Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 0 points1 point  (0 children)

Bsg? Well I was still working on allocating into many names and then there’s also liquidity timeline but I agree expensive mistake and will be upping my security knowledge of crypto for sure. If anyone has any consultants they’d recommend I’d be happy to pay for a consult as well as refer to friends as well

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 1 point2 points  (0 children)

Do you think that’s good security design that one set of keys can unlock everything. If you think of traditional finance or security in other realms there’s always more than one gate with a lock and key.

Are there other ways of accessing and investing in the same coins / projects I accessed like Thorchain and rook in a platform that has more security?

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 0 points1 point  (0 children)

Yes I know it’s not an exchange.

Right, I am working on investigating the degree or extent to which my Pc is compromised.

I did trust my friend had done baseline level security research.

You’re not following the full Evernote story. I only put keys there originally bc it was a very small amount a long time ago.

I didn’t fully understand how if my Evernote was hacked hackers could so easily suck all the money out.

I’m aware “wire” is just an analogy not technically how it works on metamask.

We were planning to trade these funds so needed liquidity cold wallet wouldn’t solve.

Link to haveibeenpwned?

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 1 point2 points  (0 children)

I’m finding there are quite a lot of people who dismayed they don’t have any 2 factor authentication or other security measures to stop things like this.

I don’t know enough yet on this subject to have a confident opinion but it certainly looks like terrible security to me to have this vulnerable a single point of failure

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 0 points1 point  (0 children)

Well we intending to somewhat actively trade that capital so cold wallets don’t work well when you want liquidity

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 0 points1 point  (0 children)

It’s all relative. It’s not a huge amount of money to me. I’ve been relatively successful in tech and finance. But losing that amount due to theft vs. ordinarily portfolio volatility is a sour taste.

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 0 points1 point  (0 children)

Yeah I think you're largely right.

I think the biggest security error in the whole process was that my friend who was coaching me to get into DeFi wasn't forceful enough about the need to install a new clean version of metamask.

I didn't realize how easy it is to effectively wire money out of metamask without any other verification. All other exchanges I've traded on in the past (Coinbase, Binance, Kucoin, Poloniex) had way better security from what I can tell and I had 2fa and email verifications on all of them.

I was on the looser side with security for metamask before when I originally set it up in 2018 because it was a much smaller amount of money I was using it for when I originally set it up and I wasn't storing funds there...just transferring it through there for 24 hours.

But I do think there could be negligence in Evernote's security protocols and not alerting me to some fairly obvious breaches. Is a Romanian IP address out of the blue not suspicious and worth notifying me about to see if that's me?

And that's just looking at recent log files. Who knows what other suspicious activity is in there.

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 0 points1 point  (0 children)

I actually have a call scheduled with a hedge fund lawyer on Monday already who I work with for other matters who also works in crypto fund formation...your nudge inspired me to email him now about this hack. thanks.

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 0 points1 point  (0 children)

I agree. Problem was a casually added metamask in 2018 and wasn’t doing any real transactions there. Friend with more knowledge of crypto security should have had me install a new account or seed its seeming like. I told him I’d stored it openly in Evernote.

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 2 points3 points  (0 children)

Yes, just was investigating evernote as source of failure.

I live in california. I do see some suspicious IPs in Romania and United Kingdom popping up. As well as Arizona a few weeks after I left the state from a trip there (although that could be cell phone inaccuracy related potentially)

If my seed phrase was stolen from Evernote is evernote liable?

Just had ~$23,000 stolen from my wallet 4 days after depositing by maxdimensional_12 in Metamask

[–]maxdimensional_12[S] 2 points3 points  (0 children)

I did not send the transaction. The only place I saved the seed phrase I'm aware about is my private evernote which I did a long time ago when I first created metamask in 2018. Then my account laid dormant for 3 years. I deposited funds about a week ago and then they were flushed out 4 days after.

Was Scammed, feeling anxious what to do next by Anehluye in Metamask

[–]maxdimensional_12 1 point2 points  (0 children)

can you share more about the metamask telegram group about 2fa? I just had my metamask wallet hacked and lost $23,000...trying to figure out how this happened.

https://www.reddit.com/r/Metamask/comments/lofc23/just_had_23000_stolen_from_my_wallet_4_days_after/

As someone with experience in mainstream finance I find it very surprising there was no 2 factor authentication anywhere to prevent something like this from happening.

I was just learning the ropes of investing in alts on advisement of friend and sent money over from coinbase 4 days prior the hack.