Hacker News new | ask | show | jobs
by fadys 1911 days ago
I want to make it clear that the Ledger passphrase, on paper, and hidden, was not ever accessed. And, even if it was, which it wasn't, his Trust Wallet on his iPhone was also compromised.

How can someone guess both passphrases, from separate wallets, in separate locations with different words? It's literally impossible.

Whatever technology is used to generate the passphrases in each of those wallets must be compromised.

Nothing else can explain it.

1 comments

Was his ledger manipulated or compromised in some way before using it? Was the seed already pregenerated? Was the paper actually compromised, or some other system got the data?

There are plenty of other ways.

You keep saying it is impossible the paper was accessed, but that doesn’t mean it wasn’t- or the information got compromised another way.

Did he print it out from a common machine?

>Was his ledger manipulated or compromised in some way before using it? Was the seed already pregenerated?

The timing of that (ie. two separate wallets compromised at about the same time) makes that unlikely. What are the chances that the guy who shipped him a compromised ledger is also the same guy who hacked his iphone?

He wrote the words on paper, away from any other devices, years ago.

The Ledger came from Ledger (the company) sealed in its packaging.

Since no one else seems to be seeing this issue - maybe your facts are not as airtight as you think?