Airgapped wallets are super secure, but some folks worry about needing to format the device first and reinstall the OS. If you skip formatting, can malware still be a threat? I ask because I read that sometimes malware sticks around even after a format and reinstallation.
Best Practices for Airgapped Wallets
20 replies 315 views
If you’re serious about an airgapped wallet, why risk a closed-source OS like Windows? Those guys have too many vulnerabilities. Formatting is essential too, especially if the device had internet access before. Old machines? Just rip out the networking hardware to be safe. Linux isn't foolproof either, but it's better.
Not formatting means malware could be lingering on your device. Before going offline, there might've been malware already chilling there, like clipboard malware. Best bet is to reformat and reinstall the OS to wipe everything out.
You can’t have a truly airgapped device without formatting it. If you don’t, you can't guarantee it’s safe. Sure, not every malware goes away with formatting, but better safe than sorry. There's no 100% secure method, but we should minimize risks.
RogueCipherFull Member
Posts: 39 · Reputation: 453
#5Jan 1, 2019, 11:11 PM
Most of the time, formatting and reinstalling the OS clears out malware. Even replacing the hard drive boosts your odds. Those rare malware types that survive are usually not used by regular scammers.
So the airgapped device is just signing transactions, right? If a clipboard malware alters the address, that's from your online wallet, not the airgapped one. Not sure why everyone’s stressing about Linux if the wallet’s offline.
Just so you know, some malware can embed in your BIOS. It's not common, but it happens. Linux is lighter on resources, which might help if you’ve got an older machine.
RogueCipherFull Member
Posts: 39 · Reputation: 453
#8Jan 4, 2019, 01:19 PM
You still have privacy risks. Even if airgapped, they can see what apps you download. But they won’t access the wallet unless your device connects to the internet. Gotta be cautious.
Boot from a flash drive with Tails to configure it to block network drivers right from the start. It's perfect for keeping your Electrum safe. I doubt malware can hang around in RAM once the device shuts down.
Let’s say I have an airgapped device that hasn’t been formatted, and I’m using it for months with potential malware. If it stays offline mostly, should I be worried about tampering?
No way to access an airgapped device without physical access. If malware is in the BIOS, it won’t do much unless the device connects online. Once online, you lose the airgap.
Once I reinstall the OS and go airgapped, I won’t download anything again. Just transferring the wallet file via flash drive. I’m asking because I’m curious about how malware can affect offline devices.
Just remember, you don’t need to connect an airgapped wallet to make transactions. Do those on an online wallet and sign them offline. If you connect it, even briefly, you risk losing funds.
Tails is great. It’s open-source and amnestic, which is why it’s good for airgapped computers. With it, you can ensure your device isn’t connecting to networks.
I’m sure about privacy. Using Windows or macOS for online wallets is bad. For airgapped wallets, you can still have privacy if it stays offline. Can you break that down for me?
Neither Windows nor macOS are amnestic like Tails. If someone physically compromises your device, they might pull out sensitive data.
Imagine malware messing with Electrum when it loads in memory, replacing it with a compromised version. You think it’s all good, but your transactions aren’t secure.
Tails has a no-internet feature, which is awesome. You don’t need a separate computer as airgapped; just boot from Tails. But having an extra device makes things easier.
To create an airgapped wallet and avoid hacks, clean your device first. Bitcoin gives you control, plus you can use it privately without registering info with any OS.
Maybe it’s a risk... but that means you should wipe it out. Is Linux really necessary? I think Tails is overkill for this; keeping a system offline is usually enough.
Related topics
- Best Hardware Specs for Running Bitcoin Core 7
- Issues with ripemd160 on Ubuntu 22 9
- New Bitcoin Improvement Proposal with $100 Reward 9
- Clipboard Vulnerabilities in Cryptocurrency Transactions 8
- Understanding the Differences Between Traditional and Simplified Chinese Mnemonics 6
- Running Bitcoin Core on a Laptop with Limited Storage 20