{"id":56729,"date":"2023-07-27T04:31:44","date_gmt":"2023-07-27T04:31:44","guid":{"rendered":"https:\/\/egrowonline.com\/?p=56729"},"modified":"2023-07-27T04:31:44","modified_gmt":"2023-07-27T04:31:44","slug":"redditors-hacked-bitcoin-is-a-lesson-on-the-hidden-dangers-of-paper-wallets","status":"publish","type":"post","link":"http:\/\/egrowonline.com\/?p=56729","title":{"rendered":"Redditor&#8217;s hacked Bitcoin is a lesson on the hidden dangers of paper wallets"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div data-v-2649fa34=\"\">\n<p>A Reddit user has become the latest example of why crypto users should be more careful when using wallet generators \u2014 after the user lost a few thousand dollars worth of Bitcoin (<a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/bitcoin-price\" rel=\"noopener\">BTC<\/a>) from their &#8220;secure&#8221; paper wallet.<\/p>\n<p>On July 24, a Redditor by the name \/jdmcnair\u00a0<a target=\"_blank\" href=\"https:\/\/www.reddit.com\/r\/Bitcoin\/comments\/157ze5i\/my_bitcoin_was_taken_how\/\" rel=\"noopener nofollow\">posted<\/a>\u00a0on the r\/Bitcoin subreddit,\u00a0asking for an explanation on how a hacker could have been able to <a target=\"_blank\" href=\"https:\/\/www.blockchain.com\/explorer\/addresses\/btc\/1A3aXSjyw1YYiyeRZDbpAZWxccT5xevjeF\" rel=\"noopener nofollow\">steal<\/a>\u00a0over $3,000 worth of Bitcoin from their supposedly secure paper wallet \u2014 which was even generated on an offline computer.<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/s3.cointelegraph.com\/uploads\/2023-07\/0d65df93-b478-4b2f-a11a-f1811b071a73.PNG\" \/><figcaption style=\"text-align: center\"><em>The Redditor&#8217;s Bitcoin wallet address shows an outgoing transaction of 0.12 BTC. Source: Blockchain.com<\/em><\/figcaption><\/figure>\n<p>\u201cI was doing self-custody, generated my key and printed it on paper on an offline computer, transferred my BTC to this offline wallet, and kept it stored in a safe that only I have the key for,\u201d the user wrote.<\/p>\n<blockquote><p>\u201cI thought I was keeping it in one of the more secure ways possible.\u201d <\/p><\/blockquote>\n<p>In an update to his initial post, the Redditor revealed that they used the wallet creation tool walletgenerator.net to create their wallet\u2019s private keys, which some users highlighted\u00a0<a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/computer-researcher-finds-wallet-vulnerability-that-gave-same-key-to-multiple-users\" rel=\"noopener\">have been infamous for vulnerabilities<\/a> in the past.\u00a0<\/p>\n<p>Speaking to Cointelegraph, blockchain security firm CertiK&#8217;s director of security operations Hugh Brooks said users should think twice before using a crypto wallet generator.\u00a0<\/p>\n<p>Such online wallet generators have served as a viable hacking tool for a while now, Brooks said:<\/p>\n<blockquote><p>\u201cSome of these wallet generators could be straight-up scams. The website that the post claims returns an IP address in Russia. When looking at a tool such as Criminal IP we can see that the address has several abuse reports filed against it.\u201d <\/p><\/blockquote>\n<p>Paper wallet generators have been known to contain serious vulnerabilities since 2019, Brooks said, adding that if anyone has generated wallets using walletgenerator.net then it&#8217;s likely \u201cthe same keys have been given to different users.\u201d<\/p>\n<p>The Profanity wallet generator exploit was a textbook example of this <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/how-security-education-and-regulation-can-mitigate-rising-crypto-scams\" rel=\"noopener\">security vulnerability<\/a> <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/160-million-stolen-from-crypto-market-maker-wintermute\" rel=\"noopener\">which led to the $160 million hack<\/a> on algorithmic market maker Wintermute in September.<\/p>\n<p>The solution is simple, according to Brooks. Users wanting safe crypto storage should use a \u201ctrusted hardware wallet provider such as Ledger and Trezor.\u201d<\/p>\n<p><strong><em>Related: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/almost-1m-in-crypto-stolen-from-vanity-address-exploit\" rel=\"noopener\"><strong><em>Almost $1M in crypto stolen from vanity address exploit<\/em><\/strong><\/a><\/p>\n<p>The Redditor was baffled as to why the exploiter waited over 12 months to exploit the funds, prompting another to offer a possible explanation.<\/p>\n<blockquote><p>\u201c[The hackers] wait for enough noobs to think they generated secure private keys, wait for them to deposit significant amounts, and then, one day, swipe all the funds, so there is no time to react to reports of the site being compromised.\u201d<\/p><\/blockquote>\n<p>With a sudden increase in <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/dormant-bitcoin-btc-wallet-moves-millions-after-11-years\" rel=\"noopener\">long-dormant Bitcoin wallets waking up<\/a> \u2014 many with funds in the millions \u2014 some pundits think it\u2019s due to wallet generators being hacked.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Unpopular crypto opinion: the fact that wallet generators can be cracked and people can lose their funds with no recourse is terrifying.   I\u2019m going to tell you what I believe to be the answer, and I know the \u201cmake everything decentralized\u201d crew will hate it<\/p>\n<p>\u2014 Jesse Hynes  (@jesse_hynes) <a target=\"_blank\" href=\"https:\/\/twitter.com\/jesse_hynes\/status\/1650826630812651522?ref_src=twsrc%5Etfw\" rel=\"noopener\">April 25, 2023<\/a><\/p><\/blockquote>\n<p>Hackers managed to snatch over <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/crypto-hacks-and-exploits-snatch-over-300m-in-q2-2023-report\" rel=\"noopener\">$300 million in Q2 2023,<\/a> according to CertiK, a 58% decline from the same period last year.<\/p>\n<p><strong><em>Magazine: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/magazine\/3-4-billion-bitcoin-popcorn-tin-silk-road-hacker\/\" rel=\"noopener\"><strong><em>$3.4B of Bitcoin in a popcorn tin \u2014 The Silk Road hacker\u2019s story<\/em><\/strong><\/a><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/cointelegraph.com\/news\/redditor-gets-lesson-after-bitcoin-paper-wallet-hacked\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A Reddit user has become the latest example of why crypto users should be more careful when using wallet generators \u2014 after the user lost a few thousand dollars worth of Bitcoin (BTC) from their &#8220;secure&#8221; paper wallet. On July 24, a Redditor by the name \/jdmcnair\u00a0posted\u00a0on the r\/Bitcoin subreddit,\u00a0asking for an explanation on how [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":56730,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[38],"tags":[50,1963,846,3547,8555,1686,16675,833],"class_list":["post-56729","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blockchain","tag-bitcoin","tag-dangers","tag-hacked","tag-hidden","tag-lesson","tag-paper","tag-redditors","tag-wallets"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"http:\/\/egrowonline.com\/wp-content\/uploads\/2023\/07\/1200_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjMtMDcvZjA2Nzc4ODktYWVmNi00NDM4LWI1ZGYtNGRjMWU4NjQ0MTQyLmpwZw.jpg","_links":{"self":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/56729","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=56729"}],"version-history":[{"count":1,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/56729\/revisions"}],"predecessor-version":[{"id":56731,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/56729\/revisions\/56731"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/media\/56730"}],"wp:attachment":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=56729"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=56729"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=56729"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}