Cryptocurrency Dark Forest Survival Tactics: Wallet Security Strategies and Risk Tier Management
Source: https://mirror.xyz/darkforest.eth/jpYj0mOk-2RA8tLeYYjVYpKW2djN4lUznBBsIlnhao0 In the realm of cryptocurrency’s dark forest, a vigilant stance on asset security is indispensable. This article will delve into my strategies for managing wallet private key security and implementing tiered management for various assets. Relevance of Hardware Devices ● Apple MacBook Pro + Trezor or Other Hardware Wallets Whenever possible, refrain from using Windows-based computers. While Apple systems are not immune to computer virus attacks, their frequency and likelihood are significantly lower. Hierarchical Risk Management for Cold and Hot Wallets 1. Outermost Layer for Airdrops (Google Account 1 or Computer 1) Functioning as the least secure level of hot wallets, these are designated for interaction with various potential airdrop projects. As these wallets require installation of diverse Chrome wallet plugins for purposes such as learning, translation, AI, and more, the security of some plugins cannot be guaranteed. To mitigate this risk, I’ve created a less frequently used Google account to install these plugins. Furthermore, if you have entertainment or gaming requirements, it’s best to use a separate computer to avoid mixing gaming and wallet interactions on the same device. 2. Outermost Layer for Interaction (Google Account 2 or Computer 2) Unlike the outer layer for airdrops, this layer involves several hot wallets for legitimate DeFi trading. Personally, I use the MetaMask Chrome browser plugin. Under this Google account, apart from MetaMask, I only use the essential 1Password password management plugin. Assets in this tier constitute <5% of the portfolio and are utilized for various DeFi operations, signature approval, NFT trading, etc. Allocate funds you can afford to lose to these outer layer hot wallets. Generally, these hot wallets are also ranked by risk level. You can have “risk-tolerant” wallets for basic projects, wallets for premium airdrops, and wallets exclusively for interacting with major blue-chip DeFi platforms like Curve, Convex, Uniswap, Liquity, Lido, etc. Regardless of the project, caution is advised against phishing websites. I’ve previously encountered a phishing website resembling RocketPool. It appeared identical but would prompt you to sign a transaction upon connecting your wallet, transferring all your ETH. Therefore, it’s imperative to carefully review transaction details, including amounts and target addresses, before signing any transactions. 3. Outer Layer for Cold Wallets A cold wallet, also known as an offline wallet, keeps your private keys isolated from the internet. Feasible options include paper wallets, brain wallets, steel plate mnemonic phrases, or old smartphones. A secure and convenient method I recommend is combining a hardware wallet with a paper wallet or steel plate mnemonic phrase. A paradox exists in offline storage of private keys or mnemonic phrases: while dispersing storage across multiple locations reduces the risk of loss, it makes them more susceptible to being breached at a single point and more prone to leakage. To address this dilemma, cryptographers have devised a private key fragment backup scheme based on cryptography — Shamir’s Backup. This scheme allows you to divide your original private key into multiple fragments and use only a subset to recover the private key. This concept is also utilized in the cryptography of recent Distributed Validation Technology (DVT), albeit with validator keys for Ethereum staking. As far as I’m aware, the only hardware wallet currently supporting Shamir’s Backup is Trezor Model T. Even though the security of hardware wallets is robust, the funds in this layer should also remain below 5%. After all, in the event of a personal security threat, it’s essential to prioritize personal safety (most hardware wallets also provide solutions for such situations). Therefore, it’s recommended not to flaunt hardware wallets or wealth. 4. Middle Layer for Cold Wallets The outer cold wallet layer doesn’t house your core assets; it merely serves as a decoy. Ensuring the safety of assets in this layer implies the security of your private key. Even if compromised, the loss is minimal, and there’s time to transfer assets from this middle layer. So, what distinguishes this middle layer from the outer cold wallet layer? It’s the use of a hidden wallet employing passphrase technology. Passphrases are not exclusive to Trezor; they can also be used with Ledger. The method involves adding a word or any string (even a space) to the existing 24-word (or 12-word) mnemonic phrase. The passphrase can be up to 50 characters long. This prompts the hardware wallet to derive a new address from the existing private key. Since this passphrase isn’t stored on any physical medium, its only repository is your mind or the mind of a family member. Whether dealing with hackers or real-life thieves, this remains an enduring secret shared between you and your family. Assets in this layer constitute approximately 50% of the portfolio. Asset Type: LSD assets, native Ethereum through SAAS-style POS staking. Operational Strategy: No DEFI interaction, approval; only transfers between this wallet and the outer cold wallet address (for transferring LSD assets). The only operations conducted on this wallet are signatures during the Ethereum staking process and interactions with the Ethereum POS deposit contract. Additionally, the withdrawal address for Ethereum staking is the same as this wallet’s address. This strategy ensures that hackers have to overcome multiple obstacles to access your assets: obtaining a majority of your private key fragments, knowledge of your asset details, extracting the passphrase from you, understanding your Ethereum POS staking, signing the un-staking sequence, and patiently waiting for the 4 to 5 days needed for unstaking. Only after these five steps can they potentially gain access to your assets. 4. Core Layer for Cold Wallets Constructing the core cold wallet layer follows the same principles as the middle layer. However, the middle layer’s vulnerability lies in the potentially inadequate strength of the passphrase. If a hacker gains direct access to your private key, cracking a passphrase of a relatively low length would take a very short time. Hence, the necessity of establishing a deeper-layer, higher-security cold wallet. I could further extend passphrase1 from the middle layer of the cold wallet, perhaps opting for a sequence stored in my family’s minds rather than a single word. Assets in this layer constitute approximately 40% of the portfolio. Asset Type: Native BTC and ETH. Operational Strategy: Restricted to transfers between wallets. In the End The path of simplicity is profound. As they say, the simplest approach is often the most secure one. The fewer actions you undertake, the fewer intricacies you engage with, the more secure your wallet becomes. However, you must strike a balance and not become overly rigid, rejecting new concepts and experiences. What you can do is akin to what this article describes: risk stratification, asset isolation. Occasional theft of an asset isn’t the primary concern; the true fear lies in losing everything in one fell swoop. In a way, this approach resembles a gamble where you’re all in every time. Prolonged gambling leads to losses; a slight deviation could determine who ultimately claims the profits you’ve accumulated. Follow us Wu Blockchain is free today. But if you enjoyed this post, you can tell Wu Blockchain that their writing is valuable by pledging a future subscription. You won't be charged unless they enable payments. |
Older messages
Wang Yang: Issue a Government-Supported Hong Kong Dollar Stablecoin to Challenge the U.S. Dollar Status
Wednesday, August 23, 2023
Authors: Wang Yang, Wen Yizhou Compile:WuBlockchain Original Link: Ta Kung Pao http://www.takungpao.com/opinion/233119/2023/0822/884381.html In our previous article titled “Proposing Hong Kong to Issue
Asia's weekly TOP10 crypto news (Aug 14 to Aug 20)
Sunday, August 20, 2023
Author:Crescent Editor:Colin Wu 1. Singapore's Weekly Summary 1.1 Singapore Police Arrest Over 10 Individuals and Seek 8 Others Allegedly Involved in Scam, Gambling, and Money Laundering Activities
What is 'Friend Tech'? The Impact of Paradigm's Endorsement & the Rise of Decentralized Social Networks
Sunday, August 20, 2023
On August 10th, Base on-chain social application friend tech caused a sensation in community, with users clamoring for invitation codes to join. Tens of thousands of users poured into this new L2
Weekly Project Updates: Sei Airdrop Unveiled, Opensea to Discontinue Mandatory Royalties, friend tech Previously R…
Saturday, August 19, 2023
On August 15th, Sei launched an open airdrop query webpage, allowing users to check their eligibility for the airdrop through the official website. Whitelisted users must bridge their eligible assets
WuBlockchain Weekly: SpaceX's Previous Sale of BTC, First Ethereum Futures ETF in the US, Singapore's Regulatory F…
Friday, August 18, 2023
On August 18th, according to The Wall Street Journal, SpaceX recorded holdings of $373 million worth of Bitcoin on its balance sheets in 2021 and 2022, which were subsequently sold. Additionally,
You Might Also Like
US Bitcoin reserve asset bill could pass in Donald Trump’s first 100 days – Senator Cynthia Lummis
Tuesday, November 12, 2024
The proposed legislation seeks to position the US as the largest government Bitcoin holder, echoing its gold reserve status. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
The Election Bull Run From the Perspective of Options Markets
Tuesday, November 12, 2024
An analysis of options to take a closer look at the election bull-run that brought BTC prices to $85000 ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
CEX Data for Oct:Spot Trading Volume Up 17%, Derivatives Trading Volume Up 25%, Website Traffic Up 2%
Tuesday, November 12, 2024
Spot trading volume on major exchanges rose by 17% month-over-month. The top three exchanges by growth rate were Coinbase (61%), Gate (36%), and Binance (24%). ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
⚡ 3 onboarding mistakes that kill engagement
Tuesday, November 12, 2024
Stop murdering engagement 🔪 ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
Solana’s price surge propels its market cap past $100 billion, outpacing Bitcoin and Ethereum gains
Monday, November 11, 2024
Solana's price rally marks historic market cap achievement and DeFi growth. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
Interview with Murad: The key is to find a memecoin with a "diamond hand culture"
Monday, November 11, 2024
In this conversation, Colin, founder of WuBlockchain, explores the unique role and future of memecoins (such as Doge, Pepe, etc.) in the crypto space with the “Memecoin King,” Murad Mahmudov. ͏ ͏ ͏ ͏ ͏
📈 BTC reached a new all-time high above US$81,000 on 11 Nov; Crypto.com unveiled its 2025 roadmap and the Level U…
Monday, November 11, 2024
BTC reached a new all-time high above US$81000 on 11 Nov; Crypto.com unveiled its 2025 roadmap and Level Up program; Crypto.com partnered with Ingenico to bring crypto payments to Ingenico merchants ͏
Donald Trump Secures Victory As Ripple CEO Demands SEC Chair Be Replaced
Monday, November 11, 2024
We bring you the top stories in crypto every week! Stories like... Monday Nov 11, 2024 Sign Up Your Weekly Update On All Things Crypto TL;DR Donald Trump Secures Victory As Ripple CEO Demands SEC Chair
$6.7B TVL surge marks Solana’s growing dominance in DeFi
Sunday, November 10, 2024
Solana processes 44.5 million daily transactions, far surpassing other L1 blockchains. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏
Asia's weekly TOP10 crypto news (Nov 4 to Nov 10)
Sunday, November 10, 2024
Rich Dad Poor Dad author Robert Kiyosaki tweeted that he purchased his first Bitcoin at $6000 and, even with the price now at $76000, he plans to continue buying. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏