Good Boy 7

8K posts

Good Boy 7 banner
Good Boy 7

Good Boy 7

@Jguzman713

Katılım July 2009
788 Takip Edilen142 Takipçiler

2026 Yıllık Özeti

@Jguzman713 hesabının Twitter yılını gör

Cyber Scrilla
Cyber Scrilla@CyberScrilla·
Self custody is NOT dead. SHUT UP! If you believe you’ve been lead astray by being recommended using a cold wallet, you are mistaken. When entropy is done correctly, cold wallets remain virtually impossible to hack. Coldcard generated keys that could be cracked in minutes. Wallets that generate keys using 156 bit to 256 bits of entropy will technically take thousands of years to crack. And if you believe moving your crypto to an exchange is the solution, it’s not. How do you think exchanges manage funds? Hmmm. Perhaps using a wallet? One of the biggest exchanges in the world, Bybit, literally use Ledger wallets as part of their security protocol for users funds. So, you can either keep your crypto in your own wallet where you maintain control and ownership. Or you can send it to a company’s wallet where you lose control and ownership, and don’t gain anything in return. To be clear. I am still pro self custody. I do NOT recommend storing crypto with centralized platforms. If you are a Coldcard user and temporarily need to move funds to an exchange, sure. That makes sense. But the amount of influencers recommending moving your crypto to an exchange, which again, still utilizes wallets, is outright irresponsible. Yes, what happened to Coldcard was horrible, but it doesn’t define self custody. And don’t forget more than 1.5 Million of users Bitcoin was lost/frozen across just 7 different exchanges. Over 1,300+ from Coldcard… The data speaks for itself. I’m going live today to talk about all this. I’ll pin the link to the livestream in the comments if you want to join or watch later. - Scrilla
Cyber Scrilla tweet media
English
40
50
296
19.8K
Anthony Pompliano 🌪
Anthony Pompliano 🌪@APompliano·
There is a tremendous amount of risk in playing it safe.
English
52
31
407
36.8K
isa⚡️
isa⚡️@isabellasg3·
🚨 Coldcard Hardware Wallets — What's Happening The short version: Multiple Coldcard devices (Mark 3, Mark 4, Mark 5, and Q) had a security flaw where the randomness used to create your Bitcoin keys was weak and predictable. This means attackers may already know your seed phrase — your 12-24 word master key — and are working to drain wallets right now. Are You Safe? Check These 3 Things You're probably fine if you did any of these when setting up: ✅ Rolled dice at least 50 times to generate extra randomness ✅ Added a strong passphrase — meaning truly random words or characters, not something like "bitcoin" or a sentence ✅ Generated your seed phrase somewhere else and just imported it into the Coldcard If You Didn't Do Any of That — How Urgent Is It? Move immediately — Single Coldcard wallet with no extra protection. Attackers are already grinding through combinations. It's a matter of time. Move urgently — You added some protection but it was weak (less than 50 dice rolls, or a simple passphrase like a word or phrase). Move soon — You use multiple devices together (multisig) and two of them are Coldcards. Your funds aren't gone yet, but the risk is real. Lower priority but still fix it — Coldcard is only a minority of your setup and other devices are secure. You have time, but still replace it. Where Should You Move Your Bitcoin? Rob's recommendations: - River — a trusted Bitcoin-only company, you can even freeze your own withdrawals - Bitkey (Jack Dorsey's wallet, sold at Best Buy) — beginner friendly - Casa — good for people who want more control but with help - Unchained — good for advanced self-custody Bottom Line If you have a Coldcard and didn't add extra dice rolls or a strong random passphrase when you set it up — treat this as urgent and move your Bitcoin to a new wallet now. Do you have a Coldcard?
Rob Hamilton@Rob1Ham

The most common question I am getting right now in the fall out of the news of COLD CARD MK3, MK4, MK5 and Q having compromised entropy, is: "Rob, what would you do right now if you were in my shoes? Where would you send your bitcoin to be safe?" I will share with you my list of what I would do, but first, there is AN URGENT SECURITY ADVISORY IN THE BITCOIN ECOSYSTEM. Below is my personal assessment of the situation. If you or someone you know: Uses an MK3, MK4, MK5, or Q in a single signature OR A multi signature wallet where the cold card devices can move the funds on their own (Example, 2 cold cards and a Ledger). Please continue reading. You may be in danger. If this does not apply to you, keep on reading if you like, but you are not impacted by this issue. If you are still here, there are three identified mitigations that protect you at the moment. They are all different forms in which you may have brought your own entropy. A: DICE - This is done by either rolling dice from the start, or adding dice rolls to the generated seed phrase. At least 50 dice rolls would be my threshold at 128 bits of entropy. OR B: PASSPHRASE - You used a passphrase of sufficient entropy (128 bits). 128 Bits of entropy pass phrase examples include RANDOM combinations of the following: - 12 BIP 39 seed words. - 10 common words in the english language - 25 mixed lower case letters and numbers - 20 if you use ASCII characters Note on pass phrases: This does not include the same word 12 times, 10 words in a sentence, etc. This combinations of characters/numbers OR words should never have been seen or spoken before in the total sum of all human knowledge and experiences. It needs to be RANDOM for it to be entropy. OR C: EXTERNAL ENTROPY - Your seed phrase was derived entirely outside of the cold card ecosystem. (It was imported into the cold card, not generated on it) Now, if you are still reading, and you do not have any of these mitigations in place, you need to move your funds. The urgency of circumstances are as follows: TIER 1: AS SOON AS POSSIBLE Scenario A: If you are in a signature wallet with an effected device, and did not use any of the mitigations listed above. You need to move funds right now. Find someone to help you, any moment your funds can be stolen. Scenario B: If you have an N of N (eg 2 of 2, 3 of 3, etc) multisig of just cold card devices that did not have mitigations listed above (dice and/or passphrase). Attackers will be grinding all of the combinations of compromised keys. They know all your seed phrases. You are compromised. It is just a matter of time for them to assemble the puzzle pieces together and steal your funds. If this scenario is you, I will have more below on how to mitigate risk when broadcasting your transaction. TIER 2: URGENTLY If you are in a single signature wallet with an effected device, and you used either less than 50 dice rolls OR a pass phrase less secure than what I shared above. The entire security of your bitcoin is reliant on how much of Dice AND Passphrases you applied to your wallet. Attackers know your seed phrase. Your entropy from dice or pass phrase is the only thing protecting you. Did you add a pass phrase of 'bitcoin'? You are basically in tier 1. Did you use 6 words? You are not at tier 1, but you aren't safe. You need to make plans to move funds quickly. TIER 3 SOON, BUT IMPORTANT CONTEXT: You have a multi signature wallet where the compromised devices have sufficient ability to move the funds. An example is a 2 of 3 multisig where you have 2 cold cards and another signer. The issue with Tier 3 is that an attacker may have already figured out your insecure seed phrases. This means when you broadcast your bitcoin transaction, an attacker in theory can then steal your funds. NOTE: IF YOU ARE IN THIS SITUATION, AND YOU HAVE REUSED ADDRESSES, ALL REUSED ADDRESSES PUT YOU RIGHT BACK AT THE TIER 1 MOVE RIGHT AWAY YOUR FUNDS ARE AT RISK AT THIS VERY MOMENT You should look into finding a way to use the @MARAFoundation_ slipstream service, which uses a private mempool. This means that by the time an attacker could see your attempted recovery, it is already in a block and not possible for them to steal funds. TIER 4: KEY ROTATION. This is where you have an insecure cold card(s) in your multisig quorum, and you know that the other keys in your quorum are not impacted by this bug. If there is a MK3,MK4,MK5 or Q in the quorum, BUT they either: 1. Rolled sufficient dice (50 min) 2. Have a strong pass phrase (as defined above). 3. Used entropy not sourced from the device, they are not impacted by this bug in the Cold Card (see notes earlier on mitigations). You are in a position where a minority of your keys are compromised. Funds are safe, but you are at reduced security. Make plans when you are able to remove the compromised device from your wallet. Now. With that security advisory out of the way, back to the question, what would I do in this situation? Below is just my opinion, but you should not rely on only my opinion, you will have to make your own choices based on what you feel is best for you. I want to be clear, if you are not on this list. It is not that I think your product/business is bad, insecure or at risk, I am directly answering the question of what I would do. This is my personal judgement given my decade of experience in bitcoin. First, a disclaimer: My bitcoin is at my company @AnchorWatch. I have full skin in the game in that if I'm offering a custody solution, there will never be another place I store large amounts of bitcoin long term for myself or my family, and it will be this way as long as I am here. I was the first bitcoin that went on our Trident Vault platform. If the day ever comes, I will be the last bitcoin to leave the platform. The years of what we built at AnchorWatch were for exactly moments like this. Avoiding catastrophic risk of ruin scenarios. We offer 2 products: 1. Our Flagship Product where you as the customer can hold 1 or 3 keys, and we act as a cosigner. We leverage bitcoin native smart contracts which allow for your bitcoin to have different ways it can be spent across time. 2. Multi Institution Custody, where we let you distribute your keys across 3 institutions of ourselves, @bitgo and @CoinCorner. 2 of the 3 institutions must sign off on the transaction, and you have to present a Yubikey signature before withdrawing to mitigate deepfake and compromised accounts. For both products as, since we are a cosigner, we are able to enforce rules like whitelisted addresses, and velocity controls (how much bitcoin can you send how often). You can even disable the send button on the platform if you so choose! We also offer 1:1 insurance backed by Lloyd's of London. If you want to learn more about what we do, hit up @_joerodgers or @BeccaAmilee to learn more, or check out our website. Now with that out of the way, places where I'd leave my bitcoin (besides @AnchorWatch) in no particular order: Custodian: I'd trust my life savings at @River under a duress situation. This is one of those times. @Leishman and the entire team at River are elite operators. It is my favorite bitcoin services business in the market today outside of my own. They own their own custody infrastructure, and at times like this, you want those who have extreme ownership and control over how their customer's money is being managed. @River does monthly proof of reserves, and you can turn on the force field feature which will freeze withdrawals of bitcoin. They have a world class custody team as well, and are making improvements regularly with a larger upgrade that has been planned for a long time, happening later this year. Collaborative Custody: 1. The @Bitkey is an incredible product with an elite team of engineers supported by the @BlockEng organization. They have exceptional bitcoin developers across @spiral_xyz and @CashApp teams who deeply understand Bitcoin. @jack has been a long time believer in bitcoin who has built an organization that has no peer in the resources they have not just understanding bitcoin, but building on bitcoin. You can pick it up a Bitkey at best buy today! I do want to add a disclaimer that all keys are managed within the Bitkey ecosystem. The Bitkey team has gone to great lengths to keep things secure, but in light of recent events, I want to call that out. At the moment, the Bitkey is my only exception to a purist ideal of multi vendor multisig (more below). 2. @CasaHODL - @Nneuman and @lopp have been on top of this incidence response, and have built a very clean user experience to let people be safe. You can either use a 2 of 3 or 3 of 5 multisig with a great mobile app. Casa is the best UX for soverign collaborative multisig that exists in the market today. 3. @uncahined - Unchained pioneered the collaborative custody model and the multi institution custody model. They have been working around the clock trying to support customers and have even been able to use slip stream going the extra mile on short notice to keep customers bitcoin safe. Self Custody: I have spent close to $5k on LLM tokens over the past 24 hours scanning over a hundred bitcoin related repositories. As of now, I have seen no vulnerability that has me concerned about any hardware device outside of the Cold Cards. Even so, you can't be sure. So I would follow the @mflaxman "Bitcoin 10x security guide". Its how I held my bitcoin before I founded @AnchorWatch, and even though the guide is 6 years old, the principles are timeless. I would remove his suggestion of using the cold card and replace it with any other hardware wallet. I would replace the cold card with a @Ledger at this time if it were my decision. You can pick up a Ledger up at Best Buy in the US. Michael pioneered multi vendor multisig as a concept, and if you want a fully sovereign solution, as of today there is no better mental model on how to think through this, he has advanced tabs to further increase the security. For his cold card guide he fairly calls out the added benefit of rolling dice, which would have saved you today. I think the future is combining the tech we use at @AnchorWatch to move beyond the single signature/ multi signature paradigm of custody, with the principles of @mflaxman's 10x security guide and the support of collaborative custody. More on that later, but I would check out @lianabitcoin from @Wizardsardine as well, they offer a fully open source wallet that enables these more advanced smart contracts and are security researchers in the bitcoin ecosystem. With that, I'm going to get back to work. I will post a followup reply if I have additional information or any corrections or clarifications to make.

English
8
0
34
7K
Good Boy 7
Good Boy 7@Jguzman713·
@juanbiter Juan dónde estás ? Con todo este problema de hacks que vas a decir hoy ? Creo que es momento más duro en cryto, saludos 🫡
Español
1
0
0
476
Juan Rodríguez
Juan Rodríguez@juanbiter·
Strategy vuelve a VENDER #bitcoin ✅ El precio apenas bajó $1.000 dólares con la noticia, y la venta de 1.638 $BTC fue asumida por el mercado sin mayor fluctuación del precio🤷🏻 También vendió 290 millones de $USD en acciones $MSTR… que hicieron con ese capital❓👇🏻 Aumentaron sus reservas en dólares a $4.000 millones, suficientes para garantizar el pago de 2.3 años en dividendos e intereses✅ Recompraron su preferente $STRC por $81 millones de dólares… a un precio promedio $89 USD por acción, están optimizando el costo de financiación✅ Con la venta de $BTC pagaron los dividendos quincenales de $STRC y con la otra mitad recompraron $STRC 🧐
Juan Rodríguez tweet media
Español
9
14
206
13K
CryptosRus
CryptosRus@CryptosR_Us·
ALERT: COLDCARD USERS REPORT ISSUES AFTER THE LATEST FIRMWARE UPDATE 🚨 Some users say their devices are showing RNG-related error screens after installing the update. Coinkite has not confirmed widespread bricking. Until there is more clarity, verify the correct firmware for your model through official channels before updating.
CryptosRus tweet media
CryptosRus@CryptosR_Us

WARNING: COLDCARD ATTACK MAY BE ENTERING A FOURTH WAVE 🚨 Nearly 389 $BTC was swept from 462 suspected victim addresses across 218 transactions in about 2.5 hours. More similar transactions may still be pending. Check affected funds immediately and follow verified Coinkite recovery guidance.

English
20
5
43
14.4K
Anthony Pompliano 🌪
Anthony Pompliano 🌪@APompliano·
A few thoughts on the Coldcard security incident (in no particular order): 1. This is devastating for a lot of people. They lost their hard-earned economic value in a way most didn’t realize was possible. Not everyone is a technical genius, but almost all are merely looking to build a better life for themselves and their family. I feel for these people and their new reality. 2. I have personally lost bitcoin in the past and it is never fun. The only lesson I can impart from my personal experience on those going through this is that you are unlikely to change the past. Don’t spend immense time thinking about what could have been, but rather focus on a plan moving forward. You can only control your actions and response, so focus on how to come back stronger. 3. People will inevitably attack the various investors in Coldcard, or the podcasters promoting the product, but that anger is misplaced and unproductive. I saw this phenomenon first-hand with the BlockFi situation. Even though I wasn’t involved in the company’s operations, people wanted someone to blame and they came for those who were the most accessible. To those who are angry, don’t waste your time attacking those who are not responsible. To those who will be unjustly attacked, this too shall pass. 4. This incident highlights the difficulty with self-custody. I fundamentally believe in an individual’s right to have true sovereignty over their assets. It is one of the core value propositions of bitcoin. But we must also recognize that self-custody is a technically complex topic that some, but not all, are prepared to take on. Better education and better technology can help bridge this gap in the future. 5. The mainstream media hasn’t picked up this story yet, but I am sure they will at some point. They can’t resist the “bitcoin was hacked!” storyline. Obviously bitcoin was not hacked and there is no known security vulnerability with the protocol. This was a third-party issue, but that won’t stop the misinformation, so it is important to combat the misinformation with facts. 6. Sentiment in the bitcoin industry is very bad right now. This is normal in a bear market, so it is not surprising. But a security incident like this is equivalent to throwing a match on gasoline. There will be more anger, in-fighting, and unproductive nonsense. If this is your first time experiencing it, welcome to the arena. If you have seen it before, you know the negative sentiment will eventually evaporate and the sun will shine again over the next 12-18 months. 7. There are very real ramifications to the acceleration in AI technology. I am not sure if AI played a part in this hack, but it wouldn’t surprise me if that was the case. Every developer should take this new capability seriously and consider how they can enhance their security practices accordingly. 8. The bitcoin community is just as resilient as the network itself. We have been through insane, painful moments throughout the years. This is another one. The only way forward is to go through the fire. In conclusion, this situation sucks for everyone affected. I genuinely feel for you and intimately understand the pain from my own past experiences. Keep your head up and continue walking forward. Love you all ❤️
English
182
78
1.1K
122.6K
ESPN Deportes
ESPN Deportes@ESPNDeportes·
¿A quién de los dos en su Prime escogerías?🤩🤔⚽️
ESPN Deportes tweet media
Español
92
12
495
44.7K
RENE FRANCO
RENE FRANCO@ReneFranco·
Qué bárbaros. Escalando la fantasía.
Español
39
37
192
9.9K
José Ramón Fernández
José Ramón Fernández@joserra_espn·
Qué triste que el ejemplo para millones de niños sea engañar antes que competir con honestidad y honor. (Cortesía Luis Ríos)
Español
1.1K
4.7K
19.4K
2.1M
Good Boy 7 retweetledi
Javier Alarcón
Javier Alarcón@Javier_Alarcon_·
¿Habrá un solo padre o madre argentin@ bien nacido, que justifique que su selección de futbol le haya dado la espada a la celebración del equipo campeón que te ha superado legal, leal y brutalmente? Todo un tema para cualquier niño, más si es argentin@. No hubo nada más vil q eso
Español
256
314
2.9K
81.3K
Good Boy 7
Good Boy 7@Jguzman713·
@AlvaritoMorales 2022 Messi ganó el mundial con puros penales , lamentablemente ya q lo más grande q ganó fue junto inesta y xavi…..
Español
0
0
0
22
Álvaro Morales
Álvaro Morales@AlvaritoMorales·
Una vez quedó demostrado: Messi no es el mejor futbolista en la historia.
Español
378
615
5.8K
56.6K
Good Boy 7
Good Boy 7@Jguzman713·
@J_Pietra La volpe come de los mexicanos, que le pasa…..,
Español
0
0
0
67
Jorge Pietrasanta
Jorge Pietrasanta@J_Pietra·
Yo siempre se los dije, este tipo es malagradecido! Gana nada! Que se vaya de México!
Español
972
2.5K
11.5K
384K
Good Boy 7 retweetledi
Elon Musk
Elon Musk@elonmusk·
🇪🇸 🇪🇸 Congratulations Spain!! 🇪🇸 🇪🇸
English
8K
24.8K
302K
12.5M
Good Boy 7 retweetledi
Eugenio Derbez
Eugenio Derbez@EugenioDerbez·
Le robaron DOS GOLES a España y ni así ! España fue muy superior! 👏👏👏👏👏
Español
387
3.4K
39K
581K
Good Boy 7 retweetledi
Toni Kroos
Toni Kroos@ToniKroos·
Football won
English
24.6K
424.7K
2M
68.2M
Good Boy 7 retweetledi
Zague
Zague@LRZague·
Que marcaron?? Peligro de gol ?? 🤔😆
Español
65
328
5.5K
93.9K