TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

French police free kidnapped Ledger executive

176 点作者 ilamont4 个月前

16 条评论

walterbell4 个月前
Over 10 years, ~100 physical attacks targeting crypto assets, <a href="https:&#x2F;&#x2F;github.com&#x2F;jlopp&#x2F;physical-bitcoin-attacks">https:&#x2F;&#x2F;github.com&#x2F;jlopp&#x2F;physical-bitcoin-attacks</a><p>Physical security primer for Bitcoin (2019), <a href="https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=HUgPhPkS2yc" rel="nofollow">https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=HUgPhPkS2yc</a>
评论 #42822166 未加载
function_seven4 个月前
So the article says, “[authorities] have also not confirmed whether any payment was made” and also says they’re looking for the kidnappers.<p>I’m gonna go out on a limb and say that ransom was paid and that’s how they were able to locate the Ballands.
评论 #42819935 未加载
评论 #42819505 未加载
chatmasta4 个月前
How does the government of France decide whether your kidnapping is worth sending military tactical teams to rescue you?
评论 #42819785 未加载
评论 #42819678 未加载
评论 #42819389 未加载
评论 #42820356 未加载
评论 #42819677 未加载
评论 #42822594 未加载
评论 #42819447 未加载
评论 #42819783 未加载
whatsupdog4 个月前
I have a significant amount of crypto and use a ledger wallet. Recently I noticed that the ledger app on my phone requires precise location access to function. It just hit me that ledger has precise locations and wallet balances of all its customers.<p>It&#x27;s just a matter of time when this information falls in the hands of organized crime. I have since then moved to another wallet and am thinking of selling my house and moving. I have taken steps to ensure that none of the apps that have my crypto balance do not access my location (graphene os with location disabled and always on VPN etc.)<p>This news bothers me. Maybe the criminals asked for data access as well?
评论 #42819345 未加载
评论 #42819352 未加载
评论 #42819361 未加载
评论 #42819374 未加载
__MatrixMan__4 个月前
Crypto will not be ready for mainstream until effective game-theoretic countermeasures for this kind of thing are built into the protocols.
评论 #42819261 未加载
评论 #42819633 未加载
评论 #42819502 未加载
评论 #42819729 未加载
评论 #42821539 未加载
评论 #42819560 未加载
评论 #42819542 未加载
评论 #42819599 未加载
评论 #42819256 未加载
评论 #42819899 未加载
petesergeant4 个月前
I think I’m surprised this doesn’t happen more often. Maybe I underestimate how good the police are at prevention of this crime.
评论 #42819485 未加载
评论 #42819522 未加载
评论 #42819613 未加载
sixthDot4 个月前
The french gov position on cryptos is more like &quot;we warn you that we cannot do anything so dont come crying&quot;.
Uptrenda4 个月前
I&#x27;ve been thinking for a while that the current security methodology for wallets is not great. YES, that statement is extremely obvious on the face of it. But, I mean, think of some of the basic measures people take. This hardware wallet crap, okay great, your keys are kept somewhere safe and there&#x27;s offline signing, but so what? Boop the users head until they give up the wallet. H4xt funds. We should be able to designed a robust threat model for cryptoassets using smart contracts that resists many kinds of attacks (including kidnapping.) This is hacker news so I guess people will want details on how this might work.<p>I would probably start with how people use their money. If people have t funds, they usually aren&#x27;t going to move it each day. So start with a fixed, daily spend limit. That&#x27;s simple, to start with. Then past the spend limit, you might have extremely large, outlier transactions. This is an interesting phase because with actual non-shit-tier security you could have a secondary layer of confirmation. This could be based on different panic codes. Some could indicate that the transfer is being made under coercion and to notify law enforcement, some could indicate to accept the transfer and notify, and so on. You could outsource this to a third-party. Do you see what I mean? All this shit is easy to do with cryptography and actual good design. But no ones done it. I thought of this in the time it took to write this shitty post.<p>Provable deniability schemes can be done to make it look like a wallet only contains a certain amount, too, using various private transaction schemes. This is nothing new. These attacks of being forced to do reveal keys and so on are things cryptographers have thought of for a long time. It&#x27;s why you had Truecrypt have the fake volume. There is other stuff you can add to the security scheme. Giving different persons a key and making them sign their portion. Co-signing by third-parties (already a thing -- the scheme I like best is keys.casa). Many different ideas to allow for funds to seem like they&#x27;ve been &quot;sent&quot; then allow for revocation later on. You could have all different enhancements to high value, anomalous transfers like forcing the incumbent of transfers to take longer and have a clearing phase and so on. I&#x27;m sure there are plenty of ways to improve it even further. Just some ideas for how to stop attacks like this.<p>Whenever I see headlines about hacked exchanges, hacked wallets, lots keys, broken transfers, etc... I just think that we&#x27;re still at the stage where there&#x27;s a fractal of shit and we have to do better. Make everything work flawlessly and without even thinking about it.
评论 #42819493 未加载
评论 #42819436 未加载
评论 #42820012 未加载
评论 #42819997 未加载
m3kw94 个月前
To be fair it could happen to any rich person, it’s just crypto makes the transfer quick&#x2F;easy and hard to trace if you know how to do it
评论 #42819412 未加载
评论 #42821236 未加载
gunian4 个月前
this reminded me of that one Drake song about sending fingers in FedEx boxes
alexwasserman4 个月前
I remember a while back seeing a story from SE Asia about cops finding a guy walking along the road clutching a bleeding hand. Turned out thieves had robbed him off his car, which had a fingerprint reader so they&#x27;d taken a finger with the car.<p>Found the article: <a href="https:&#x2F;&#x2F;www.theregister.com&#x2F;2005&#x2F;04&#x2F;04&#x2F;fingerprint_merc_chop&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.theregister.com&#x2F;2005&#x2F;04&#x2F;04&#x2F;fingerprint_merc_chop...</a>
评论 #42820054 未加载
felipelalli4 个月前
This ruined my damn day.
ripped_britches4 个月前
This is insane. So much disgust washed over me when I read about the finger. I can’t believe people are so evil.<p>I don’t have any crypto but I’m worried about those who have it at scale.
评论 #42819941 未加载
Scoundreller4 个月前
&gt; Under his leadership, the company has sold more than seven million hardware wallets worldwide, maintaining a perfect security record with no successful breaches of their devices.<p>yeah uhhhhhh, what about all of their newsletter subs and device sales shipping data though?<p>I wonder if he got one of the threatening ransom letters in the mail and didn&#x27;t pay because they said it was a scam?<p><a href="https:&#x2F;&#x2F;www.bitdefender.com&#x2F;en-au&#x2F;blog&#x2F;hotforsecurity&#x2F;hacker-publishes-stolen-email-and-mailing-addresses-of-270000-ledger-cryptocurrency-wallet-users" rel="nofollow">https:&#x2F;&#x2F;www.bitdefender.com&#x2F;en-au&#x2F;blog&#x2F;hotforsecurity&#x2F;hacker...</a><p><a href="https:&#x2F;&#x2F;old.reddit.com&#x2F;r&#x2F;ledgerwalletleak&#x2F;" rel="nofollow">https:&#x2F;&#x2F;old.reddit.com&#x2F;r&#x2F;ledgerwalletleak&#x2F;</a>
评论 #42819248 未加载
评论 #42819752 未加载
portaouflop4 个月前
From the headline here on HN i thought they severed his finger to get around MFA or use it to unlock some crypto store - turns out they just cut it off to show they mean business and they actually kidnapped him
评论 #42819610 未加载
bluecheese4524 个月前
Jfc can we not allow headlines like this? Fucking disgusting.
评论 #42819373 未加载
评论 #42819325 未加载
评论 #42819625 未加载
评论 #42819421 未加载