Bitcoin Forum
June 09, 2024, 12:34:58 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 2 [3]  All
  Print  
Author Topic: *warning* Two current security issues with mobile devices  (Read 2101 times)
Herbert2020
Legendary
*
Offline Offline

Activity: 1946
Merit: 1137


View Profile
August 13, 2016, 08:15:57 AM
 #41

Thanks for the warning. For me, I only keep a small amount of bitcoin in my mobile for just in case- I don't have a strong password for my phone but that's ok with me. I do keep some in Coinbase (desktop web based) and mostly in paper wallet.

can you explain what is the point of having a mobile wallet when you are using a web wallet like coinbase, you can open coinbase on your cell phone and send/receive or is there any extra functionality that you are looking for in the mobile wallet?

Weak hands have been complaining about missing out ever since bitcoin was $1 and never buy the dip.
Whales are those who keep buying the dip.
isvicre
Hero Member
*****
Offline Offline

Activity: 826
Merit: 1000



View Profile
August 13, 2016, 12:20:58 PM
 #42

Mobile wallets are fine for small transaction. They are very convenient, theres no reason to completely avoid them like many in this thread suggest.
pereira4
Legendary
*
Offline Offline

Activity: 1610
Merit: 1183


View Profile
August 13, 2016, 12:58:42 PM
 #43

Thanks for the warning. For me, I only keep a small amount of bitcoin in my mobile for just in case- I don't have a strong password for my phone but that's ok with me. I do keep some in Coinbase (desktop web based) and mostly in paper wallet.

I don't even bother with a strong password in my phone... just a 4 digit pass similar to how you have to put usually 4 digits to unblock your phone card. Since you should never carry anything valuable in a phone, it seems enough. You don't want to forget the password. Leave the long passwords for PC.
Hirose UK
Hero Member
*****
Offline Offline

Activity: 1302
Merit: 503


Leading Crypto Sports Betting & Casino Platform


View Profile WWW
August 13, 2016, 01:02:37 PM
 #44

Or just don't use mobile wallets entirely. Has worked for years so far with no problem and also utilizing cold storage.

I do the same, and no problem so far. I open my online wallet on my phone, but I don't download the app. then I use 2 factor authenticator. it's secure enough.

so the point of problem here is mobile wallet, just don't use it, that's simple.

anyway thanks for the warning.

..Stake.com..   ▄████████████████████████████████████▄
   ██ ▄▄▄▄▄▄▄▄▄▄            ▄▄▄▄▄▄▄▄▄▄ ██  ▄████▄
   ██ ▀▀▀▀▀▀▀▀▀▀ ██████████ ▀▀▀▀▀▀▀▀▀▀ ██  ██████
   ██ ██████████ ██      ██ ██████████ ██   ▀██▀
   ██ ██      ██ ██████  ██ ██      ██ ██    ██
   ██ ██████  ██ █████  ███ ██████  ██ ████▄ ██
   ██ █████  ███ ████  ████ █████  ███ ████████
   ██ ████  ████ ██████████ ████  ████ ████▀
   ██ ██████████ ▄▄▄▄▄▄▄▄▄▄ ██████████ ██
   ██            ▀▀▀▀▀▀▀▀▀▀            ██ 
   ▀█████████▀ ▄████████████▄ ▀█████████▀
  ▄▄▄▄▄▄▄▄▄▄▄▄███  ██  ██  ███▄▄▄▄▄▄▄▄▄▄▄▄
 ██████████████████████████████████████████
▄▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▄
█  ▄▀▄             █▀▀█▀▄▄
█  █▀█             █  ▐  ▐▌
█       ▄██▄       █  ▌  █
█     ▄██████▄     █  ▌ ▐▌
█    ██████████    █ ▐  █
█   ▐██████████▌   █ ▐ ▐▌
█    ▀▀██████▀▀    █ ▌ █
█     ▄▄▄██▄▄▄     █ ▌▐▌
█                  █▐ █
█                  █▐▐▌
█                  █▐█
▀▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▀█
▄▄█████████▄▄
▄██▀▀▀▀█████▀▀▀▀██▄
▄█▀       ▐█▌       ▀█▄
██         ▐█▌         ██
████▄     ▄█████▄     ▄████
████████▄███████████▄████████
███▀    █████████████    ▀███
██       ███████████       ██
▀█▄       █████████       ▄█▀
▀█▄    ▄██▀▀▀▀▀▀▀██▄  ▄▄▄█▀
▀███████         ███████▀
▀█████▄       ▄█████▀
▀▀▀███▄▄▄███▀▀▀
..PLAY NOW..
beerlover
Legendary
*
Offline Offline

Activity: 2898
Merit: 1162



View Profile
August 14, 2016, 04:57:05 AM
 #45

Or just don't use mobile wallets entirely. Has worked for years so far with no problem and also utilizing cold storage.

I do the same, and no problem so far. I open my online wallet on my phone, but I don't download the app. then I use 2 factor authenticator. it's secure enough.

so the point of problem here is mobile wallet, just don't use it, that's simple.

anyway thanks for the warning.
Mobile wallets' only superiority against all the other wallets is that you can carry it whenever wherever and check your balance just as long as you have internet connection.
However, other than the risks provided by OP, phones are vulnerable to hacks like when you're connecting to a wifi from a public area. They can maybe access your phone and steal your funds from your wallet.

.
.DuelbitsSPORTS.
▄▄▄███████▄▄▄
▄▄█████████████████▄▄
▄██████████████████████▄
██████████████████████████
███████████████████████████
██████████████████████████████
██████████████████████████████
█████████████████████████████
███████████████████████████
█████████████████████████
▀████████████████████████
▀▀███████████████████
██████████████████████████████
██
██
██
██

██
██
██
██

██
██
██
████████▄▄▄▄██▄▄▄██
███▄█▀▄▄▀███▄█████
█████████████▀▀▀██
██▀ ▀██████████████████
███▄███████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
▀█████████████████████▀
▀▀███████████████▀▀
▀▀▀▀█▀▀▀▀
OFFICIAL EUROPEAN
BETTING PARTNER OF
ASTON VILLA FC
██
██
██
██

██
██
██
██

██
██
██
10%   CASHBACK   
          100%   MULTICHARGER   
Supercrypt
Legendary
*
Offline Offline

Activity: 1554
Merit: 1054



View Profile
August 15, 2016, 07:30:40 AM
 #46

Nowadays, it's been really hard to trust any sites/apps that will hold our bitcoin earnings. It would be better to use those that are trusted, used by most users, reputable, and have positive reviews. Making research first may help. Another thing, I think it's okay to use more than one wallet, so that in case something's happened, you won't lose all your earnings. Just my opinion

As much as possible, we should avoid using wallet that has no reputation and a review of users that it is really a dependable and trusted site. It's convenient to use a mobile wallet but safety should come first. If someone opt to use a mobile wallet then it should only be for small amounts so that when there are problems and someone try to steal it then only a small amount will be lost.
Even reputable apps can have bugs that could leak a user's wallet details and even google play store apps have mostly fake reviews or paid reviews that can not help you determine which app is genuine or not. It is better to login from your
mobile browser to blockchain or wallets that are trustworthy.
hasiramasenju
Legendary
*
Offline Offline

Activity: 980
Merit: 1000


View Profile
August 15, 2016, 04:13:41 PM
 #47

that was good warn and i have experience download mobille wallet from App Store because i want to use my smartphone for controling my bitcoin but my friend has told to me that those wallet are malicious wallet and he has save me and my bitcoin because i remove those application immediately and since that i was never interested to using wallet from App Store again

serjent05
Legendary
*
Offline Offline

Activity: 2870
Merit: 1258


View Profile
August 15, 2016, 05:00:30 PM
 #48

Thanks for the warning, I haven't thouht about this issue when using mobile wallet.   Now that I know of these I might check the app im using if it should be deleted or should I keep it.  There are really lots of things especially security to be improved in mobile app device especially the one that is  an application for holding currency.

▄▄███████████████████▄▄
▄█████████▀█████████████▄
███████████▄▐▀▄██████████
███████▀▀███████▀▀███████
██████▀███▄▄████████████
█████████▐█████████▐█████
█████████▐█████████▐█████
██████████▀███▀███▄██████
████████████████▄▄███████
███████████▄▄▄███████████
█████████████████████████
▀█████▄▄████████████████▀
▀▀███████████████████▀▀
Peach
BTC bitcoin
Buy and Sell
Bitcoin P2P
.
.
▄▄███████▄▄
▄████████
██████▄
▄██
█████████████████▄
▄███████
██████████████▄
███████████████████████
█████████████████████████
████████████████████████
█████████████████████████
▀███████████████████████▀
▀█████████████████████▀
▀██████████████████▀
▀███████████████▀
▀▀███████▀▀

▀▀▀▀███▀▀▀▀
EUROPE | AFRICA
LATIN AMERICA
▄▀▀▀











▀▄▄▄


███████▄█
███████▀
██▄▄▄▄▄░▄▄▄▄▄
████████████▀
▐███████████▌
▐███████████▌
████████████▄
██████████████
███▀███▀▀███▀
.
Download on the
App Store
▀▀▀▄











▄▄▄▀
▄▀▀▀











▀▄▄▄


▄██▄
██████▄
█████████▄
████████████▄
███████████████
████████████▀
█████████▀
██████▀
▀██▀
.
GET IT ON
Google Play
▀▀▀▄











▄▄▄▀
bitbunnny
Legendary
*
Offline Offline

Activity: 2912
Merit: 1068


WOLF.BET - Provably Fair Crypto Casino


View Profile
August 15, 2016, 05:17:27 PM
 #49

Mobile phones and the apps, specially for Android are still more vulnerable then computers. That is the reason to be more careful with Bitcoin wallets too. And it is wise to have some antivirus and anti-spy software installed. Malwares are another way that your coins coudl be stolen.

Kprawn
Legendary
*
Offline Offline

Activity: 1904
Merit: 1073


View Profile
August 15, 2016, 07:27:23 PM
 #50

It is so easy to make these basic mistakes when you are a newbie, you hear about Bitcoin and you hear about Bitcoin wallets and the first thing you do, is to download some wallet that looks legit and

then the shite hits the fan. It's posts like this that actually gives insight into the problem and people become aware about their mistakes. We should have loads more articles on the subject and more

indebt analysis on Android based Bitcoin wallets. Some wallets spoof the genuine wallets and people do not even notice it.  Roll Eyes

THE FIRST DECENTRALIZED & PLAYER-OWNED CASINO
.EARNBET..EARN BITCOIN: DIVIDENDS
FOR-LIFETIME & MUCH MORE.
. BET WITH: BTCETHEOSLTCBCHWAXXRPBNB
.JOIN US: GITLABTWITTERTELEGRAM
streazight
Hero Member
*****
Offline Offline

Activity: 910
Merit: 502


View Profile
August 16, 2016, 05:56:42 AM
 #51

Just to make everyone aware, there are a few security risks presently affecting mobile devices that require people to be vigilant.

Firstly, there are still fake, malicious wallets circulating on the App Store, always make sure you use download links from a reputable source.

Secondly, some wallets are automatically backing up private keys to the cloud.  Keys stored online are potentially a serious security risk.  Make sure your apps aren't doing this, or if they have, move your funds to new addresses immediately.

It's generally good practice to only keep small amounts on portable devices in the event of physical loss or theft anyway.  Larger sums should be locked away in cold storage, offline, somewhere secure.
I knew about the firts one but the second one was a surprise.
I did not know they save those private keys to the cloud and it could make our wallets vulnerable to hacks. I basically only use xapo app as I don't trust other wallets but I am aware of these wallets being more exposed to attacks due to mobile viruses.
Dassi
Sr. Member
****
Offline Offline

Activity: 252
Merit: 250


View Profile
August 16, 2016, 06:24:09 AM
 #52

I don't use moblie wallets anyway. I use electrum Grin
ranochigo
Legendary
*
Offline Offline

Activity: 2982
Merit: 4193



View Profile
August 16, 2016, 09:55:25 AM
 #53

...
Secondly, some wallets are automatically backing up private keys to the cloud.  Keys stored online are potentially a serious security risk.  Make sure your apps aren't doing this, or if they have, move your funds to new addresses immediately.

It's generally good practice to only keep small amounts on portable devices in the event of physical loss or theft anyway.  Larger sums should be locked away in cold storage, offline, somewhere secure.

I didn't know that the private keys are hosted on the cloud for the greenaddress app, I think it is dangerous if their cloud gets hacked so the hacker can spends our bitcoin without getting noticed. I prefer more to store small amounts on mobile if we travel or we need to, but the cold wallet should be offline.
Greenaddress can more or less be considered as a hybrid wallet. They do not store your mnemonic and thus have no access to it. They do create and send a password to the server and they will provide it only if the pin that the user set is correct. Without it, the mnemonic will remain encrypted. The pin was stored on Google's server encrypted.


Smartphones are certainly not designed to be bulletproof against attacks since the OS is not really suitable for storing sensitive information. Phone wallets are good for paying conveniently while you're outside. Just be sure to treat the wallet as a day to day wallet and not store majority of your coins there.

█████████████████████████
████▐██▄█████████████████
████▐██████▄▄▄███████████
████▐████▄█████▄▄████████
████▐█████▀▀▀▀▀███▄██████
████▐███▀████████████████
████▐█████████▄█████▌████
████▐██▌█████▀██████▌████
████▐██████████▀████▌████
█████▀███▄█████▄███▀█████
███████▀█████████▀███████
██████████▀███▀██████████
█████████████████████████
.
BC.GAME
▄▄░░░▄▀▀▄████████
▄▄▄
██████████████
█████░░▄▄▄▄████████
▄▄▄▄▄▄▄▄▄██▄██████▄▄▄▄████
▄███▄█▄▄██████████▄████▄████
███████████████████████████▀███
▀████▄██▄██▄░░░░▄████████████
▀▀▀█████▄▄▄███████████▀██
███████████████████▀██
███████████████████▄██
▄███████████████████▄██
█████████████████████▀██
██████████████████████▄
.
..CASINO....SPORTS....RACING..
█░░░░░░█░░░░░░█
▀███▀░░▀███▀░░▀███▀
▀░▀░░░░▀░▀░░░░▀░▀
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░█░░░███▄█░░░
░░██▌░░███░▀░░██▌
░█░██░░███░░░█░██
░█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀


▄▄████▄▄
▄███▀▀███▄
██████████
▀███▄░▄██▀
▄▄████▄▄░▀█▀▄██▀▄▄████▄▄
▄███▀▀▀████▄▄██▀▄███▀▀███▄
███████▄▄▀▀████▄▄▀▀███████
▀███▄▄███▀░░░▀▀████▄▄▄███▀
▀▀████▀▀████████▀▀████▀▀
Pages: « 1 2 [3]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!