{"id":57869,"date":"2017-06-02T13:38:34","date_gmt":"2017-06-02T20:38:34","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/?p=57869"},"modified":"2017-06-06T16:01:10","modified_gmt":"2017-06-06T23:01:10","slug":"57869","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2017\/06\/57869","title":{"rendered":"Wallet Security: Cloud\/Exchange Services"},"content":{"rendered":"<p>3\u00bd years ago, I wrote a Bitcoin wallet safety primer for <a href=\"https:\/\/nakedsecurity.sophos.com\/2014\/01\/23\/bitcoin-wallets-how-to-protect-your-digital-currency\/\"><em>Naked Security<\/em><\/a>, a newsletter by Sophos, the European antivirus lab. Articles are limited to just 500 hundred words, and so my primer barely conveyed a mindset\u2014It outlined broad steps for protecting a Bitcoin wallet.<\/p>\n<p>In retrospect, that article may have been a disservice to digital currency novices. For example, did you know that a mobile text message is <span style=\"text-decoration: underline\"><em>not<\/em><\/span> a good form of two-factor authentication? Relying on SMS can get your life savings wiped out. Who knew?!<\/p>\n<p>With a tip of the hat to Cody Brown, here is an <a href=\"https:\/\/medium.com\/@CodyBrown\/how-to-lose-8k-worth-of-bitcoin-in-15-minutes-with-verizon-and-coinbase-com-ba75fb8d0bac\">online wallet security narrative<\/a> that beats my article by a mile. Actually, it is more of a warning than a tutorial. But, read it closely. Learn from Cody\u2019s misfortune. Practice safe storage. If you glean anything from the article, at least do this:<\/p>\n<ul>\n<li>Install Google Authenticator. Require it for any online account with stored value. If someone hijacks your phone account, they cannot authenticate an exchange or wallet transaction\u2014even with Authenticator.<\/li>\n<li>Many exchanges (like Coinbase) offer a \u201cvault\u201d. Sweep most of your savings into the vault instead of the daily-use wallet. This gives you time to detect a scam or intrusion and to halt withdrawals. What is a vault? In my opinion, it is better than a paper wallet! Like a bank account, it is a wallet administered by a trusted vendor, but with no internet connection and forced access delay.<\/li>\n<\/ul>\n<p>Exchange and cloud users want instant response. They want to purchase things without delay and they want quick settlement of currency exchange. But online wallets come with great risk. They can be emptied in an instant. It is not as difficult to spoof your identity as you may think (Again: Read Cody\u2019s article below!) <\/p>\n<p>Some privacy and security advocates insist on taking possession and control of their wallet. They want wealth printed out and tucked under the mattress. Personally, I think this \u2018total-control\u2019 methodology <img loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-4813\" src=\"https:\/\/lifeboat.com\/blog.images\/578692.jpg\" alt=\"\" width=\"262\" height=\"74\" \/>yields greater risk than a trusted, audited custodial relationship with constant updates and best practice reviews.<\/p>\n<p>In case you want just the basics, here is my original <a href=\"http:\/\/goo.gl\/9r3cTL\">wallet security primer<\/a>. It won\u2019t give you everything that you need, but it sets a tone for discipline, safety and a healthy dollop of fear.<\/p>\n<hr \/>\n<p>\n<sup><i>Philip Raymond co-chairs <a href=\"http:\/\/crypsa.org\/\">Crypsa<\/a> &amp; <a href=\"http:\/\/workshop.crypsa.org\/\">Bitcoin Event<\/a>, columnist &amp; board member at <a href=\"http:\/\/lifeboat.com\/blog\/author\/phil-raymond\">Lifeboat<\/a>, editor<br \/> at <a href=\"http:\/\/awildduck.com\/\">WildDuck<\/a> and will deliver the keynote address at <a href=\"http:\/\/vanquish.com\/as1\/dcs.pdf\">Digital Currency Summit<\/a> in Johannesburg.<\/i><\/sup><\/p>\n","protected":false},"excerpt":{"rendered":"<p>3\u00bd years ago, I wrote a Bitcoin wallet safety primer for Naked Security, a newsletter by Sophos, the European antivirus lab. Articles are limited to just 500 hundred words, and so my primer barely conveyed a mindset\u2014It outlined broad steps for protecting a Bitcoin wallet. In retrospect, that article may have been a disservice to [\u2026]<\/p>\n","protected":false},"author":353,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1318,1761,45,77],"tags":[2161,2731,1884,2732,2733,2734],"class_list":["post-57869","post","type-post","status-publish","format-standard","hentry","category-bitcoin","category-cryptocurrencies","category-finance","category-hacking","tag-bitcoin","tag-bitcoin-security","tag-cryptocurrency","tag-online-wallet","tag-protecting-your-wallet","tag-wallet-security"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/57869","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/353"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=57869"}],"version-history":[{"count":3,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/57869\/revisions"}],"predecessor-version":[{"id":57872,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/57869\/revisions\/57872"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=57869"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=57869"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=57869"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}