Hacker News new | ask | show | jobs
by CuriousCosmic 1817 days ago
There's been some work done to work around this issue. One of the approaches is to keep an always offline "fallback" key that can be used to "lock" an account and transfer ownership to a new account in the case that a private key is leaked.

https://eprint.iacr.org/2021/872

This doesn't solve the issue entirely but it does provide a mechanism for recovering in the case of a major attack.