Ledger & TREZOR Official Response

From Ledger, "At the 35th Computer Chaos Congress in Leipzig, Dmitry Nedospasov, Thomas Roth and Josh Datko gave a presentation called wallet.fail, where they tried to demonstrate that Hardware Wallets were vulnerable to several types of attacks. Concerning Ledger, they presented 3 attack paths which could give the impression that critical vulnerabilities were uncovered on Ledger devices. This is not the case."


TREZOR's manufacturer SatoshiLabs responded to the vulnerabilities on Twitter, saying "With regards to #35c3 findings about @Trezor: we were not informed via our Reponsible Disclosure program beforehands, so we learned about them from the stage. We need to take some time to fix these and we'll be addressing them via a firmware update at the end of January."

SatoshiLabs also responded in their subreddit with slightly more detail, "Per my latest information (I am not present at the conference), we were not informed about this vulnerability via our Responsible Disclosure process, and therefore we are working with the information as it arrives. We will address this vulnerability as soon as possible, though we will need some time. Until then, you can mitigate it by using a passphrase (make sure to learn how it works first, as in case of passphrase-loss your funds are irrecoverable), or by making sure you do not lose physical access to your device. To exploit the vulnerability, the attacker needs to have physical access to your device — directly to its board."

Of interest, neither manufacturer was notified of these vulnerabilities prior to it's disclosure on stage at CCC through their responsible disclosure programs so have been caught unaware. SatoshiLabs and Ledger will both be patching their devices by the end of January.

submitted by /u/FortuitousIdiom
[link] [comments]
Bitcoin – The Currency of the Internet

satoshi labs (maker of trezor wallet) controls 5% of the lightning network capacity. Hail to the king!

Get a trezor and control your keys, so you will be ready when lightning use is widespread and bitcoin's value has gone up by another order of magnitude.


Satoshi labs is killing it. Control of private keys is the backbone of bitcon's value proposition, and they and other hardware wallet manufacturer's make it easy. But trezor was first and best, so hail to the king!

submitted by /u/standardcrypto
[link] [comments]
Bitcoin – The Currency of the Internet

Trezor to Implement Bitcoin Cash Addresses (news.bitcoin.com)

After seeming to be outright hostile to incorporating Cashaddr, a way to distinguish easily between bitcoin core and bitcoin cash addresses, popular hardware cold storage wallet company Trezor confirmed its integration is on the way.
Also read: Crypto History Part 1: 400 Million Billion Billion, Beer, and a Murderous Plot
Cold Storage Wallet Maker Trezor to Integrate…


We are proud to be the first TREZOR reseller and the third ecommerce in the world selling thru LN ⚡

Today we started to sell Ledger and TREZOR via LN payments ⚡

Everybody in Brazil can now buy and pay your TREZOR via LN. Just open a channel with me (0253271f3a0cf1876dfaa381728ce1514d2254b0012725567db9429309d50b03da@ or anybody on LN and buy on our website https://www.hardwarewallet.com.br

The future is here!

Edit: if anything goes wrong with the payment, we ship the product anyway! Go lightning 💪

Edit2: it seams that we are the fourth ecommerce. But it rocks anyways!

Edit3: many people think our business is a scam. You can verify on Trezor's site that we are an official reseller https://trezor.io/resellers/

submitted by /u/JackTheSpot
[link] [comments]
Bitcoin – The Currency of the Internet