Bitcoin Forum
June 24, 2017, 02:13:19 PM *
News: Latest stable version of Bitcoin Core: 0.14.2  [Torrent].
 
   Home   Help Search Donate Login Register  
Poll
Question: Would this work?  (Voting closed: August 27, 2011, 12:28:37 PM)
Yes - 2 (28.6%)
No - 5 (71.4%)
See my comment below.... - 0 (0%)
Total Voters: 7

Pages: [1]
  Print  
Author Topic: Solution to wallet security  (Read 759 times)
truthcracker
Newbie
*
Offline Offline

Activity: 28


View Profile
June 28, 2011, 12:28:37 PM
 #1

1) Bitcoin client encrypts wallet on startup
2) Virtual keyboard option where the password is entered on a scrambled keypad with a mouse - no key-logger virus possible


How can that be hacked? Much simpler than getting a computer and running a geek os.

Damn that was an actual attempt at being constructive.....
1498313600
Hero Member
*
Offline Offline

Posts: 1498313600

View Profile Personal Message (Offline)

Ignore
1498313600
Reply with quote  #2

1498313600
Report to moderator
POLONIEX TRADING SIGNALS
+50% Profit and more via TELEGRAM
ALTCOINTRADER.CO
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
1498313600
Hero Member
*
Offline Offline

Posts: 1498313600

View Profile Personal Message (Offline)

Ignore
1498313600
Reply with quote  #2

1498313600
Report to moderator
1498313600
Hero Member
*
Offline Offline

Posts: 1498313600

View Profile Personal Message (Offline)

Ignore
1498313600
Reply with quote  #2

1498313600
Report to moderator
Alex Beckenham
Full Member
***
Offline Offline

Activity: 154


View Profile
June 28, 2011, 12:38:50 PM
 #2

As soon as you enter your password, the contents of the wallet are decrypted so your private keys could be read from RAM.

julz
Legendary
*
Offline Offline

Activity: 1092



View Profile
June 28, 2011, 12:41:06 PM
 #3

2) Virtual keyboard option where the password is entered on a scrambled keypad with a mouse - no key-logger virus possible
How can that be hacked? Much simpler than getting a computer and running a geek os.

A virus could use the Remote Frame Buffer protocol (the protocol used in VNC) to capture the pad entry.  The virus might be smart enough to at least identify which window to capture - even if it just packages up the info to send to a human to read off the actual numbers that were input.

I don't doubt there are other ways too.



@electricwings   BM-GtyD5exuDJ2kvEbr41XchkC8x9hPxdFd
mouse
Jr. Member
*
Offline Offline

Activity: 56



View Profile
June 28, 2011, 12:42:10 PM
 #4

unless you only keep it there for a fraction of a nanosecond, and you use memory layout randomization, and, and, etc

Still possible, but progressivly more unlikely

Any intelligent fool can make things bigger, more complex and more violent. It takes a touch of genius and a lot of courage to move in the opposite direction.
truthcracker
Newbie
*
Offline Offline

Activity: 28


View Profile
June 28, 2011, 12:42:49 PM
 #5

As soon as you enter your password, the contents of the wallet are decrypted so your private keys could be read from RAM.


XLNT point
truthcracker
Newbie
*
Offline Offline

Activity: 28


View Profile
June 28, 2011, 12:44:24 PM
 #6

2) Virtual keyboard option where the password is entered on a scrambled keypad with a mouse - no key-logger virus possible
How can that be hacked? Much simpler than getting a computer and running a geek os.

A virus could use the Remote Frame Buffer protocol (the protocol used in VNC) to capture the pad entry.  The virus might be smart enough to at least identify which window to capture - even if it just packages up the info to send to a human to read off the actual numbers that were input.

I don't doubt there are other ways too.




Hmmmm ok what about a keypad that you hover over that changes letters in a separate window like big [A B C] when you click THAT letter hits?
compro01
Hero Member
*****
Offline Offline

Activity: 485


View Profile
June 28, 2011, 02:54:26 PM
 #7

2) Virtual keyboard option where the password is entered on a scrambled keypad with a mouse - no key-logger virus possible
How can that be hacked? Much simpler than getting a computer and running a geek os.

A virus could use the Remote Frame Buffer protocol (the protocol used in VNC) to capture the pad entry.  The virus might be smart enough to at least identify which window to capture - even if it just packages up the info to send to a human to read off the actual numbers that were input.

I don't doubt there are other ways too.

or just simply take a screenshot via triggering the print screen key every time the mouse is clicked and bitcoin.exe is running.
Pages: [1]
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!