Bitcoin Forum
June 20, 2024, 12:04:17 AM *
News: Voting for pizza day contest
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: Can Trezor steal our bitcoins ?  (Read 2607 times)
Curious8 (OP)
Full Member
***
Offline Offline

Activity: 215
Merit: 100


View Profile
January 14, 2016, 11:29:35 AM
Last edit: January 14, 2016, 01:16:17 PM by Curious8
 #1

The seed and the PIN are generated in their site mytrezor.com
what makes me wonder if they have access to this sensetive info?
Curious8 (OP)
Full Member
***
Offline Offline

Activity: 215
Merit: 100


View Profile
January 14, 2016, 12:41:14 PM
 #2

up
calkob
Hero Member
*****
Offline Offline

Activity: 1092
Merit: 520


View Profile
January 14, 2016, 12:49:57 PM
 #3

I doubt very much they can access your privkey from that, so many people are always going on about how good trezor are and how secure so i am sure someone has checked them out.  my biggest worry about using the trezor would be hardware failure and not being able to use it.  i think fir the foreseeable future i will stick to good old paper wallets that i can backup.......
helmax
Sr. Member
****
Offline Offline

Activity: 440
Merit: 250



View Profile
January 14, 2016, 12:54:36 PM
 #4

is better use trezon than pc online

looking job
Amph
Legendary
*
Offline Offline

Activity: 3206
Merit: 1069



View Profile
January 14, 2016, 01:02:55 PM
 #5

is better use trezon than pc online

well it depend, on how you use your pc, if you don't download anything and run the client, only i can argue that it is as a safe as a trezor can be

you cna even build a mini-itx desktop just to run the client, it would cost you more than a trezor though
Curious8 (OP)
Full Member
***
Offline Offline

Activity: 215
Merit: 100


View Profile
January 14, 2016, 01:07:31 PM
 #6

I doubt very much they can access your privkey from that, so many people are always going on about how good trezor are and how secure so i am sure someone has checked them out.  my biggest worry about using the trezor would be hardware failure and not being able to use it.  i think fir the foreseeable future i will stick to good old paper wallets that i can backup.......

in case of hardware failure you can always resotre your wallet with the seed in Electrum
mxnsch
Sr. Member
****
Offline Offline

Activity: 474
Merit: 252



View Profile
January 14, 2016, 01:13:09 PM
 #7

I doubt very much they can access your privkey from that, so many people are always going on about how good trezor are and how secure so i am sure someone has checked them out.  my biggest worry about using the trezor would be hardware failure and not being able to use it.  i think fir the foreseeable future i will stick to good old paper wallets that i can backup.......
You can restore a broken trezors coins in many ways, e.g. even by restoring into Electrum as Curious8 mentioned, a spare trezor device or one of many scripts available.

██  ███  nope ██  ███
knowhow
Hero Member
*****
Offline Offline

Activity: 560
Merit: 500


View Profile
January 14, 2016, 01:53:26 PM
 #8

The exchanges ,and companys of wallets can anytime take all bitcoins... we never know what may happen into this world,but you need to trust those companies as they are providing a service and collecting fees from it,otherwise they would scam you,there are several wallets options.
LFC_Bitcoin
Legendary
*
Offline Offline

Activity: 3570
Merit: 9799


#1 VIP Crypto Casino


View Profile
January 14, 2016, 02:12:29 PM
 #9

The exchanges ,and companys of wallets can anytime take all bitcoins... we never know what may happen into this world,but you need to trust those companies as they are providing a service and collecting fees from it,otherwise they would scam you,there are several wallets options.

That's what they said about MtGox......

█████████████████████████
███████████▄█████████████
██████▀░▀█▀░▀█▀░▀████████
███████▄███▄███▄█████████
████▀██▀██▀░▀████▀░▀█████
███████████░███▀██▄██████
████▀██▀██░░░█░░░████████
███████████░███▄█▀░▀█████
████▀██▀██▄░▄███▄░░░▄████
███████▀███▀███▀██▄██████
██████▄░▄█▄░▄█▄░▄████████
███████████▀█████████████
█████████████████████████
 
.Bitcasino.io.
 
.BTC  ✦  Where winners play  BTC.
.
..
.
    ..





████
████
░░▄████▄████████████▄███▄▄
░███████▄██▄▄▄▄▄▄█████████▄
███████████████████████████
▀████████████████████████▀
░░▀▀████████████████████
██████████████████▄█████████
██
▐███████▀███████▀██▄██████
███████▄██▄█▀████▀████████
░░██████▀▀▀▄▄▄████▀▀████
██▐██████████▀███▀█████████████    ████
███
████████████
███████████████    ████
█████▀████████████████▀
███████▀▀▀█████████▀▀
..
....
 
 ..✦ Play now... 
.
..
sipak
Newbie
*
Offline Offline

Activity: 28
Merit: 0


View Profile
January 14, 2016, 02:21:39 PM
 #10

The seed and the PIN are generated in their site mytrezor.com
what makes me wonder if they have access to this sensetive info?

PIN is set by user and it is known by the Trezor device only. Your PC doesn't know it, because of the unique way you enter the PIN, see http://doc.satoshilabs.com/trezor-user/enteringyourpin.html

The same is true for the seed, when a new seed is being created entropy from PC and Trezor device is (provably) mixed in the device to get a new seed.  Seed never leaves the device and is only displayed once on the Trezor screen during the initialization to let the user create a paper backup (24 words using BIP0044), that can be used in many 3rd wallets, see http://doc.satoshilabs.com/trezor-apps/index.html
Curious8 (OP)
Full Member
***
Offline Offline

Activity: 215
Merit: 100


View Profile
January 14, 2016, 02:28:37 PM
 #11

The seed and the PIN are generated in their site mytrezor.com
what makes me wonder if they have access to this sensetive info?

PIN is set by user and it is known by the Trezor device only. Your PC doesn't know it, because of the unique way you enter the PIN, see http://doc.satoshilabs.com/trezor-user/enteringyourpin.html

The same is true for the seed, when a new seed is being created entropy from PC and Trezor device is (provably) mixed in the device to get a new seed.  Seed never leaves the device and is only displayed once on the Trezor screen during the initialization to let the user create a paper backup (24 words using BIP0044), that can be used in many 3rd wallets, see http://doc.satoshilabs.com/trezor-apps/index.html

Are you program developer ? you can't know it's100% trust.
the seed show up on the trezor thats correct but it also synchronized with their site
BillyBobZorton
Legendary
*
Offline Offline

Activity: 1204
Merit: 1028


View Profile
January 14, 2016, 03:06:37 PM
 #12

I was thinking about buying a Trezor, but what's the point when you need to be online and log in into that mytrezor site? what if that site ever goes online? it's pretty dumb to be honest, we wouldn't need any connection to the internet to use it, that doesn't sound very cold storage.
astrocity1981
Sr. Member
****
Offline Offline

Activity: 343
Merit: 254


From The New World


View Profile
January 14, 2016, 03:15:10 PM
 #13

I like to store my btc on a paper wallet. The Trezor  is good if you wanna have some spending money and have access to it without worrying about a key logger. If have a massive amount if btc I would invest in a Trezor.
Kprawn
Legendary
*
Offline Offline

Activity: 1904
Merit: 1074


View Profile
January 14, 2016, 06:29:07 PM
 #14

The person who keeps all his Bitcoins on a single device deserve to lose it for being stupid. That might sound harsh but it's true. I do not trust any 3rd party with my coins after

the MtGox fiasco. Any electronic device can fail and you might lose the paper backup and the coins will be gone. Some people have even proven that they can hack the Trezor,

if they had physical access to it. {Using specialized tools} ... I keep lots of small quantities on separate media to reduce the risk and I think most people should do the same. If

one option gets exploited, you still have coins spread over other media and you do not lose everything at once. 

THE FIRST DECENTRALIZED & PLAYER-OWNED CASINO
.EARNBET..EARN BITCOIN: DIVIDENDS
FOR-LIFETIME & MUCH MORE.
. BET WITH: BTCETHEOSLTCBCHWAXXRPBNB
.JOIN US: GITLABTWITTERTELEGRAM
xqus
Full Member
***
Offline Offline

Activity: 172
Merit: 100



View Profile
January 14, 2016, 07:10:14 PM
 #15

I was thinking about buying a Trezor, but what's the point when you need to be online and log in into that mytrezor site? what if that site ever goes online? it's pretty dumb to be honest, we wouldn't need any connection to the internet to use it, that doesn't sound very cold storage.

You can use the Trezor with other wallet software: http://doc.satoshilabs.com/trezor-faq/overview.html#which-wallets-are-compatible-with-trezor-hardware
No need to use the mytrezor site.

Are you program developer ? you can't know it's100% trust.
the seed show up on the trezor thats correct but it also synchronized with their site

Not it's not. Do you have any proof of this?

PGP fingerprint: B17233A1 || Bitrated user: xqus ≡ Free trust agent || LocalBitcoins ≡ Buy bitcoins locally
Wallet and Exchange security ≡ A security overview of wallets and exchanges. (forum thread)
mxnsch
Sr. Member
****
Offline Offline

Activity: 474
Merit: 252



View Profile
January 16, 2016, 08:16:01 PM
 #16

Of course it is not. I have verified Trezor security by code review and inspecting all network traffic. I might be wrong, but i seriously doubt it. Besides that fact, more capable people than me checked it, too.

██  ███  nope ██  ███
knowhow
Hero Member
*****
Offline Offline

Activity: 560
Merit: 500


View Profile
January 18, 2016, 06:48:11 PM
 #17

Of course it is not. I have verified Trezor security by code review and inspecting all network traffic. I might be wrong, but i seriously doubt it. Besides that fact, more capable people than me checked it, too.


Never deposit all your coins into one single wallet ,or exchange ,online stufs never safe to get hacked or anything else,the thing is we must trust and they keep taking their fees but one day they can see 1/3 bitcoins and think i can get this and no one will be able to recover or do anything,the thing is there is a risk involved into any wallet provider.
StevenS
Full Member
***
Offline Offline

Activity: 206
Merit: 100


View Profile
January 18, 2016, 07:21:08 PM
 #18

Trezor uses bip-0032. The master private key (and all derived private keys) are kept on the device (except when the key is first generated, and bip-0039 is used to display words on the display).

After the master private key is generated, the parent public key is derived and made available to clients that connect to the trezor, such as mytrezor.com. This key is used to generate the child public keys, and thus the receiving addresses, but it cannot be used to generate the private keys. If this key were compromised, you could lose the privacy of your Trezor device, meaning that your entire balance could be determined, but it could not be used to steal your bitcoin.
whereismyname
Full Member
***
Offline Offline

Activity: 167
Merit: 104



View Profile
January 18, 2016, 08:33:44 PM
 #19

I recommend using Trezor in a multisig configuration. That way even if your Trezor is compromised, you're still safe
Meuh6879
Legendary
*
Offline Offline

Activity: 1512
Merit: 1011



View Profile
January 18, 2016, 10:08:03 PM
 #20

The seed and the PIN are generated in their site mytrezor.com
what makes me wonder if they have access to this sensetive info?

Yes.
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!