Hacker News new | ask | show | jobs
by _fzslm 1907 days ago
to everyone saying it's someone the nephew knew that stole the crypto, it can't be, right? because OP confirmed the thief's address had transactions from other addresses, so this seems like a remote adversary.

i'm very sorry to hear he lost $40k, especially because he was saving it for college... i can't even imagine that much money being a student so i just hope you guys can find some way to work this out... i guess.

that said, i don't think Ledger's security is to blame here... it is infinitely more likely that your nephew's computer was infected with something. for example, if he kept his trust wallet passphrase as a screenshot, perhaps that screenshot synched via iCloud to his PC, from which point the attacker was able to pick it up? or they were able to retrieve his iCloud session cookie?

there are a million times more entry vectors if you consider the PC (or, hell, Mac, or whatever it is) as the infected device. i'd wipe the shit out of it and start fresh, if your nephew intends to do anything else with crypto in the future.

1 comments

Your first point is spot-on.

But about the rest...the Ledger's wallet's seed words were on paper, never seen by a computer after it was generated.

His Trust Wallet, however, did have his seed words on his phone. But again, it has a 6-digit passcode.

yeah, the Ledger situation is still a mystery to me, and i can’t profess to know all that much about the security of the device.

i mean, humans make mistakes, and i suppose there is the chance that he slipped up at some point and typed it into his (probably) compromised computer at some point. but if i were take your word on it that that never happened... i really don’t know.

on the trust wallet - it doesn’t matter if he had a passcode. if his computer was compromised, and he signed into iCloud on it at -any- point, an attacker could do whatever they wanted with it.

Is the seed phrase on his trust wallet the same seed phrase as his ledger?
AFAIK the seed phrase is randomly generated when you initialize the wallet.
No. (I know).