are various types of wallets available, but when it comes to selecting the safest one, you must consider the hardware wallet. For those who have questions about cyber threats, it is fine. Companies such as Trezor and ledger have USB-like decisions that come with security features that can be accessed only with the private key.
2.Keep the private key offline- Holding the private key offline is another way to protect your Bitcoin wallet, i.e. you can pen down the key on the paper and keep it in a secure location.
  1. Keep an online check-Another part of the effect you can not ignore is that you must have a stable internet connexion. If you have a Bitcoin wallet on your laptop, then the public network must be linked to your laptop.
  2. Move to advanced antivirus software- The system's antivirus software is one of the main things that you do not undermine. Windows is vulnerable to more general malware and other malicious programmes. So, you have to consider downloading an advanced antivirus system if you are using a Windows operating system.
  3. Neve click on a suspicious link-Take care of your internet malicious behaviour. Often you can experience fishy links; these are malware that can hack into your device and corrupt all the data. Make sure you sue the same URL address and make sure that you check the URL and verify that it is secure if you are using the online wallet where you are expected to enter the private key.
  4. Never share a private key- You must never share a private key with third parties, regardless of the degree of confidence. Ignoring private key exchange is a stern no.
  5. Use strong passwords-Another key factor that you need to take into consideration is the strong passwords that you use for the private key. To keep it powerful and original, it must be a combination of numbers and alphabets, make use of case-sensitive letters along with special characters.
  6. Never share a private key- You must never share a private key with others, regardless of the degree of trust.
  7. Use two-factor authentication-Using two-factor authentication is one of the simplest ways to keep your wallet secure. This nullifies any form of hazard.
  8. Digital wallet backup- Getting a digital wallet backup will keep your asset secure. You can use this digital wallet backup if you lose the wallet or your computer fails to work. Make sure you keep the backup in a secure place, and you can recover it quickly.
Conclusion- You can ensure the protection of your crypto-currency wallet with these simple tips. For more important news of this nature, contact theBlockchain Council today.
submitted by Blockchain_org to BlockchainStartups [link] [comments]

Why I stopped using the dark web

My story begins a few years ago I decided to use my computer skills to run a small darknet forum mainly just to share information without censorship.
At first I was extremely paranoid about my site getting hacked and having my anonymity being compromised so I went online and began to research everything that I would need to ensure my own safety.
After countless days of scouring blogs, forums and other material I decided I was ready now I didn't have any money so I couldn't just buy a VPS and host the site off shore or whatever, so I decided to use my old laptop after all I wasn't planning on running a major website.
So after setting the server up and what I thought was literally every single thing I could to do harden it against attack I put the site online, everything went great for a couple of months, donations rolled in as the the user base grew larger and larger.
After around 5 months the user base had gotten so big I had to upgrade and migrate everything to a new PC which I built just to host the forum and from there everything seemed perfect, the site was running smoothly and there were no issues with the migration until one day when I came home and noticed the PC had frozen I didn't think much to it maybe just a software bug caused it so I rebooted and that's when it was clear to me something was wrong the PC lit up and beeped a few times then shut off so I thought to myself ok so it's a hardware issue, after a few hours trying to diagnose the issue I figured it out and it turned out the ram had been corrupted I took it back to the store since it was still under warranty, the customer rep just told me it might have just been a faulty stick.
When I got home I replaced the stick of ram and had the site back up and running within a few hours, everything seemed to be perfect again I apologized to the users for the down time and everyone seemed to be happy enough.
Fast forward a few more months, the forums been up and running for a around a year and a half now this is when things started to get really weird. I finished work on a Friday, it was a gorgeous day in the middle of summer I came home had something to eat and sat down in front my PC and noticed I had a message, upon opening the message I realised that somewhere I'd messed up now don't get me wrong I'm not like Assange or anything so I don't really know why anybody would actually target me but the world is a crazy place so whatever.
The message had my details from my name, address, bank details, passwords, private emails, private messages everything from nearly every single device I owned I freaked out and immediately took the PC offline, turned my internet off but little did I know that this guy had done his research after a couple of hours pacing my room I received a text message.
"I know everything about you"
The message was sent via some type of SMS service so there was no way to trace it and then my phone rang.
"Don't talk just listen, I know everything there is to know about you all I want is 2 Bitcoin or things get worse, I'll send you a text with the wallet details"
The phone call ended just as quickly as it started, I opened my laptop up and checked my Bitcoin wallet there was enough left over from the donations just to pay this guy off and hope that would be the end of it, so I entered the guys details and sent the payment, my phone rang again.
"Thank you for complying, unfortunately someone I know really likes you."
He hung up, panicking I tried calling the number back an automated message began to play "the number you have dialled has not been recognised"
A few hours pass and I began to think to myself well maybe the last call was just him having fun and decided after a long day I'd just go to bed.
Sometime around 2am I was woken up by the sound of banging at my front door, I jumped out of bed and turned on all the lights grabbing a knife from the kitchen I walked slowly towards the window and looked out I could see someone standing by a car when they spotted me they got in and drove off I rushed to the door in hopes I might be able to get a license plate but by the time I'd opened it they'd already turned the corner as I turned I noticed an envelope on the floor I picked it up, went back inside and locked the door, closed the curtains and sat in the kitchen I placed the envelope on the counter and stared at it for around half an hour trying to muster up the courage to open it, did these guys really come to my home I thought to myself.
After the half hour was up I decided enough was enough I opened the envelope and pictures fell out onto the counter they were of me sleeping, these guys had not only been outside my house they'd been inside whilst I was sleeping the images had been edited and strange love hearts had been added next to me so now I was sufficiently freaked out, I didn't go back to sleep and when the sun broke the darkness I decided to head to the police station and tell them everything I hadn't broken any laws so I hoped they would just help me at least after hours of explaining everything to them they told me there was nothing they could do.
At this point I had never felt so alone in the world, I was scared of what this guy was planning for me, I didn't have the foggiest idea what I was supposed to do or expect so I decided to wipe everything my laptop, PC and phone I picked up everything I needed stuffed it all into a bag and decided to leave I had a couple of friends that I knew I could rely on so I called up my old buddy Marcus and we met had a few beers and I explained everything to him, he offered me a place to stay and I hoped that would be the end of it how wrong I was.
A few days later it happened again there was a knock at the door first thing in the morning, me and Marcus both went out to find another envelope on the floor, same thing pictures of me sleeping but these were in Marcus's house I started freaking out again and Marcus just said
"Ok well we need to do something maybe set a trap or something"
So we went over numerous ideas everything you could think of from cameras to baiting him and we settled on the idea of staying up during the night and locking him in the room, we filled the bed up with pillows, setup cameras and even barred the windows in the room we hid in the room next door after a few hours had passed we heard the lock rattling on the front door and we knew it was game time, we'd left the door just slightly ajar so we could see outside as he went past and the moment he went into the room we both sprung to action quickly as we could we closed the door and locked it from outside using a chair and a metal bar there was only one way he was getting out and he'd have to destroy the door we could see the silhouette of him as he paced the room quietly it was creepy as fuck, we called the police as we kept an eye on him.
At last I thought I can finish this and move on with my life just as the police arrived we noticed the guy take a gun out and place it to his head, he held a sign up which read "I love you" and he pulled the trigger, the police barged in guns drawn told us both to get the floor, we complied and shouted "he's in there" pointing at the door.
The police removed the makeshift lock and entered the room, called for an ambulance and put me and Marcus in the back of a police car.
I'd been sat in the interview room for a good couple of hours I guess whilst they carried out the investigation when a detective came in and say down in front of me opening a folder and placing pictures on the table "Do you know her" "Her?" I said looking at the pictures "no" I replied confused , he looked at me and said "this is the person who's been stalking you" and he then began to tell me they had visited her home and found a shrine with photos of me all over the place from restaurants to the gym even shopping.
He went onto tell me that she'd been the one that sent the messages, made the phone calls etc and they'd also found a diary which had some kind of future plans for me and her, she wanted me to be her husband and we'd been chatting for around a year and half from the moment I started the forum after I explained everything the detective said I was lucky to be alive, she had actually planned to drug me and kidnap me, she had even made some makeshift lock bed so I wouldn't be able to escape.
To this day I feel lucky and I haven't been on the darkweb since.
submitted by GoobleGayTennis to scarystories [link] [comments]

Why I stopped using the dark web

My story begins a few years ago I decided to use my computer skills to run a small darknet forum mainly just to share information without censorship.
At first I was extremely paranoid about my site getting hacked and having my anonymity being compromised so I went online and began to research everything that I would need to ensure my own safety.
After countless days of scouring blogs, forums and other material I decided I was ready now I didn't have any money so I couldn't just buy a VPS and host the site off shore or whatever, so I decided to use my old laptop after all I wasn't planning on running a major website.
So after setting the server up and what I thought was literally every single thing I could to do harden it against attack I put the site online, everything went great for a couple of months, donations rolled in as the the user base grew larger and larger.
After around 5 months the user base had gotten so big I had to upgrade and migrate everything to a new PC which I built just to host the forum and from there everything seemed perfect, the site was running smoothly and there were no issues with the migration until one day when I came home and noticed the PC had frozen I didn't think much to it maybe just a software bug caused it so I rebooted and that's when it was clear to me something was wrong the PC lit up and beeped a few times then shut off so I thought to myself ok so it's a hardware issue, after a few hours trying to diagnose the issue I figured it out and it turned out the ram had been corrupted I took it back to the store since it was still under warranty, the customer rep just told me it might have just been a faulty stick.
When I got home I replaced the stick of ram and had the site back up and running within a few hours, everything seemed to be perfect again I apologized to the users for the down time and everyone seemed to be happy enough.
Fast forward a few more months, the forums been up and running for a around a year and a half now this is when things started to get really weird. I finished work on a Friday, it was a gorgeous day in the middle of summer I came home had something to eat and sat down in front my PC and noticed I had a message, upon opening the message I realised that somewhere I'd messed up now don't get me wrong I'm not like Assange or anything so I don't really know why anybody would actually target me but the world is a crazy place so whatever.
The message had my details from my name, address, bank details, passwords, private emails, private messages everything from nearly every single device I owned I freaked out and immediately took the PC offline, turned my internet off but little did I know that this guy had done his research after a couple of hours pacing my room I received a text message.
"I know everything about you"
The message was sent via some type of SMS service so there was no way to trace it and then my phone rang.
"Don't talk just listen, I know everything there is to know about you all I want is 2 Bitcoin or things get worse, I'll send you a text with the wallet details"
The phone call ended just as quickly as it started, I opened my laptop up and checked my Bitcoin wallet there was enough left over from the donations just to pay this guy off and hope that would be the end of it, so I entered the guys details and sent the payment, my phone rang again.
"Thank you for complying, unfortunately someone I know really likes you."
He hung up, panicking I tried calling the number back an automated message began to play "the number you have dialled has not been recognised"
A few hours pass and I began to think to myself well maybe the last call was just him having fun and decided after a long day I'd just go to bed.
Sometime around 2am I was woken up by the sound of banging at my front door, I jumped out of bed and turned on all the lights grabbing a knife from the kitchen I walked slowly towards the window and looked out I could see someone standing by a car when they spotted me they got in and drove off I rushed to the door in hopes I might be able to get a license plate but by the time I'd opened it they'd already turned the corner as I turned I noticed an envelope on the floor I picked it up, went back inside and locked the door, closed the curtains and sat in the kitchen I placed the envelope on the counter and stared at it for around half an hour trying to muster up the courage to open it, did these guys really come to my home I thought to myself.
After the half hour was up I decided enough was enough I opened the envelope and pictures fell out onto the counter they were of me sleeping, these guys had not only been outside my house they'd been inside whilst I was sleeping the images had been edited and strange love hearts had been added next to me so now I was sufficiently freaked out, I didn't go back to sleep and when the sun broke the darkness I decided to head to the police station and tell them everything I hadn't broken any laws so I hoped they would just help me at least after hours of explaining everything to them they told me there was nothing they could do.
At this point I had never felt so alone in the world, I was scared of what this guy was planning for me, I didn't have the foggiest idea what I was supposed to do or expect so I decided to wipe everything my laptop, PC and phone I picked up everything I needed stuffed it all into a bag and decided to leave I had a couple of friends that I knew I could rely on so I called up my old buddy Marcus and we met had a few beers and I explained everything to him, he offered me a place to stay and I hoped that would be the end of it how wrong I was.
A few days later it happened again there was a knock at the door first thing in the morning, me and Marcus both went out to find another envelope on the floor, same thing pictures of me sleeping but these were in Marcus's house I started freaking out again and Marcus just said
"Ok well we need to do something maybe set a trap or something"
So we went over numerous ideas everything you could think of from cameras to baiting him and we settled on the idea of staying up during the night and locking him in the room, we filled the bed up with pillows, setup cameras and even barred the windows in the room we hid in the room next door after a few hours had passed we heard the lock rattling on the front door and we knew it was game time, we'd left the door just slightly ajar so we could see outside as he went past and the moment he went into the room we both sprung to action quickly as we could we closed the door and locked it from outside using a chair and a metal bar there was only one way he was getting out and he'd have to destroy the door we could see the silhouette of him as he paced the room quietly it was creepy as fuck, we called the police as we kept an eye on him.
At last I thought I can finish this and move on with my life just as the police arrived we noticed the guy take a gun out and place it to his head, he held a sign up which read "I love you" and he pulled the trigger, the police barged in guns drawn told us both to get the floor, we complied and shouted "he's in there" pointing at the door.
The police removed the makeshift lock and entered the room, called for an ambulance and put me and Marcus in the back of a police car.
I'd been sat in the interview room for a good couple of hours I guess whilst they carried out the investigation when a detective came in and say down in front of me opening a folder and placing pictures on the table "Do you know her" "Her?" I said looking at the pictures "no" I replied confused , he looked at me and said "this is the person who's been stalking you" and he then began to tell me they had visited her home and found a shrine with photos of me all over the place from restaurants to the gym even shopping.
He went onto tell me that she'd been the one that sent the messages, made the phone calls etc and they'd also found a diary which had some kind of future plans for me and her, she wanted me to be her husband and we'd been chatting for around a year and half from the moment I started the forum after I explained everything the detective said I was lucky to be alive, she had actually planned to drug me and kidnap me, she had even made some makeshift lock bed so I wouldn't be able to escape.
To this day I feel lucky and I haven't been on the darkweb since.
submitted by GoobleGayTennis to Scary [link] [comments]

A question regarding Bitcoin wallet

If the mobile wallet (say Exodus or Mycelium) where I store my BTC are kept offline, as in the phone and the wallet isn't used unless transferring BTC once in a while. Does it mean, i get better security then usual?
Not a bright question but still..
submitted by AnTyDawn to Bitcoin [link] [comments]

Why I stopped using DarkWeb

My story begins a few years ago I decided to use my computer skills to run a small darknet forum mainly just to share information without censorship.
At first I was extremely paranoid about my site getting hacked and having my anonymity being compromised so I went online and began to research everything that I would need to ensure my own safety.
After countless days of scouring blogs, forums and other material I decided I was ready now I didn't have any money so I couldn't just buy a VPS and host the site off shore or whatever, so I decided to use my old laptop after all I wasn't planning on running a major website.
So after setting the server up and what I thought was literally every single thing I could to do harden it against attack I put the site online, everything went great for a couple of months, donations rolled in as the the user base grew larger and larger.
After around 5 months the user base had gotten so big I had to upgrade and migrate everything to a new PC which I built just to host the forum and from there everything seemed perfect, the site was running smoothly and there were no issues with the migration until one day when I came home and noticed the PC had frozen I didn't think much to it maybe just a software bug caused it so I rebooted and that's when it was clear to me something was wrong the PC lit up and beeped a few times then shut off so I thought to myself ok so it's a hardware issue, after a few hours trying to diagnose the issue I figured it out and it turned out the ram had been corrupted I took it back to the store since it was still under warranty, the customer rep just told me it might have just been a faulty stick.
When I got home I replaced the stick of ram and had the site back up and running within a few hours, everything seemed to be perfect again I apologized to the users for the down time and everyone seemed to be happy enough.
Fast forward a few more months, the forums been up and running for a around a year and a half now this is when things started to get really weird. I finished work on a Friday, it was a gorgeous day in the middle of summer I came home had something to eat and sat down in front my PC and noticed I had a message, upon opening the message I realised that somewhere I'd messed up now don't get me wrong I'm not like Assange or anything so I don't really know why anybody would actually target me but the world is a crazy place so whatever.
The message had my details from my name, address, bank details, passwords, private emails, private messages everything from nearly every single device I owned I freaked out and immediately took the PC offline, turned my internet off but little did I know that this guy had done his research after a couple of hours pacing my room I received a text message.
"I know everything about you"
The message was sent via some type of SMS service so there was no way to trace it and then my phone rang.
"Don't talk just listen, I know everything there is to know about you all I want is 2 Bitcoin or things get worse, I'll send you a text with the wallet details"
The phone call ended just as quickly as it started, I opened my laptop up and checked my Bitcoin wallet there was enough left over from the donations just to pay this guy off and hope that would be the end of it, so I entered the guys details and sent the payment, my phone rang again.
"Thank you for complying, unfortunately someone I know really likes you."
He hung up, panicking I tried calling the number back an automated message began to play "the number you have dialled has not been recognised"
A few hours pass and I began to think to myself well maybe the last call was just him having fun and decided after a long day I'd just go to bed.
Sometime around 2am I was woken up by the sound of banging at my front door, I jumped out of bed and turned on all the lights grabbing a knife from the kitchen I walked slowly towards the window and looked out I could see someone standing by a car when they spotted me they got in and drove off I rushed to the door in hopes I might be able to get a license plate but by the time I'd opened it they'd already turned the corner as I turned I noticed an envelope on the floor I picked it up, went back inside and locked the door, closed the curtains and sat in the kitchen I placed the envelope on the counter and stared at it for around half an hour trying to muster up the courage to open it, did these guys really come to my home I thought to myself.
After the half hour was up I decided enough was enough I opened the envelope and pictures fell out onto the counter they were of me sleeping, these guys had not only been outside my house they'd been inside whilst I was sleeping the images had been edited and strange love hearts had been added next to me so now I was sufficiently freaked out, I didn't go back to sleep and when the sun broke the darkness I decided to head to the police station and tell them everything I hadn't broken any laws so I hoped they would just help me at least after hours of explaining everything to them they told me there was nothing they could do.
At this point I had never felt so alone in the world, I was scared of what this guy was planning for me, I didn't have the foggiest idea what I was supposed to do or expect so I decided to wipe everything my laptop, PC and phone I picked up everything I needed stuffed it all into a bag and decided to leave I had a couple of friends that I knew I could rely on so I called up my old buddy Marcus and we met had a few beers and I explained everything to him, he offered me a place to stay and I hoped that would be the end of it how wrong I was.
A few days later it happened again there was a knock at the door first thing in the morning, me and Marcus both went out to find another envelope on the floor, same thing pictures of me sleeping but these were in Marcus's house I started freaking out again and Marcus just said
"Ok well we need to do something maybe set a trap or something"
So we went over numerous ideas everything you could think of from cameras to baiting him and we settled on the idea of staying up during the night and locking him in the room, we filled the bed up with pillows, setup cameras and even barred the windows in the room we hid in the room next door after a few hours had passed we heard the lock rattling on the front door and we knew it was game time, we'd left the door just slightly ajar so we could see outside as he went past and the moment he went into the room we both sprung to action quickly as we could we closed the door and locked it from outside using a chair and a metal bar there was only one way he was getting out and he'd have to destroy the door we could see the silhouette of him as he paced the room quietly it was creepy as fuck, we called the police as we kept an eye on him.
At last I thought I can finish this and move on with my life just as the police arrived we noticed the guy take a gun out and place it to his head, he held a sign up which read "I love you" and he pulled the trigger, the police barged in guns drawn told us both to get the floor, we complied and shouted "he's in there" pointing at the door.
The police removed the makeshift lock and entered the room, called for an ambulance and put me and Marcus in the back of a police car.
I'd been sat in the interview room for a good couple of hours I guess whilst they carried out the investigation when a detective came in and say down in front of me opening a folder and placing pictures on the table "Do you know her" "Her?" I said looking at the pictures "no" I replied confused , he looked at me and said "this is the person who's been stalking you" and he then began to tell me they had visited her home and found a shrine with photos of me all over the place from restaurants to the gym even shopping.
He went onto tell me that she'd been the one that sent the messages, made the phone calls etc and they'd also found a diary which had some kind of future plans for me and her, she wanted me to be her husband and we'd been chatting for around a year and half from the moment I started the forum after I explained everything the detective said I was lucky to be alive, she had actually planned to drug me and kidnap me, she had even made some makeshift lock bed so I wouldn't be able to escape.
To this day I feel lucky and I haven't been on the darkweb since.
submitted by 40131013 to scarystories [link] [comments]

Why I stopped using DarkWeb

My story begins a few years ago I decided to use my computer skills to run a small darknet forum mainly just to share information without censorship.
At first I was extremely paranoid about my site getting hacked and having my anonymity being compromised so I went online and began to research everything that I would need to ensure my own safety.
After countless days of scouring blogs, forums and other material I decided I was ready now I didn't have any money so I couldn't just buy a VPS and host the site off shore or whatever, so I decided to use my old laptop after all I wasn't planning on running a major website.
So after setting the server up and what I thought was literally every single thing I could to do harden it against attack I put the site online, everything went great for a couple of months, donations rolled in as the the user base grew larger and larger.
After around 5 months the user base had gotten so big I had to upgrade and migrate everything to a new PC which I built just to host the forum and from there everything seemed perfect, the site was running smoothly and there were no issues with the migration until one day when I came home and noticed the PC had frozen I didn't think much to it maybe just a software bug caused it so I rebooted and that's when it was clear to me something was wrong the PC lit up and beeped a few times then shut off so I thought to myself ok so it's a hardware issue, after a few hours trying to diagnose the issue I figured it out and it turned out the ram had been corrupted I took it back to the store since it was still under warranty, the customer rep just told me it might have just been a faulty stick.
When I got home I replaced the stick of ram and had the site back up and running within a few hours, everything seemed to be perfect again I apologized to the users for the down time and everyone seemed to be happy enough.
Fast forward a few more months, the forums been up and running for a around a year and a half now this is when things started to get really weird. I finished work on a Friday, it was a gorgeous day in the middle of summer I came home had something to eat and sat down in front my PC and noticed I had a message, upon opening the message I realised that somewhere I'd messed up now don't get me wrong I'm not like Assange or anything so I don't really know why anybody would actually target me but the world is a crazy place so whatever.
The message had my details from my name, address, bank details, passwords, private emails, private messages everything from nearly every single device I owned I freaked out and immediately took the PC offline, turned my internet off but little did I know that this guy had done his research after a couple of hours pacing my room I received a text message.
"I know everything about you"
The message was sent via some type of SMS service so there was no way to trace it and then my phone rang.
"Don't talk just listen, I know everything there is to know about you all I want is 2 Bitcoin or things get worse, I'll send you a text with the wallet details"
The phone call ended just as quickly as it started, I opened my laptop up and checked my Bitcoin wallet there was enough left over from the donations just to pay this guy off and hope that would be the end of it, so I entered the guys details and sent the payment, my phone rang again.
"Thank you for complying, unfortunately someone I know really likes you."
He hung up, panicking I tried calling the number back an automated message began to play "the number you have dialled has not been recognised"
A few hours pass and I began to think to myself well maybe the last call was just him having fun and decided after a long day I'd just go to bed.
Sometime around 2am I was woken up by the sound of banging at my front door, I jumped out of bed and turned on all the lights grabbing a knife from the kitchen I walked slowly towards the window and looked out I could see someone standing by a car when they spotted me they got in and drove off I rushed to the door in hopes I might be able to get a license plate but by the time I'd opened it they'd already turned the corner as I turned I noticed an envelope on the floor I picked it up, went back inside and locked the door, closed the curtains and sat in the kitchen I placed the envelope on the counter and stared at it for around half an hour trying to muster up the courage to open it, did these guys really come to my home I thought to myself.
After the half hour was up I decided enough was enough I opened the envelope and pictures fell out onto the counter they were of me sleeping, these guys had not only been outside my house they'd been inside whilst I was sleeping the images had been edited and strange love hearts had been added next to me so now I was sufficiently freaked out, I didn't go back to sleep and when the sun broke the darkness I decided to head to the police station and tell them everything I hadn't broken any laws so I hoped they would just help me at least after hours of explaining everything to them they told me there was nothing they could do.
At this point I had never felt so alone in the world, I was scared of what this guy was planning for me, I didn't have the foggiest idea what I was supposed to do or expect so I decided to wipe everything my laptop, PC and phone I picked up everything I needed stuffed it all into a bag and decided to leave I had a couple of friends that I knew I could rely on so I called up my old buddy Marcus and we met had a few beers and I explained everything to him, he offered me a place to stay and I hoped that would be the end of it how wrong I was.
A few days later it happened again there was a knock at the door first thing in the morning, me and Marcus both went out to find another envelope on the floor, same thing pictures of me sleeping but these were in Marcus's house I started freaking out again and Marcus just said
"Ok well we need to do something maybe set a trap or something"
So we went over numerous ideas everything you could think of from cameras to baiting him and we settled on the idea of staying up during the night and locking him in the room, we filled the bed up with pillows, setup cameras and even barred the windows in the room we hid in the room next door after a few hours had passed we heard the lock rattling on the front door and we knew it was game time, we'd left the door just slightly ajar so we could see outside as he went past and the moment he went into the room we both sprung to action quickly as we could we closed the door and locked it from outside using a chair and a metal bar there was only one way he was getting out and he'd have to destroy the door we could see the silhouette of him as he paced the room quietly it was creepy as fuck, we called the police as we kept an eye on him.
At last I thought I can finish this and move on with my life just as the police arrived we noticed the guy take a gun out and place it to his head, he held a sign up which read "I love you" and he pulled the trigger, the police barged in guns drawn told us both to get the floor, we complied and shouted "he's in there" pointing at the door.
The police removed the makeshift lock and entered the room, called for an ambulance and put me and Marcus in the back of a police car.
I'd been sat in the interview room for a good couple of hours I guess whilst they carried out the investigation when a detective came in and say down in front of me opening a folder and placing pictures on the table "Do you know her" "Her?" I said looking at the pictures "no" I replied confused , he looked at me and said "this is the person who's been stalking you" and he then began to tell me they had visited her home and found a shrine with photos of me all over the place from restaurants to the gym even shopping.
He went onto tell me that she'd been the one that sent the messages, made the phone calls etc and they'd also found a diary which had some kind of future plans for me and her, she wanted me to be her husband and we'd been chatting for around a year and half from the moment I started the forum after I explained everything the detective said I was lucky to be alive, she had actually planned to drug me and kidnap me, she had even made some makeshift lock bed so I wouldn't be able to escape.
To this day I feel lucky and I haven't been on the darkweb since.
submitted by 40131013 to scarystories [link] [comments]

I have 5 Bitcoin parked in an Electrum wallet.

Throwaway.
The Electrum wallet is part of a bootable Tails installation. The code for both Tails and Electrum are both open source. I never use the bootable Tails for anything other than using the Electrum wallet, and when I’m done the machine is powered off.
Recently there was a post about a guy having something like 55 Bitcoin stolen off his machine through what he thought was some sort of Remote Desktop virus, as the wallet software was open on his PC when he woke up, and it wasn’t open when he went to bed.
Everyone in the thread kept saying hardware wallet, hardware wallet.
I use iPhone, Trezor doesn’t work with iPhone, but honestly I’ve never been too keen with not being able to access the firmware on the hardware wallet and just having to hope that the one I ordered hasn’t been comprised in the supply chain. So, I decided on Electrum as it is a well-established project, it is open-source, which allows me to feel reasonably certain that the code has been reviewed and checked for bullshit. Unlike Breadwallet, which I love, but ultimately must run on my closed-platform iOS, and because of that can never be really trusted.
I suppose my question is; Honestly, am I truly living dangerously by keeping my ‘life savings’ in what is technically a ‘hot-wallet’, even though my use of that hot wallet is pretty much the textbook definition of safe practice?
submitted by rbitcointhrowaway5 to Bitcoin [link] [comments]

Why I stopped using DarkWeb(the best story which everyone can read)

My story begins a few years ago I decided to use my computer skills to run a small darknet forum mainly just to share information without censorship.
At first I was extremely paranoid about my site getting hacked and having my anonymity being compromised so I went online and began to research everything that I would need to ensure my own safety.
After countless days of scouring blogs, forums and other material I decided I was ready now I didn't have any money so I couldn't just buy a VPS and host the site off shore or whatever, so I decided to use my old laptop after all I wasn't planning on running a major website.
So after setting the server up and what I thought was literally every single thing I could to do harden it against attack I put the site online, everything went great for a couple of months, donations rolled in as the the user base grew larger and larger.
After around 5 months the user base had gotten so big I had to upgrade and migrate everything to a new PC which I built just to host the forum and from there everything seemed perfect, the site was running smoothly and there were no issues with the migration until one day when I came home and noticed the PC had frozen I didn't think much to it maybe just a software bug caused it so I rebooted and that's when it was clear to me something was wrong the PC lit up and beeped a few times then shut off so I thought to myself ok so it's a hardware issue, after a few hours trying to diagnose the issue I figured it out and it turned out the ram had been corrupted I took it back to the store since it was still under warranty, the customer rep just told me it might have just been a faulty stick.
When I got home I replaced the stick of ram and had the site back up and running within a few hours, everything seemed to be perfect again I apologized to the users for the down time and everyone seemed to be happy enough.
Fast forward a few more months, the forums been up and running for a around a year and a half now this is when things started to get really weird. I finished work on a Friday, it was a gorgeous day in the middle of summer I came home had something to eat and sat down in front my PC and noticed I had a message, upon opening the message I realised that somewhere I'd messed up now don't get me wrong I'm not like Assange or anything so I don't really know why anybody would actually target me but the world is a crazy place so whatever.
The message had my details from my name, address, bank details, passwords, private emails, private messages everything from nearly every single device I owned I freaked out and immediately took the PC offline, turned my internet off but little did I know that this guy had done his research after a couple of hours pacing my room I received a text message.
"I know everything about you"
The message was sent via some type of SMS service so there was no way to trace it and then my phone rang.
"Don't talk just listen, I know everything there is to know about you all I want is 2 Bitcoin or things get worse, I'll send you a text with the wallet details"
The phone call ended just as quickly as it started, I opened my laptop up and checked my Bitcoin wallet there was enough left over from the donations just to pay this guy off and hope that would be the end of it, so I entered the guys details and sent the payment, my phone rang again.
"Thank you for complying, unfortunately someone I know really likes you."
He hung up, panicking I tried calling the number back an automated message began to play "the number you have dialled has not been recognised"
A few hours pass and I began to think to myself well maybe the last call was just him having fun and decided after a long day I'd just go to bed.
Sometime around 2am I was woken up by the sound of banging at my front door, I jumped out of bed and turned on all the lights grabbing a knife from the kitchen I walked slowly towards the window and looked out I could see someone standing by a car when they spotted me they got in and drove off I rushed to the door in hopes I might be able to get a license plate but by the time I'd opened it they'd already turned the corner as I turned I noticed an envelope on the floor I picked it up, went back inside and locked the door, closed the curtains and sat in the kitchen I placed the envelope on the counter and stared at it for around half an hour trying to muster up the courage to open it, did these guys really come to my home I thought to myself.
After the half hour was up I decided enough was enough I opened the envelope and pictures fell out onto the counter they were of me sleeping, these guys had not only been outside my house they'd been inside whilst I was sleeping the images had been edited and strange love hearts had been added next to me so now I was sufficiently freaked out, I didn't go back to sleep and when the sun broke the darkness I decided to head to the police station and tell them everything I hadn't broken any laws so I hoped they would just help me at least after hours of explaining everything to them they told me there was nothing they could do.
At this point I had never felt so alone in the world, I was scared of what this guy was planning for me, I didn't have the foggiest idea what I was supposed to do or expect so I decided to wipe everything my laptop, PC and phone I picked up everything I needed stuffed it all into a bag and decided to leave I had a couple of friends that I knew I could rely on so I called up my old buddy Marcus and we met had a few beers and I explained everything to him, he offered me a place to stay and I hoped that would be the end of it how wrong I was.
A few days later it happened again there was a knock at the door first thing in the morning, me and Marcus both went out to find another envelope on the floor, same thing pictures of me sleeping but these were in Marcus's house I started freaking out again and Marcus just said
"Ok well we need to do something maybe set a trap or something"
So we went over numerous ideas everything you could think of from cameras to baiting him and we settled on the idea of staying up during the night and locking him in the room, we filled the bed up with pillows, setup cameras and even barred the windows in the room we hid in the room next door after a few hours had passed we heard the lock rattling on the front door and we knew it was game time, we'd left the door just slightly ajar so we could see outside as he went past and the moment he went into the room we both sprung to action quickly as we could we closed the door and locked it from outside using a chair and a metal bar there was only one way he was getting out and he'd have to destroy the door we could see the silhouette of him as he paced the room quietly it was creepy as fuck, we called the police as we kept an eye on him.
At last I thought I can finish this and move on with my life just as the police arrived we noticed the guy take a gun out and place it to his head, he held a sign up which read "I love you" and he pulled the trigger, the police barged in guns drawn told us both to get the floor, we complied and shouted "he's in there" pointing at the door.
The police removed the makeshift lock and entered the room, called for an ambulance and put me and Marcus in the back of a police car.
I'd been sat in the interview room for a good couple of hours I guess whilst they carried out the investigation when a detective came in and say down in front of me opening a folder and placing pictures on the table "Do you know her" "Her?" I said looking at the pictures "no" I replied confused , he looked at me and said "this is the person who's been stalking you" and he then began to tell me they had visited her home and found a shrine with photos of me all over the place from restaurants to the gym even shopping.
He went onto tell me that she'd been the one that sent the messages, made the phone calls etc and they'd also found a diary which had some kind of future plans for me and her, she wanted me to be her husband and we'd been chatting for around a year and half from the moment I started the forum after I explained everything the detective said I was lucky to be alive, she had actually planned to drug me and kidnap me, she had even made some makeshift lock bed so I wouldn't be able to escape.
To this day I feel lucky and I haven't been on the darkweb since.
submitted by 40131013 to Scary [link] [comments]

My Trezor (MEW?) account got compremised, funds were stolen

Hello ladies and gentleman,
I hope you can help me out somehow. I put it in bitcoin as well despite its ethereum but its about trezor and the btc part is involved. In mid september all my ethereum and ethereum based stuff was cleared from my MEW accounts for roughly 38k USD. Trezor couldnt help me at all and we went through all the topics and questions they had which lead to nothing exept an basic answer “your seeds got compromised in the past“, which doesn’t make any sense and I will explain why.
Lets say, Im a person with some basic tech knowledge and worked as admin and I use common sense to handle my crypto stuff which is part of my business and daily task since 2 years.I check all things again before sending. Adress, amount etc and never had any problems before.I never was on a fake page where I had to give my seed or passphrases inI dont open spam mails nor use my new laptop for something else then work, like visiting porn sites or shady stuff or use cracks etc. I didnt even found a malitous cookie after checking everything. The laptop I used was 3 months old and set up on my own with windows, firwall, antivir and anti malware stuff. Things I am doing form me and my friends since year 2000. No cracks used for programms, everything legal. I use a trezor one since then which is updated accordingly when the tool or page prompts me. I used to use chrome as my default browser (which i learned, over the past months trying to figure out what might have happened, is one oft the worst browsers).
No one has my seedsno one knows my pin to entert the trezorI dont store any of this information onlineI dont know my private keys from trezor
So what happened was that september 9 in the evening, a few hours after I sent some usdt deposit to my adress, I want to check if everything is there, login to my MEW account (online, not offline and url was correct. no addon used, just the shortcut in my browser which i safed there and always used and later checked i fit was linked to something else which wasnt), and the account was empty. Three ethereum adresses where i stored some coins, eth and usdt.
I realised that every transaction below happened while i was standing infront of my laptop (checked time happening), trezor connected cause i did some btc transaction before and chatted to customers on different chat tools like telegram or skype. Obvsly without signing any transaction at all everything was sent to other adresses. It seemed someone got the keys to those adresses before. Now, I dont even know my private keys to those adresses which are stored in trezor right? I wasnt logged into MEW before this incident for about 1.5 days. The btc part on my trezor is MUCH more valuable, but still there. After trezor couldnt help me about what happened and MEW treated me like the standard idiot who gets highjacked and then wonders why his money is gone, I went trough so many possibilities. For the most time I thought some kind of KRACK attack happened.
The only problem is trezor says they dont extract the private keys. Some gurus in this topic ( i read on reddit here) say its possible to get them from the network. Even parts are enough to encrypt the whole key after a while which would underline the timeline that it took 6 days from working in this hotel and having the unusual situation with the sending (down explained) till the accs got cleared.
The hotel incident happened the week before my accounts got cleared. I was visitting friends and coworking agents in Vietnam and stayed in a red doorz hotel in Ho Chi Minh. Using the Hotel Wifi and a nvpn.net VPN I sent some usdt funds via MEW to a befriended customer and something very stranged happened, which I never had before.I sent 4k usdt to a customer and the transaction took 13 min working working working and then failed. I’ve never had something like that. We thought it might be because of eth network or so but we never had that before, me and him sending a lot transactions every day.
Then i copied all details in again and send another 4k and somehow he recieved both!
check the screen. The one transaction processed nearly 13 min then failed. 2min later i sent a new one and without any evidence in this screen he recieved both.
https://s19.directupload.net/images/200121/27e8uyd3.jpg
later
https://s19.directupload.net/images/200121/3todak3u.png
So he sent me back the additional 4k and I shut down everything not thinking about this much anymore. Only when the accounts got cleared I was searching for any unusual happenings which could have let to this because pretty much all other “typical“ mistakes people normally do we could exclude. If somehow my seeds got compromised why only the ETH stuff? The btc parts on the trezor had much much more value. I never searched for trezor page on the web and used a link to access my wallets or to do updates. I always used the trezor bridge and made a shortcut to my wallet in my browser. For MEW i always used the same shortcut in my browser which worked pretty fine for the past years an everytime when setting the browser or pc new i checked it all before.
Because of the unusual thing which happened in Vietnam I flew back there (from philippines) prepared with tools and checking because I couldnt let go and I didnt find any other plausible cause. I even got back my old room. In this hotel there are three hotel wifi network and I remeber 100% that I used the 2nd one before cause it had the strongest signal. Anyway. I switched on wireshark and later on Fiddler, repeated all steps I used to do before. Checking if some rerouting, dns poisening or readressing or so is happening. Nothing unusual happened in the first when entering MEW (I sent some bait funds there).
In the 2nd network I used in september the trezor basically totally freaked out. He didnt let me enter MEW, I had to reenter my pin up to 5 times sometimes, It gave me error messages in MEW or it took 30 fucking seconds to enter it. Trezor writes about this:
“When you enter an invalid PIN a few times, the Trezor adds a forced waiting time between attempts.You can see this feature on the photo where the Trezor is making you wait for 15 seconds before another attempt.This countdown is then multiplied by the factor of two until you reach the 16th invalid PIN entry. After that, the device automatically wipes its memory - deleting all data from it.
The behavior of your Trezor at MEW is undoubtedly not standard or in any form pleasantly functional. Nevertheless, it also isn't anything superbly unusual or unexpected, taking poor internet connection into account.“
The thing is, the pin is 6 digits but pretty basic and I never ever entered it wrong. And I used the strongest wifi and could open webpages very easily .
As well as: “Sadly, this does not tell us anything about how your funds could be compromised. None of this could have ever exposed your private keys or made your device vulnerable in any way.
The Reddit thread you linked discusses cracking BIP-39 passphrases, which is irrelevant to your case. Cracking such passphrases assumes the person trying to break the wallet already has full possession of the recovery seed (recovery words). See, a passphrase is not your recovery seed or some additional password on your device. It is an extension of the seed, and it is also 100% useless without controlling the full seed.
The only threat you are exposed to when using Chrome is using Google itself. When googling "trezor" or "trezor wallet", you might stumble upon a phishing site which will present itself as a genuine Trezor website and force you to go through a fake "recovery" process. There you'd give out your recovery seed, which subsequently grants full access to your wallet and funds.
It's reasonable to assume that malware could guide you to such a website. To this day, we are not aware of any such incident ever happening, and even then, there are protections in place to defend you against phishing attempts.“
Basically, something I never did and all funds would haven been gone then.
I checked the 3rd network as well, and like the 1st nothing special happened. Only in the 2nd.
These are the funds and how the got cleared off the wallets.
I always show last transaction from me to the adress as well on the screens. So adress:
0x253ABB6d747a9404A007f57AaDEc1cA2b80694a1
They withdrew this:
1k USDT and the small amount ETH to send stuff
https://s19.directupload.net/images/200121/sg2lumg8.png
adress:
0x01fd43a713D8F46FF9a7Ed108da2FF74884D8400
They withdrew this:Majority of USDT and small eth for sending stuff
https://s19.directupload.net/images/200121/arycubto.png
adress:
0xf73c8C30072488d932011696436B46005504A7aeThey withdrew this:
Majority of ETh, then all coins from valueable to worthless and then some rest eth
https://s19.directupload.net/images/200121/urbgm2y5.png
https://s19.directupload.net/images/200121/rdkod59h.jpg
So this is what happened at 12th september between 16:49 and 17:15. Sick to see that all happened between 16:49 and 17:00 and its like someone came back checking and saw the 0.014 eth and withdrew it 17:15. Around 10pm i discovered what happened.
So, do you have any ideas? Questions? Feel free to guess or ask Im glad for everything which might lead to what might have happened. I somehow can’t let go off the feeling something inbetween the network, MEW and trezor ist he cause, but what do I know.
submitted by The_Wave13 to Bitcoin [link] [comments]

Why I stopped using DarkWeb

My story begins a few years ago I decided to use my computer skills to run a small darknet forum mainly just to share information without censorship.
At first I was extremely paranoid about my site getting hacked and having my anonymity being compromised so I went online and began to research everything that I would need to ensure my own safety.
After countless days of scouring blogs, forums and other material I decided I was ready now I didn't have any money so I couldn't just buy a VPS and host the site off shore or whatever, so I decided to use my old laptop after all I wasn't planning on running a major website.
So after setting the server up and what I thought was literally every single thing I could to do harden it against attack I put the site online, everything went great for a couple of months, donations rolled in as the the user base grew larger and larger.
After around 5 months the user base had gotten so big I had to upgrade and migrate everything to a new PC which I built just to host the forum and from there everything seemed perfect, the site was running smoothly and there were no issues with the migration until one day when I came home and noticed the PC had frozen I didn't think much to it maybe just a software bug caused it so I rebooted and that's when it was clear to me something was wrong the PC lit up and beeped a few times then shut off so I thought to myself ok so it's a hardware issue, after a few hours trying to diagnose the issue I figured it out and it turned out the ram had been corrupted I took it back to the store since it was still under warranty, the customer rep just told me it might have just been a faulty stick.
When I got home I replaced the stick of ram and had the site back up and running within a few hours, everything seemed to be perfect again I apologized to the users for the down time and everyone seemed to be happy enough.
Fast forward a few more months, the forums been up and running for a around a year and a half now this is when things started to get really weird. I finished work on a Friday, it was a gorgeous day in the middle of summer I came home had something to eat and sat down in front my PC and noticed I had a message, upon opening the message I realised that somewhere I'd messed up now don't get me wrong I'm not like Assange or anything so I don't really know why anybody would actually target me but the world is a crazy place so whatever.
The message had my details from my name, address, bank details, passwords, private emails, private messages everything from nearly every single device I owned I freaked out and immediately took the PC offline, turned my internet off but little did I know that this guy had done his research after a couple of hours pacing my room I received a text message.
"I know everything about you"
The message was sent via some type of SMS service so there was no way to trace it and then my phone rang.
"Don't talk just listen, I know everything there is to know about you all I want is 2 Bitcoin or things get worse, I'll send you a text with the wallet details"
The phone call ended just as quickly as it started, I opened my laptop up and checked my Bitcoin wallet there was enough left over from the donations just to pay this guy off and hope that would be the end of it, so I entered the guys details and sent the payment, my phone rang again.
"Thank you for complying, unfortunately someone I know really likes you."
He hung up, panicking I tried calling the number back an automated message began to play "the number you have dialled has not been recognised"
A few hours pass and I began to think to myself well maybe the last call was just him having fun and decided after a long day I'd just go to bed.
Sometime around 2am I was woken up by the sound of banging at my front door, I jumped out of bed and turned on all the lights grabbing a knife from the kitchen I walked slowly towards the window and looked out I could see someone standing by a car when they spotted me they got in and drove off I rushed to the door in hopes I might be able to get a license plate but by the time I'd opened it they'd already turned the corner as I turned I noticed an envelope on the floor I picked it up, went back inside and locked the door, closed the curtains and sat in the kitchen I placed the envelope on the counter and stared at it for around half an hour trying to muster up the courage to open it, did these guys really come to my home I thought to myself.
After the half hour was up I decided enough was enough I opened the envelope and pictures fell out onto the counter they were of me sleeping, these guys had not only been outside my house they'd been inside whilst I was sleeping the images had been edited and strange love hearts had been added next to me so now I was sufficiently freaked out, I didn't go back to sleep and when the sun broke the darkness I decided to head to the police station and tell them everything I hadn't broken any laws so I hoped they would just help me at least after hours of explaining everything to them they told me there was nothing they could do.
At this point I had never felt so alone in the world, I was scared of what this guy was planning for me, I didn't have the foggiest idea what I was supposed to do or expect so I decided to wipe everything my laptop, PC and phone I picked up everything I needed stuffed it all into a bag and decided to leave I had a couple of friends that I knew I could rely on so I called up my old buddy Marcus and we met had a few beers and I explained everything to him, he offered me a place to stay and I hoped that would be the end of it how wrong I was.
A few days later it happened again there was a knock at the door first thing in the morning, me and Marcus both went out to find another envelope on the floor, same thing pictures of me sleeping but these were in Marcus's house I started freaking out again and Marcus just said
"Ok well we need to do something maybe set a trap or something"
So we went over numerous ideas everything you could think of from cameras to baiting him and we settled on the idea of staying up during the night and locking him in the room, we filled the bed up with pillows, setup cameras and even barred the windows in the room we hid in the room next door after a few hours had passed we heard the lock rattling on the front door and we knew it was game time, we'd left the door just slightly ajar so we could see outside as he went past and the moment he went into the room we both sprung to action quickly as we could we closed the door and locked it from outside using a chair and a metal bar there was only one way he was getting out and he'd have to destroy the door we could see the silhouette of him as he paced the room quietly it was creepy as fuck, we called the police as we kept an eye on him.
At last I thought I can finish this and move on with my life just as the police arrived we noticed the guy take a gun out and place it to his head, he held a sign up which read "I love you" and he pulled the trigger, the police barged in guns drawn told us both to get the floor, we complied and shouted "he's in there" pointing at the door.
The police removed the makeshift lock and entered the room, called for an ambulance and put me and Marcus in the back of a police car.
I'd been sat in the interview room for a good couple of hours I guess whilst they carried out the investigation when a detective came in and say down in front of me opening a folder and placing pictures on the table "Do you know her" "Her?" I said looking at the pictures "no" I replied confused , he looked at me and said "this is the person who's been stalking you" and he then began to tell me they had visited her home and found a shrine with photos of me all over the place from restaurants to the gym even shopping.
He went onto tell me that she'd been the one that sent the messages, made the phone calls etc and they'd also found a diary which had some kind of future plans for me and her, she wanted me to be her husband and we'd been chatting for around a year and half from the moment I started the forum after I explained everything the detective said I was lucky to be alive, she had actually planned to drug me and kidnap me, she had even made some makeshift lock bed so I wouldn't be able to escape.
To this day I feel lucky and I haven't been on the darkweb since.
submitted by 40131013 to scaryshortstories [link] [comments]

[ELI5] Storing bitcoin securely.

Was gonna comment this, but thought it maybe deserved some more exposure for the newcomers:
Ownership Possession of bitcoin is basically defined by ownership possession/knowledge of private keys, since private keys are needed for signing transactions. If there's only one thing you are going to understand about bitcoin today, then understand that you need to keep your private keys FUCKING PRIVATE.
Having that said, private keys, in its most low level form are essentially just a string of 1's and 0's, in practice however we convert this binary format to more readable and fault tolerant formats like say "5Kb8kLf9zgWQnogidDA76MzPL6TsZZY36hWXMssSzNydYXYB9KF" (Do not use this! I've posted it here so clearly it's NOT FUCKING PRIVATE ANYMORE!
Good, now that you know that private keys are essentially just numbers. You need to know it's a pain in the ass to keep track of all the private keys you have. That's why some smart people devised Hierarchical deterministic wallets to generate a practically infinite amount of private keys from a single string of 24 (or sometimes 12) English words. These keys are generated in a deterministic way, meaning the same string of 24 words will always generate the same private keys. These wallets are known as HD-wallets. I hope it's clearly fucking obvious that you need to keep those 24 words FUCKING PRIVATE as well. It's called the Master Seed btw.
Now onto Hardware Wallets. Hardware wallets are simply devices that store your master seed and try to do absolute minimum of what is necessary to use bitcoin safely. Essentially they are devices to generate and store master seeds, generate private keys and sign transactions. Although, there is clearly some level of sophistication and complexity involved for such a device to even be able to perform these operations. Generally speaking, complexity is an enemy of security, so we want these devices to be as dumb as possible, the dumber the better.
When it comes to computer security, I would never trust a Windows box, ever. Linux is open source, which is a necessary but not sufficient condition for information security. Linux is awesome, but there are still plenty of attack vectors left for hackers to exploit on your linux box. You may want to play around with Electrum for small amounts first. Once you're comfortable with that, maybe try signing some transactions offline with an airgapped machine. If you're lazy, then just get a hardware wallet.
submitted by dont-listentome to Bitcoin [link] [comments]

why I stopped using DarkWeb

My story begins a few years ago I decided to use my computer skills to run a small darknet forum mainly just to share information without censorship.
At first I was extremely paranoid about my site getting hacked and having my anonymity being compromised so I went online and began to research everything that I would need to ensure my own safety.
After countless days of scouring blogs, forums and other material I decided I was ready now I didn't have any money so I couldn't just buy a VPS and host the site off shore or whatever, so I decided to use my old laptop after all I wasn't planning on running a major website.
So after setting the server up and what I thought was literally every single thing I could to do harden it against attack I put the site online, everything went great for a couple of months, donations rolled in as the the user base grew larger and larger.
After around 5 months the user base had gotten so big I had to upgrade and migrate everything to a new PC which I built just to host the forum and from there everything seemed perfect, the site was running smoothly and there were no issues with the migration until one day when I came home and noticed the PC had frozen I didn't think much to it maybe just a software bug caused it so I rebooted and that's when it was clear to me something was wrong the PC lit up and beeped a few times then shut off so I thought to myself ok so it's a hardware issue, after a few hours trying to diagnose the issue I figured it out and it turned out the ram had been corrupted I took it back to the store since it was still under warranty, the customer rep just told me it might have just been a faulty stick.
When I got home I replaced the stick of ram and had the site back up and running within a few hours, everything seemed to be perfect again I apologized to the users for the down time and everyone seemed to be happy enough.
Fast forward a few more months, the forums been up and running for a around a year and a half now this is when things started to get really weird. I finished work on a Friday, it was a gorgeous day in the middle of summer I came home had something to eat and sat down in front my PC and noticed I had a message, upon opening the message I realised that somewhere I'd messed up now don't get me wrong I'm not like Assange or anything so I don't really know why anybody would actually target me but the world is a crazy place so whatever.
The message had my details from my name, address, bank details, passwords, private emails, private messages everything from nearly every single device I owned I freaked out and immediately took the PC offline, turned my internet off but little did I know that this guy had done his research after a couple of hours pacing my room I received a text message.
"I know everything about you"
The message was sent via some type of SMS service so there was no way to trace it and then my phone rang.
"Don't talk just listen, I know everything there is to know about you all I want is 2 Bitcoin or things get worse, I'll send you a text with the wallet details"
The phone call ended just as quickly as it started, I opened my laptop up and checked my Bitcoin wallet there was enough left over from the donations just to pay this guy off and hope that would be the end of it, so I entered the guys details and sent the payment, my phone rang again.
"Thank you for complying, unfortunately someone I know really likes you."
He hung up, panicking I tried calling the number back an automated message began to play "the number you have dialled has not been recognised"
A few hours pass and I began to think to myself well maybe the last call was just him having fun and decided after a long day I'd just go to bed.
Sometime around 2am I was woken up by the sound of banging at my front door, I jumped out of bed and turned on all the lights grabbing a knife from the kitchen I walked slowly towards the window and looked out I could see someone standing by a car when they spotted me they got in and drove off I rushed to the door in hopes I might be able to get a license plate but by the time I'd opened it they'd already turned the corner as I turned I noticed an envelope on the floor I picked it up, went back inside and locked the door, closed the curtains and sat in the kitchen I placed the envelope on the counter and stared at it for around half an hour trying to muster up the courage to open it, did these guys really come to my home I thought to myself.
After the half hour was up I decided enough was enough I opened the envelope and pictures fell out onto the counter they were of me sleeping, these guys had not only been outside my house they'd been inside whilst I was sleeping the images had been edited and strange love hearts had been added next to me so now I was sufficiently freaked out, I didn't go back to sleep and when the sun broke the darkness I decided to head to the police station and tell them everything I hadn't broken any laws so I hoped they would just help me at least after hours of explaining everything to them they told me there was nothing they could do.
At this point I had never felt so alone in the world, I was scared of what this guy was planning for me, I didn't have the foggiest idea what I was supposed to do or expect so I decided to wipe everything my laptop, PC and phone I picked up everything I needed stuffed it all into a bag and decided to leave I had a couple of friends that I knew I could rely on so I called up my old buddy Marcus and we met had a few beers and I explained everything to him, he offered me a place to stay and I hoped that would be the end of it how wrong I was.
A few days later it happened again there was a knock at the door first thing in the morning, me and Marcus both went out to find another envelope on the floor, same thing pictures of me sleeping but these were in Marcus's house I started freaking out again and Marcus just said
"Ok well we need to do something maybe set a trap or something"
So we went over numerous ideas everything you could think of from cameras to baiting him and we settled on the idea of staying up during the night and locking him in the room, we filled the bed up with pillows, setup cameras and even barred the windows in the room we hid in the room next door after a few hours had passed we heard the lock rattling on the front door and we knew it was game time, we'd left the door just slightly ajar so we could see outside as he went past and the moment he went into the room we both sprung to action quickly as we could we closed the door and locked it from outside using a chair and a metal bar there was only one way he was getting out and he'd have to destroy the door we could see the silhouette of him as he paced the room quietly it was creepy as fuck, we called the police as we kept an eye on him.
At last I thought I can finish this and move on with my life just as the police arrived we noticed the guy take a gun out and place it to his head, he held a sign up which read "I love you" and he pulled the trigger, the police barged in guns drawn told us both to get the floor, we complied and shouted "he's in there" pointing at the door.
The police removed the makeshift lock and entered the room, called for an ambulance and put me and Marcus in the back of a police car.
I'd been sat in the interview room for a good couple of hours I guess whilst they carried out the investigation when a detective came in and say down in front of me opening a folder and placing pictures on the table "Do you know her" "Her?" I said looking at the pictures "no" I replied confused , he looked at me and said "this is the person who's been stalking you" and he then began to tell me they had visited her home and found a shrine with photos of me all over the place from restaurants to the gym even shopping.
He went onto tell me that she'd been the one that sent the messages, made the phone calls etc and they'd also found a diary which had some kind of future plans for me and her, she wanted me to be her husband and we'd been chatting for around a year and half from the moment I started the forum after I explained everything the detective said I was lucky to be alive, she had actually planned to drug me and kidnap me, she had even made some makeshift lock bed so I wouldn't be able to escape.
To this day I feel lucky and I haven't been on the darkweb since...
submitted by 40131013 to scaryshortstories [link] [comments]

Help: I think I just had BSV stolen from me while using ElectrumSV

EDIT: NOTHING WAS STOLEN! ElectrumSV and BSV in general are perfectly fine (and have a great community). The problem is my understanding of replay protection.
The problem occurred because I had restored an old Electrum Bitcoin wallet to Electron Cash a day or two ago to transfer the funds to Coinbase to consolidate them. They were confirmed in the account, so I figured the wallet now had nothing to do with BCH any longer. Then last night, I restored the same seed to ElectrumSV and transferred some of these BSV funds to a wallet at another exchange as well as a separate local wallet.
I won't pretend that I completely understand it yet, but somehow replay protection between the two blockchains messed up the BSV transfers. The part that I still don't understand is how a confirmed BCH transaction from a day before could affect transactions on the BSV blockchain a day later. I'd love an explanation of how that works, but I'm going to be doing some heavy research on it tomorrow.
Thanks to everyone who replied and helped troubleshoot in this thread, but especially u/Deminero30 for taking almost three hours to work with me to sort this out.
Yesterday I decided to move my BSV out of an old wallet I had, so I downloaded the Windows version of the ElectrumSV wallet from https://electrumsv.io/ and imported a pre-split BCH wallet into it.
When I went to send a test amount to another address, I got an error from the client that
"Your transaction was not sent: it conflicts with one already in the server's mempool".
The error apparently relayed from the server was
"'the transaction was rejected by network rules\n\n258: txn-mempool-conflict..."
I tried sending the same transaction again, but got the same error. The transaction didn't show up in ElectrumSV, and didn't show up in a search on two block explorers.
At the time I figured it was a problem with my PC, network congestion, or too low of a fee, so I worked on it for a while and then tried again later. I upped the sats/byte to 2, and then created a new transaction spending from a different wallet. This one went through, so I figured nothing was wrong.
Then I sent a few more test transactions, a couple of which went through. Then there were two larger ones that got the same error as before. I wasn't too worried becuase I thought they would just clear from the mempool at some point.
But then I saw that the transaction from last night showed up in my wallet and on the block explorer, but it was sent to an address I'd never seen before! This is when I got more worried about what was going on.
I looked up the transaction on Blockchair, and I saw that the transaction ID showed up not just on the BSV chain, but also on the Bitcoin Cash chain with different addresses but the same amounts! This is extra strange because I had extracted all of the BCH from the wallet a while back.
Since then I saw one more of these transactions that had errored out initially get confirmed with a different address that isn't mine. The transaction ID is the same between the two chains as well. Also, I had upped the fee to 2 sats/byte, but this transaction had just 1 sat/byte. So it definitely wasn't the one I initially broadcast.
At this point I'm convinced that either ElectrumSV or one of the servers is hacked somehow. I don't understand any other way this could have happened.
I looked at https://ccoin.cash as suggested by u/deminero30 in another thread to try to double-spend the ones that aren't gone yet, but I haven't been able to figure it out yet (and no, I haven't and wouldn't upload a private key to a website; I'd do it offline).
I would really appreciate it if someone could tell me what's going on here. I really hope that I'm just making some stupid mistake, but I realize that the BSV that are gone aren't likely to come back. I also have at least one transaction that errored and hasn't been confirmed yet, so I'd love to know if there's any way to cancel what's out there in the mempool.
The first transaction is this one: [removed]
Thank you
submitted by svandgone to bitcoincashSV [link] [comments]

How Ransomware Encryption Happens & 4 Methods for Recovery

We know how overwhelming it can feel to be the victim of a ransomware attack and how your business cannot operate due encrypted or locked files. This page delivers insight on why your files were encrypted or locked, and the options you have to decrypt ransomware. As a ransomware recovery service provider, we have helped thousands of clients successfully recover their data and decrypt their data.
Evaluating all options will include analyzing the encrypted files, and the least desirable option to pay the ransom demand if necessary. Our process helps provide critical insight into decrypting ransomware and the available options that clients have.
By the end of this piece, it is our goal to show you what is involved to successfully recover your files. This guide outlines what steps and research are necessary to decrypt or unlock your files from a ransomware attack.

You’re the victim of a ransomware attack

You arrive to work and start noticing suspicious alerts coming from your servers, and none of the databases are functional. Your co-workers are frantic and cannot access any of their data. You investigate further and find all of the files on your network are renamed and discover ransom notes, and a screen asking you to email someone if you want your data back. You finally realize that you are a victim of a ransomware attack, and all of your files are locked or encrypted.

3 Common Ways Your Files Were Encrypted or Locked

Ransomware succeeds when businesses have poor security hygiene. Organizations that lack policies & procedures around data security will have a higher risk of ransomware attacks. Here are some of the most common ways to fall victim to a ransomware attack:

Open Remote Desktop Protocol Ports (RDP)

Businesses that have improperly configured network security may leave their Remote Desktop Protocol (RDP) ports open. Unknowingly, this is the equivalent of leaving the front door unlocked when you leave your home: it provides an opportunity for cyber attacks to come through with little deterrence.
Once a hacker is connected to your network, they can install ransomware and additional back doors to access your network at a later date. A large percentage of ransomware attacks still use this method of attack because so many organizations are not even aware of this security vulnerability.

Phishing Attacks

Ransomware can infiltrate your network by a malicious email campaign known as a phishing attack. Ransomware operators use massive networks of internet-connected devices (botnets) to send phishing emails to unsuspecting victims. These emails intend to trick the receiver into clicking on a malicious attachment or link, which can secretly install the ransomware virus or other malware.
Phishing emails are becoming increasingly difficult to detect as cybercriminals find clever ways to make a malicious email look legitimate. This underscores the importance of security awareness training for everyone in the organization, not just the I.T. department.

Compromised Passwords

The ransomware operators may have used previously compromised passwords from employees at your organization to gain unauthorized access to the networks. This derives from the poor security practices of reusing the same passwords for multiple accounts and authentication processes.
If your employees have been using old & weak passwords to access your business data, a cyber criminal can use a previously compromised password to initiate the attack. Remember to always to follow good password hygiene.
The variety of attack vectors highlights the importance of a digital forensics investigation that can help victims understand how the ransomware came onto your computer and what steps you can take to remediate the vulnerability.

4 Options for Ransomware Recovery

In this section, we cover the options to restore files encrypted or locked by ransomware.

1. Recover files with a backup

If your files become encrypted in a ransomware attack, check to see if you have backups to restore and recover (in order).

2. Recreate the data

Even though your files are encrypted by ransomware, you might be able to recreate the data from a variety of sources as outlined below:

3. Breaking the ransomware encryption

The harsh truth is that the majority of ransomware encryption is unbreakable. This impossibility is a tough concept for many of us to accept, given the technological advances of our society.
Does this mean you should skip looking into whether the ransomware encryption can be broken? This option should always be explored if presented by a ransomware recovery firm, although the final choice is yours to make. We will lay out a real life example at Proven Data below to outline why this was a great decision for a company that was infected with ransomware.
While it tends to be rare, there are poorly constructed ransomware encryptions that have been broken by security researchers. If you can avoid paying a ransom, you should at all costs.
There can be flaws in the malware or weaknesses in the encryption. Businesses can look at these options, especially if time is on your side. There are also free ransomware decryption resources that provide tools for previously decrypted ransomware variants. A client of ours had hired a ransomware recovery company to recover their files until we discovered at the very last moment through our analysis that the encryption was breakable. With less than 20 minutes to spare, we saved the client out of paying a $450,000 ransom.

Why can’t most ransomware encryption be broken?

Ransomware is a cryptovirus, which means it uses cryptography in combination with malware to lock your files. Modern cryptography uses sophisticated mathematical equations (algorithms) and secret keys to encrypt and decrypt data. If strong encryption is used, it can take thousands, if not millions of years to break the encryption given the strength of today’s computers.
Encryption is a security tool created with the intent of data protection. It is a defensive tool to provide security, privacy, and authentication. Sadly, ransomware attackers are using it as a weapon against innocent victims.

How do I know if the encryption can be broken?

You can start off with this free ransomware identification resource to determine the feasibility of decryption. You will need to upload the ransom note and a sample file into the ID-Ransomware website, and it will tell you if there is a free decrypter or if it is an unknown ransomware variant. Please note that the tool is not always 100% accurate. If the variant is still under analysis, you will need a malware or encryption analyst to determine whether or not there is a possibility for decryption.
Encryption is designed to be unbreakable, which is why security researchers can’t simply make a tool for ransomware decryption. These unbreakable encryptions protect our bank accounts, trade secrets, government data, and mobile communications, among other things. It would be a significant security concern if there were a master decryption tool that could break encryption algorithms.

4. Paying the ransom to decrypt ransomware files

If the encryption is too strong, the only way to obtain the decryption key for your files is to pay the ransom. Many ransomware victims don’t have time on their side because they are facing significant business disruption. Each minute that passes could be a lost client, or worse for a medical organization.
Here is a list of the most prevalent ransomware variants that are known to be “cryptographically secure,” which means that Proven Data or the security community has confirmed the encryption is unbreakable:

I don’t want to pay the hackers ransom.

Businesses and individuals have the option of choosing not to pay the ransom in a ransomware attack to regain access to their files. For personal, political, or moral reasons, there has been resentment of the ransomware economy, and victims do not have to engage in extortion. If paying the ransom is the only option, you should know what to expect before considering moving forward.

How a ransomware recovery specialist can help

If you do decide to use a ransomware recovery company and if there is one thing you get out of this article, it is this: You should always question how a ransomware recovery company is recovering your data. If you are unsure, asking the right questions will ensure a transparent experience:
A ransomware recovery specialist can analyze your current situation and determine what options are available to you at the time of the inquiry. A competent and experienced ransomware recovery company should be able to provide the following:
Understanding how your files were affected by ransomware in the first place will provide you with the insight needed to prevent another attack. Whether you choose Proven Data or another company to decrypt your ransomware files, it’s important to know what unknowns there may be out there.
Our threat intelligence that we’ve gathered from the thousands of previous cases enable you to make informed decisions in helping restore your data after a ransomware attack. If you require a company with such experience, we’re standing by to assist 24/7.
submitted by Proven_Data to u/Proven_Data [link] [comments]

How to add a Trezor wallet to Bitcoin Core as watch-only

I wanted to use Bitcoin Core to keep an eye on transactions (basically using your own full Bitcoin node to validate, instead of "trusting" Satoshilabs and their webwallet). This doesn't mean there's anything wrong with Satoshilabls' trezor web wallet - it's just a matter of being totally sovereign/independent - if you want that, then using your own Bitcoin Core full node is a must.
Spent some time investigating how to do that, so sharing here in case someone wants it. Feel free to point any ways to do it better.
How-To:
  1. Go to the usual Trezor wallet site, then open the wallet you want to import to Core (don't forget passphrase if needed). Copy the ypub text string.
  2. Convert the ypub to xpub using something like this: https://jlopp.github.io/xpub-converte You can save the page and run it offline/airgapped in something like Tails if you don't trust it. There is no security risk (not a private key) but only privacy risk (with your public keys the site can see all transactions/balances of that wallet)
  3. Put the xpub in a Core RPC importmulti command with this formatting:
    importmulti '[{"range": [0, 1000], "timestamp": "now", "keypool": true, "watchonly": true, "desc": "wpkh([000000f1/84h/0h/0h]your_xpub_goes_here/0/)#7x87wdy3", "internal": false}, {"range": [0, 1000], "timestamp": "now", "keypool": true, "watchonly": true, "desc": "wpkh([000000f1/84h/0h/0h]your_xpub_goes_here/1/)#0jzlnc5f", "internal": true}]'
Then open Bitcoin Core and do these other steps...
  1. In File>Create Wallet, create a wallet with "No Encryption" & "Watch Only" - call it anything you like (TrezorA for example).
  2. Open Window>Console, select the wallet you just created (on the pull-down menu at the top) and then paste the importmulti command where you put your xpub.
  3. Core will complain that the checksum is wrong (the "7x87wdy3" and "wdxy2s2t" parts in my example) replace them with the right ones shown in the message and retry.
  4. You should see the wallet imported with success, but with no transaction history. It is necessary to rescan the chain to index the transactions that wallet made. To save time, you can use the blockheight of the first block where you made a transaction with that trezor, for example: "rescanblockchain 590500".
You can find out the block by putting the hash of your first transfer in a block explorer like https://live.blockcypher.com/, look for "blockheight" If you have no idea which block has your first transaction, you can just rescan the whole chain by typing "rescanblockchain 0" in the console (but Core will take way longer to do it).
That's about it, all transactions made from what wallet should then appear in Core and it will warn every time funds are received or spent. You can be running your own full node and constantly monitoring your wallet, without having to use the Trezor or load Satoshilab's site.
You cannot spend from that wallet in Core, but you can use it to generate receive addresses and send to it (keep in mind that if you generate bech32 addresses in Core, those transfers will not appear at Trezor wallet since it doesn't support it yet :| )
Edit: Forgot change addresses, fixed importmulti example.
submitted by beowulfpt to TREZOR [link] [comments]

Bitcoin Armory Troubleshooting Offline Node - YouTube How To Make A Bitcoin Wallet Offline - Cold Storage Safe ... How to get a bitcoin wallet  What is the best bitcoin wallet?  Bitcoin wallet review HOW TO START WITH BITCOIN (OPEN YOUR ELECTRUM WALLET) - WINDOWS MAC LINUX ANDROID Top 5 Best #Cryptocurrency Wallets - YouTube

This lightweight desktop bitcoin wallet supports multiple operating systems such as Windows, Mac, etc. It is integrated with premium hardware wallets such as TREZOR, KeepKey and Ledger Nano S. As a service provider, Electrum charges transaction fees, and the default fee is a flat rate of 0.2 mBTC. It is not ideal for beginners and only supports bitcoin. Download Electrum wallet. 2. Exodus ... Setting up an offline wallet from scratch. There used to be no other way to setup an offline wallet than to do it from scratch. Today there are solutions such as BitKey that can help simplify the process. If you're still interested in doing things the hard way, the rest of this guide will instruct you on how to create an offline wallet by hand. Die Entwickler dieser Wallet veröffentlichen den Quellcode für den Client. Das bedeutet, dass jeder Entwickler auf der Welt den Code begutachten kann. Dennoch müssen Sie immer noch den Entwicklern vertrauen, wenn Sie die finale Software installieren oder aktualisieren, da sie nicht deterministisch gebaut wurde, so wie etwa Bitcoin Core. The best offline Bitcoin Wallets. Unocoin . Follow. Jan 16, 2018 · 5 min read. The best offline bitcoin wallets. The use of bitcoin as a medium of currency exchange, as a store of value, and for purchase is rapidly growing by the day. We may use it for many different purposes, however, the fact remains that we are dealing with virtual money and so the risks may be greater. We’ve heard of ... Einer der zentralen Grundsätze von Krypto ist die Anonymität. Das Letzte, was Sie also wollen, ist, dass Ihr Bitcoin Wallet das ist, was Ihre Privatsphäre aufgibt. Glücklicherweise haben Sie ein paar wirklich anonyme Bitcoin Wallets zur Auswahl. Lesen Sie weiter und entdecken Sie unsere fünf Top-Auswahlen. Unstoppable Unstoppable ist eine dezentralisierte Krypto Wallet App, die […]

[index] [11197] [339] [32416] [31286] [15478] [24947] [14203] [18258] [29082] [35425]

Bitcoin Armory Troubleshooting Offline Node - YouTube

bitcoin wallet best, bitcoin wallet hack, bitcoin wallet hardware, bitcoin wallet linux, bitcoin wallet windows, bitcoin wallet api, bitcoin wallet balance, the best bitcoin wallet, desktop ... How to make an offline bitcoin wallet using Armory - Duration: 14:55. TheMetaTainment 38,384 views. 14:55 . How to Restore a Bitcoin Wallet from a Seed (Electrum) - Duration: 11:17. Rex Kneisley ... Bitcoin is a new money that is dramatically increasing it's value every day. To start using bitcoins you have to open your wallet. This video will show you how with the help of electrum, a free ... Watch me walk you through getting your Armory and Bitcoin Core working in sync again. Armory Ver 96.2: https://btcarmory.com/0.96.2-release/ Bitcoin Core V 1... If you store your Bitcoin at an online wallet like Coinbase or a trading exchange, THEY ARE NOT SAFE! Plain and simple! You need to create an OFFLINE wallet ...

#