Bitcoin Forum
May 22, 2024, 04:41:33 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: No hardware wallet should be closed source in the first place  (Read 125 times)
Widdop37 (OP)
Member
**
Offline Offline

Activity: 130
Merit: 11


View Profile
April 04, 2022, 09:29:35 AM
Last edit: April 04, 2022, 09:57:20 AM by Widdop37
 #1

Why called trezor wallet a hardware wallet when it's not even open source? I don't know what sucks more than this since I've been learning things about crypto and wallets, imagine a noob came to you for wallet advice and you just reply ' go get a hardware wallet ' and the dude go ahead and purchases a Trezor hardware wallet and later finds out its not open source.

Update

I meant Ledger, sorry.

OmegaStarScream
Staff
Legendary
*
Offline Offline

Activity: 3486
Merit: 6144



View Profile
April 04, 2022, 09:35:07 AM
Last edit: April 04, 2022, 10:00:29 AM by OmegaStarScream
 #2

Who said it's not open source though? It is[1][2][3]. You can check this for the other hardware wallets[4].

[1] https://github.com/trezor/trezor-core/blob/master/docs/hardware.md
[2] https://github.com/trezor/trezor-firmware
[3] https://github.com/trezor/trezor-suite
[4] https://bitcointalk.org/index.php?topic=5288971.0

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
NeuroticFish
Legendary
*
Offline Offline

Activity: 3682
Merit: 6406


Looking for campaign manager? Contact icopress!


View Profile
April 04, 2022, 09:39:43 AM
 #3

Why called trezor wallet a hardware wallet when it's not even open source?

1. A device can be hardware wallet even if it's a closed source. It's not a nice/desired situation, but it happens. The name hardware wallet comes from the way it works...
2. You've made a confusion. Trezor is open source, Ledger is the closed source one.

█████████████████████████
████▐██▄█████████████████
████▐██████▄▄▄███████████
████▐████▄█████▄▄████████
████▐█████▀▀▀▀▀███▄██████
████▐███▀████████████████
████▐█████████▄█████▌████
████▐██▌█████▀██████▌████
████▐██████████▀████▌████
█████▀███▄█████▄███▀█████
███████▀█████████▀███████
██████████▀███▀██████████
█████████████████████████
.
BC.GAME
▄▄░░░▄▀▀▄████████
▄▄▄
██████████████
█████░░▄▄▄▄████████
▄▄▄▄▄▄▄▄▄██▄██████▄▄▄▄████
▄███▄█▄▄██████████▄████▄████
███████████████████████████▀███
▀████▄██▄██▄░░░░▄████████████
▀▀▀█████▄▄▄███████████▀██
███████████████████▀██
███████████████████▄██
▄███████████████████▄██
█████████████████████▀██
██████████████████████▄
.
..CASINO....SPORTS....RACING..
█░░░░░░█░░░░░░█
▀███▀░░▀███▀░░▀███▀
▀░▀░░░░▀░▀░░░░▀░▀
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░█░░░███▄█░░░
░░██▌░░███░▀░░██▌
░█░██░░███░░░█░██
░█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀


▄▄████▄▄
▄███▀▀███▄
██████████
▀███▄░▄██▀
▄▄████▄▄░▀█▀▄██▀▄▄████▄▄
▄███▀▀▀████▄▄██▀▄███▀▀███▄
███████▄▄▀▀████▄▄▀▀███████
▀███▄▄███▀░░░▀▀████▄▄▄███▀
▀▀████▀▀████████▀▀████▀▀
Widdop37 (OP)
Member
**
Offline Offline

Activity: 130
Merit: 11


View Profile
April 04, 2022, 09:58:58 AM
 #4

Why called trezor wallet a hardware wallet when it's not even open source?

1. A device can be hardware wallet even if it's a closed source. It's not a nice/desired situation, but it happens. The name hardware wallet comes from the way it works...
2. You've made a confusion. Trezor is open source, Ledger is the closed source one.
Then it means all wallets are equal here, if I use this Ledger wallet and something funny happens one day from the dev side what's going to happen? Isn't this one of the reasons why people avoid mobile wallets like trust wallet and coinomi?.

Rikimaruu
Jr. Member
*
Offline Offline

Activity: 45
Merit: 1


View Profile
April 04, 2022, 10:00:42 AM
 #5

It's good you know the difference, I won't dare store thousands of dollars worth of crypto asset on a wallet that's closed source wether hardware wallet or not.

https://qenetex.com
🔵 Qenetex: non-custodial storage
✅ Find best exchange rates with Exchange Engine, up to 100 providers 🖥
NeuroticFish
Legendary
*
Offline Offline

Activity: 3682
Merit: 6406


Looking for campaign manager? Contact icopress!


View Profile
April 04, 2022, 10:06:15 AM
 #6

Then it means all wallets are equal here, if I use this Ledger wallet and something funny happens one day from the dev side what's going to happen? Isn't this one of the reasons why people avoid mobile wallets like trust wallet and coinomi?.

Actually it's not the same.

Trust wallet/coinomi create and send the transactions. Most people use those wallets without HW, so no safety net at all.

On the other hand, hardware wallet "only" signs the transactions. If one uses Ledger (one of the bad examples), he can use it with Electrum, for example. With the correct settings Electrum will show every step done.
Can Ledger do bad things after a certain update? Probably (but after that bye-bye business). Will Electrum "play along"? I hope not. Of course, if one also uses Ledger Live, he's more exposed.

Also while Trust wallet or coinomi basically doesn't risk anything if they do something fishy (no liability), a business that makes hardware wallets is basically gone after that and also faces lawsuits to recover those funds.


All in all, you do have a point, I don't deny that, just it's not entirely correct.

█████████████████████████
████▐██▄█████████████████
████▐██████▄▄▄███████████
████▐████▄█████▄▄████████
████▐█████▀▀▀▀▀███▄██████
████▐███▀████████████████
████▐█████████▄█████▌████
████▐██▌█████▀██████▌████
████▐██████████▀████▌████
█████▀███▄█████▄███▀█████
███████▀█████████▀███████
██████████▀███▀██████████
█████████████████████████
.
BC.GAME
▄▄░░░▄▀▀▄████████
▄▄▄
██████████████
█████░░▄▄▄▄████████
▄▄▄▄▄▄▄▄▄██▄██████▄▄▄▄████
▄███▄█▄▄██████████▄████▄████
███████████████████████████▀███
▀████▄██▄██▄░░░░▄████████████
▀▀▀█████▄▄▄███████████▀██
███████████████████▀██
███████████████████▄██
▄███████████████████▄██
█████████████████████▀██
██████████████████████▄
.
..CASINO....SPORTS....RACING..
█░░░░░░█░░░░░░█
▀███▀░░▀███▀░░▀███▀
▀░▀░░░░▀░▀░░░░▀░▀
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░█░░░███▄█░░░
░░██▌░░███░▀░░██▌
░█░██░░███░░░█░██
░█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀


▄▄████▄▄
▄███▀▀███▄
██████████
▀███▄░▄██▀
▄▄████▄▄░▀█▀▄██▀▄▄████▄▄
▄███▀▀▀████▄▄██▀▄███▀▀███▄
███████▄▄▀▀████▄▄▀▀███████
▀███▄▄███▀░░░▀▀████▄▄▄███▀
▀▀████▀▀████████▀▀████▀▀
OmegaStarScream
Staff
Legendary
*
Offline Offline

Activity: 3486
Merit: 6144



View Profile
April 04, 2022, 10:15:21 AM
Merited by NeuroticFish (2), stompix (2), DdmrDdmr (2)
 #7

Then it means all wallets are equal here, if I use this Ledger wallet and something funny happens one day from the dev side what's going to happen? Isn't this one of the reasons why people avoid mobile wallets like trust wallet and coinomi?.

Actually, the ledger live is open source for both desktop and mobile[1]. It's the firmware that isn't, see this discussion[2]

[1] https://github.com/LedgerHQ
[2] https://www.reddit.com/r/ledgerwallet/comments/e1wh5q/is_ledger_going_to_make_the_firmware_open_source/

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Charles-Tim
Legendary
*
Offline Offline

Activity: 1554
Merit: 4907


Leading Crypto Sports Betting & Casino Platform


View Profile
April 04, 2022, 11:58:11 AM
Last edit: April 05, 2022, 02:23:06 PM by Charles-Tim
 #8

Then it means all wallets are equal here, if I use this Ledger wallet and something funny happens one day from the dev side what's going to happen? Isn't this one of the reasons why people avoid mobile wallets like trust wallet and coinomi?.

Actually, the ledger live is open source for both desktop and mobile[1]. It's the firmware that isn't, see this discussion[2]

[1] https://github.com/LedgerHQ
[2] https://www.reddit.com/r/ledgerwallet/comments/e1wh5q/is_ledger_going_to_make_the_firmware_open_source/
@Widdop37. Ledger Nano can not be compared to wallets like Coinomi or Trustwallet, everything about Coinomi and Trust wallet is close source, but Ledger Live (software used to operate Ledger Nano) is completely open source. You can even connect Ledger Nano to open source wallet like Electrum. Although, not that I am recommending Ledger Nano as the secure element used to generate the seed phrase and where it is store is close source, I will prefer to go for hardware wallet that is completely open source. But the worst of all are those hardware wallets like Safepal that is completely close source and cannot be used with other open close wallets as it has its own software which is also close source.

..Stake.com..   ▄████████████████████████████████████▄
   ██ ▄▄▄▄▄▄▄▄▄▄            ▄▄▄▄▄▄▄▄▄▄ ██  ▄████▄
   ██ ▀▀▀▀▀▀▀▀▀▀ ██████████ ▀▀▀▀▀▀▀▀▀▀ ██  ██████
   ██ ██████████ ██      ██ ██████████ ██   ▀██▀
   ██ ██      ██ ██████  ██ ██      ██ ██    ██
   ██ ██████  ██ █████  ███ ██████  ██ ████▄ ██
   ██ █████  ███ ████  ████ █████  ███ ████████
   ██ ████  ████ ██████████ ████  ████ ████▀
   ██ ██████████ ▄▄▄▄▄▄▄▄▄▄ ██████████ ██
   ██            ▀▀▀▀▀▀▀▀▀▀            ██ 
   ▀█████████▀ ▄████████████▄ ▀█████████▀
  ▄▄▄▄▄▄▄▄▄▄▄▄███  ██  ██  ███▄▄▄▄▄▄▄▄▄▄▄▄
 ██████████████████████████████████████████
▄▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▄
█  ▄▀▄             █▀▀█▀▄▄
█  █▀█             █  ▐  ▐▌
█       ▄██▄       █  ▌  █
█     ▄██████▄     █  ▌ ▐▌
█    ██████████    █ ▐  █
█   ▐██████████▌   █ ▐ ▐▌
█    ▀▀██████▀▀    █ ▌ █
█     ▄▄▄██▄▄▄     █ ▌▐▌
█                  █▐ █
█                  █▐▐▌
█                  █▐█
▀▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▀█
▄▄█████████▄▄
▄██▀▀▀▀█████▀▀▀▀██▄
▄█▀       ▐█▌       ▀█▄
██         ▐█▌         ██
████▄     ▄█████▄     ▄████
████████▄███████████▄████████
███▀    █████████████    ▀███
██       ███████████       ██
▀█▄       █████████       ▄█▀
▀█▄    ▄██▀▀▀▀▀▀▀██▄  ▄▄▄█▀
▀███████         ███████▀
▀█████▄       ▄█████▀
▀▀▀███▄▄▄███▀▀▀
..PLAY NOW..
Rikimaruu
Jr. Member
*
Offline Offline

Activity: 45
Merit: 1


View Profile
April 05, 2022, 12:39:13 PM
 #9

If I'm given the option to choose between a trust wallet and a ledger wallet I will choose ledger or any hardware wallet because they are still better than mobile wallets even if they are closed source.

https://qenetex.com
🔵 Qenetex: non-custodial storage
✅ Find best exchange rates with Exchange Engine, up to 100 providers 🖥
nullama
Hero Member
*****
Offline Offline

Activity: 994
Merit: 957



View Profile
April 06, 2022, 03:08:36 AM
 #10

Just because a software is open source doesn't mean it can't do unwanted things.

Also, I'm not sure how you're able to confirm the firmware running in your hardware wallet is actually the source that has been published openly. Maybe you can flash it yourself? Not sure most people would do that. Most people would start using the hardware wallet. Maybe they would generate their own keys outside of the wallet, but not sure if they would re-flash the wallet with their custom firmware as well.

At some point you do need to trust, otherwise you won't have enough time or expertise in all the necessary areas to verify everything you use.

███████████████████████████████
███████████████████████████████
█████████
▀▀▀▀▀█▀█▀▀▀▀▀█████████
███
▄▀▀▀   ▄▄▄▄   ▄▄▄▄   ▀▀▀▄███
███████
▀▀▀████▌ ▐████▀▀▀███████
█████
███▀█▀██▌ ▐██▀█▀████████
████
███▀▄▀▄███▌ ▐███▄▀▄▀███████
█████
██▄██▄██   ██▄██▄███████
███████
▄▄▄████   ████▄▄▄███████
██████████
▀▀▀▀   ▀▀▀▀██████████
██████████
▄▄▄▄▄▄▄▄▄▄▄██████████
███████████████████████████████
███████████████████████████████
█▀▀▀











█▄▄▄
#1 RATED CRYPTO
CASINO IN THE WORLD
██ ██ ██ ██ █Trustpilot
▀▀▀█











▄▄▄█
▄█████████████████████████████
██████████████████▀▀█████▀▀████
█████████████████▀█████████▀███
██████████████████████████████
███████████████████████████▄███
█████████████████████████▄▄████
███████████████████████████████
█████████████░░░███████████████
███████████░░░█████████████████
█████████░░████████████████████
█████░░░██████████████████████
███░░█████████████████████████
▀░░░█████████████████████████▀
.
SIGN UP & INSTANTLY
RECEIVE BONUS

[ NO DEPOSIT REQUIRED ]
█▀▀▀











█▄▄▄
▀▀▀█











▄▄▄█
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!