log☇︎
193 entries in 0.67s
a111: Logged on 2015-09-22 03:01 asciilifeform: speaking of, last i checked, 'trezor' was still reflashable from the usb jack.
mircea_popescu: shouldn't you have been already aware of this ? if the "trezor" wasn't patent medicine, that is ?
mircea_popescu: ask yourself : why do you learn of say http://qntra.net/2017/08/trezor-others-affected-by-fault-injection-may-leak-keys/ from me ?
Guest45857: so i assume is considered crap. Asking this cause i've one and i was thinking to be on the safe side. Should i discard every hardware wallet or is there something significantly better than trezor?
mircea_popescu: yes well, let's not confuse the inept products of idiots with the broader categories. trezor is a specific piece of shit, not something as lofty as "a hardware wallet".
a111: 186 results for "trezor", http://btcbase.org/log-search?q=trezor
mircea_popescu: !#s trezor
Guest45857: hello, i would like to ask about trezor security. in your opinion is safer a properly air gapped computer or specific hardware wallet like trezor?
asciilifeform: https://github.com/trezor/trezor-mcu/blob/master/firmware/signing.c << lollamatic, support for segshitness etc
a111: Logged on 2015-12-27 16:07 jurov: https://jochen-hoenicke.de/trezor-power-analysis/ as predicted by alf
a111: Logged on 2015-09-22 03:01 asciilifeform: speaking of, last i checked, 'trezor' was still reflashable from the usb jack.
asciilifeform: static const auto https_privkey_uri = "https://wallet.trezor.io/data/bridge/cert/localback.key";
asciilifeform: static const auto https_cert_uri = "https://wallet.trezor.io/data/bridge/cert/localback.crt";
deedbot: http://qntra.net/2017/09/another-trezor-hardware-wallet-default-flaw-trezord-exe-phones-home/ << Qntra - Another Trezor "Hardware Wallet" Default Flaw: Trezord.exe Phones Home
a111: 173 results for "trezor", http://btcbase.org/log-search?q=trezor
mircea_popescu: !#s trezor
asciilifeform: re the trezor nonsense -- it's the , what' 8th year of btc, and still nobody made the obvious sanewallet - txmaker runs from rom, and eats privkey when-required via paper tape
a111: 38 results for "from:asciilifeform trezor", http://btcbase.org/log-search?q=from%3Aasciilifeform%20trezor
asciilifeform: !#s from:asciilifeform trezor
mircea_popescu: iirc we said trezor is not to be used cca 2015./
ben_vulpes: "As soon as you connect your Trezor to a power source such as a computer, without entering any PIN codes or opening any websites, the Trezor device firmware by itself fills the SRAM with all your sensitive secret information."
deedbot: http://qntra.net/2017/08/trezor-others-affected-by-fault-injection-may-leak-keys/ << Qntra - Trezor, Others Affected By "Fault Injection" – May Leak Keys
asciilifeform: http://btcbase.org/log/2017-04-02#1636123 << lol, luke-jr 'Core Developer' ; Mycelium; Electrum; TREZOR; misc. crapola ☝︎
ben_vulpes: my wot, mon trezor!
pete_dushenski: lemme guess, trezor ?
asciilifeform: as i pointed out a year+ ago, a trezor plugged into a specially-instrumented but visually uninteresting pc will give up its key.
asciilifeform: (and also i will add that trezor has a considerably simpler orifice, but we digress, folks who read the logz know what it is)
assbot: Logged on 27-12-2015 16:46:59; thestringpuller: oh wow. ALF was right on the money using DPA to break the trezor.
thestringpuller: oh wow. ALF was right on the money using DPA to break the trezor. ☟︎
assbot: Extracting the Private Key from a TREZOR ... ( http://bit.ly/1Pqlzmv )
jurov: https://jochen-hoenicke.de/trezor-power-analysis/ as predicted by alf ☟︎
mircea_popescu: https://archive.is/0aLpT << lulz at the trezor/"bitcoin speculation" derp. seriously, "there exists consensus" ? tardstalk references ? le sigh already.
asciilifeform: 'KeepKey is actually a fork of the Trezor project. We have maintained compatibility through development, and are compatible with Trezor v1.3.3.' << l0l
asciilifeform: speaking of, last i checked, 'trezor' was still reflashable from the usb jack. ☟︎☟︎
mircea_popescu: http://log.bitcoin-assets.com/?date=21-09-2015#1281243 << dude get out, buy one. what do you think this is, the trezor ? ☝︎
BingoBoingo: I was kinda iffy about him with the whole Trezor thing
mircea_popescu: BTW: Homeland Security was storing all the seized Bitcoins on a Trezor that they either purchased or seized from someone else!
mircea_popescu: Finally, my question: All of my transactions into the Trezor showed up as confirmed as soon as they got confirmed, however the send transaction (through Coinbase at our donation web sites) took hours to show up as confirmed in the myTrezor wallet even though it had many, many confirmation on blockchain.info
assbot: [ESHOP launched] Trezor: Bitcoin hardware wallet ... ( http://bit.ly/1fDURJW )
nubbins`: "My Trezor finally arrived (but with scratches and rusted/not working cable)... I am happy anyway! I want to share my happiness :-)"
assbot: My Trezor Arrived - Album on Imgur ... ( http://bit.ly/1ImFnVK )
liquidassets: sometimes I buy a few small things using their interface like a trezor or mycelium entropy
kakobrekla: https://github.com/trezor/webwallet
menahem: lol, the trezor is a bit of a bitch to setup. but really not that bad.
menahem: im going through the logs a bit, are you using your trezor much ?
assbot: Logged on 26-04-2015 05:53:14; mircea_popescu: "Unfortunately unlike Bitcoin there is no reputation Trezor." << a) trezor's kinda dysfunctional/derpy ; b) of course there is. airgapped gpg.
mircea_popescu: "Unfortunately unlike Bitcoin there is no reputation Trezor." << a) trezor's kinda dysfunctional/derpy ; b) of course there is. airgapped gpg. ☟︎
mircea_popescu: i guess re-reading this is ambiguous. did you mean "do to trezor" as in, fixing ? or as in, exploiting ?
ascii_field: now who wants to tell me why it took so long to do to 'trezor' what i suggested doing to it immediately upon learning of the circuit ?
assbot: 135 results for 'trezor' : http://s.b-a.link/?q=trezor
mircea_popescu: !s trezor
mircea_popescu: The_Shrander no, but it is kinda lulzy. in any case trezor had mixed reviews at best here.
assbot: All TREZOR users should update their firmware for protection against a physical attack - Extracting the Private Key from a TREZOR with a $70 Oscilloscope : Bitcoin ... ( http://bit.ly/1FqDPty )
The_Shrander: hi to all, have you seen this? http://www.reddit.com/r/Bitcoin/comments/3213nc/all_trezor_users_should_update_their_firmware_for/
asciilifeform: trezor news << For the love of god, Montrezor!
mircea_popescu: lol @ dat trezor drama.
nubbins`: trezor fail
assbot: Trezor Code no Longer LGPLv3, but now more restrictive Microsoft Reference Source License : Bitcoin ... ( http://bit.ly/1BtEpj7 )
jurov: https://www.reddit.com/r/Bitcoin/comments/2u1wea/trezor_code_no_longer_lgplv3_but_now_more/ such shitstorm. wow.
thestringpuller: http://www.reddit.com/r/Bitcoin/comments/2tixaa/got_pulled_over_and_my_trezor_was_confiscated/ << how is this not news yet?
assbot: Got pulled over and my Trezor was confiscated, Police claimed its a voice recorder : Bitcoin ... ( http://bit.ly/1Bo3xKu )
nubbins`: http://www.reddit.com/r/Bitcoin/comments/2tixaa/got_pulled_over_and_my_trezor_was_confiscated/
assbot: 127 results for 'trezor' : http://s.b-a.link/?q=trezor
mircea_popescu: !s trezor
infobel: any thoughts on Trezor anybody?
assbot: Now you can buy a TREZOR-like hardware wallet in less than $30 , take a look : Bitcoin ... ( http://bit.ly/1Ck01mc )
mircea_popescu: public is apparently happy with trezor and glass.
kakobrekla: well one of the idiots that i gave trezor to still kept the coins on bitstamp until after the hack
kakobrekla: i think ascii had objection over trezor saying "not sure if its better than a web wallet"
Naphex: kako, you use a trezor? lol :)
cazalla: this has been another andreas recommendation.. trezor, the best!
asciilifeform: mircea_popescu: ... gmaxwell aware enough to notice [one of] trezor holes. << the differential power thing is plain as daylight to anyone who has seen the published schematic.
mircea_popescu: asciilifeform https://www.reddit.com/r/Bitcoin/comments/2rrxq7/on_why_010s_release_notes_say_we_have_reason_to/cnipifq << gmaxwell aware enough to notice [one of] trezor holes.
kakobrekla: jurov do you know why trezor guys went with "m/44'/0'/0'/0/0"
jurov: dunno if there's bip32/trezor support in any noobish standalone client.. last i checked electrum was under development
kakobrekla: jurov did you ever update your trezor
kakobrekla: one of the two co-authors of trezor
kakobrekla: well you can enter your own private key in trezor and null it after done
asciilifeform: the reason i even bothered to respond to the trezor thing is to share the hypothesis that all of the available products are dumb because the problem they are 'solving' - is dumb.
assbot: trezor/trezor-mcu · GitHub ... ( http://bit.ly/1tCeEcf )
punkman: asciilifeform: here https://github.com/trezor/trezor-mcu
assbot: Bitcoin TREZOR · GitHub ... ( http://bit.ly/1tCeqBF )
punkman: https://github.com/trezor too much fukken code
assbot: Updating your TREZOR’s firmware — TREZOR User Manual 1.0 documentation ... ( http://bit.ly/1y5QFbx )
punkman: http://doc.satoshilabs.com/trezor-user/updatingfirmware.html
asciilifeform: kakobrekla: use the python tools to do anything with the Trezor << one of these days, someone should explain to me why a gadget like 'trezor' is necessary
kakobrekla: punkman im quoting here > You can use the python tools to do anything with the Trezor, but there's no user interface for (most of) it currently.
punkman: can you trezor without the web2.0?
thestringpuller: BitStash and trezor huh
jurov: wanted to check if my trezor still works, so sent half a bitcent to deedbot
kakobrekla: trezor, without quotes
jurov: she's showing off trezor
kakobrekla: ill donate you a trezor if you want to attack it
thestringpuller: so basically you're attempting to hack the trezor via DPA?
assbot: Hardware — TREZOR Technical Manual 1.0 documentation
asciilifeform: http://doc.satoshilabs.com/trezor-tech/hardware.html
thestringpuller: is the trezor guy in wot?
devthedev: Is anyone in possession of a Trezor?
penguirker: New blog post: http://www.bcoinnews.com/trezor/
peeta: so are you getting a Trezor Mircea?