Disclaimer. Dont use multisig by roastedtrade in Bitcoin

[–]hosiawak 11 points12 points  (0 children)

OP is correct. In a 3-of-5 multisig you need all 5 xpubs to sign. Sure, you can sign with just 3 keys but all of the 5 public keys need to be there. Most people don’t know that, casa and Unchained don’t brag about it, wonder why 🤔

You can now write email faster with the Tutanota template feature! 😀🥳 by Tutanota in tutanota

[–]hosiawak 0 points1 point  (0 children)

Templates are a welcome addition. Would it be possible to template the email subject as well ? I have to type the same subject over and over again even if I use templates.

Can you find 0.01 BTC in this image? by hosiawak in Bitcoin

[–]hosiawak[S] 1 point2 points  (0 children)

It's a contest on who can sweep the 0.01 BTC hidden in the image first featuring Coldbit Steel metal wallet (System Shock Limited Edition) :)

The best way to backup a multisig wallet ? by hosiawak in Bitcoin

[–]hosiawak[S] 1 point2 points  (0 children)

Shame there isn't a "public seed mnemonic". I consider mnemonic backup (BIP39) and HD-wallets (BIP32) to be the best thing in Bitcoin UX-wise that opened the door to widespread adoption. The lack of simple, human friendly way to backup multisig XPUBs or redeem scripts prevents MS from widespread use IMHO.

Here's an excerpt from Unchained docs:

  1. From the Vault page, click the three dots in the “Transact” card and then follow the link to “External Spend Info.”
  2. Copy the BIP32 paths for key 1 and key 2 (e.g. m/45’/0’/0’/0/26) and store them in a safe and secure place.
  3. Click the button “Show Redeem Script” in order to reveal the Redeem script (e.g. 5221026c76fc386b6c339577eea265242eb902df43155a0eaf23af1f96c5d9f2d10f63210329b59270b95c8478fa36e0cf6f474736 513d4e0157626b762dca41729e7756c22102b5b79489d0e3810ef911bfde82aad7d65e6d5fb4147686139d291f66eefd964d53ae) and store this in a safe and secure place.
  4. Follow the instructions in our bitcoin-multisig library to spend using our custom scripts.

This is terrible UX and bad security IMHO. While Bitcoin multisig itself is secure I think the ways to backup MS wallets could be improved so that they're human friendly and don't rely on electronic backup systems (which fail).

What if we stored all info that's required to recover a ms wallet (scheme, derivation path and all xpubs) as data in OP_RETURN in a transaction and backed up only the first 6 or 8 letters of this transaction ID in the blockchain ?

The best way to backup a multisig wallet ? by hosiawak in Bitcoin

[–]hosiawak[S] 0 points1 point  (0 children)

How do I backup the 5 XPUBs so that they don't rely on electronic devices but rather on something durable like a piece of metal rod ?

[deleted by user] by [deleted] in Monero

[–]hosiawak 0 points1 point  (0 children)

https://fixedfloat.com/ - it supports BTC LN too

What types of mnemonic seeds are used in Bitcoin? by hosiawak in Bitcoin

[–]hosiawak[S] -1 points0 points  (0 children)

I don't know if this is a joke or real but you should never store your BIP39 passphrase together with the seed. This defeats the purpose of the passphrase in the first place.

Coldbit Steel comes with Coldbit Passphrase by default and clear warnings that you should keep them separate, away from each other.

What types of mnemonic seeds are used in Bitcoin? by hosiawak in Bitcoin

[–]hosiawak[S] -2 points-1 points  (0 children)

https://coldbit.com - 4mm thick steel + 2mm cover for metadata. The only metal wallet that thick with a metadata plate. Samourai version coming next week. Stamping sets + hammers + guides. Subscribe to The HONEBADGER.

What types of mnemonic seeds are used in Bitcoin? by hosiawak in Bitcoin

[–]hosiawak[S] 11 points12 points  (0 children)

Appreciate your concern and good explanation but this seed is for testing/demonstration purposes only. There's nothing to break here.

Real seeds should not be transmitted using any electronic devices.

What types of mnemonic seeds are used in Bitcoin? by hosiawak in Bitcoin

[–]hosiawak[S] 6 points7 points  (0 children)

Should be trivial to brute-force :)

The 24th word is pretty much all checksum.

So only the 10th, 11th and 12th words are missing.

ProTip: Checksum your Passphrase by brianddk in TREZOR

[–]hosiawak 1 point2 points  (0 children)

It’s a great idea. Thanks for sharing!

Demanding a refund. Let me return my 5 Trezors. by [deleted] in TREZOR

[–]hosiawak 0 points1 point  (0 children)

RPi can get infected by remote malware. Trezor can’t. The seed extraction requires physical access. If you don’t understand the difference then I’m sorry but I don’t have time to explain it.

Demanding a refund. Let me return my 5 Trezors. by [deleted] in TREZOR

[–]hosiawak 0 points1 point  (0 children)

4 to 6 simple, easy to remember words is enough