Hacker News new | ask | show | jobs
by throwaway248329 1661 days ago
The amount of trust will be limited to trusting that the bank is showing your balance correctly and that nobody stole their SSL keys.
1 comments

Or, more likely than stealing their SSL keys, found a “vulnerability” that caused whatever string the smart contract is looking for to appear in a signed request from the server. I put vulnerability in quotes because it's not clear to me that that is not something banks would consider part of their threat model.

It's kind of like how SMS messages worked fine until “if I can read an SMS sent to your number I can withdraw from your account” became part of the threat model.