Enhancing security for seed phrases: experimental ideas

21 replies 129 views
m1kes4tFull Member
Posts: 167 · Reputation: 252
#1Feb 17, 2019, 01:36 PM
Came across this thread about securing seed phrases... kinda interesting, but one big issue is needing another key to decrypt it. I mean, what if you forget that key? Seems like a hassle.
3 Reply Quote Share
Posts: 20 · Reputation: 30
#2Feb 17, 2019, 05:51 PM
For real, I don’t get it. Private keys are already super secure. What’s the point of complicating things? It's just a dictionary for your key, right?
1 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#3Feb 17, 2019, 09:28 PM
That’s one way to look at it. But think about it... if someone gets your seed phrase, they still need to know how to access your funds. So, it's not just about encryption, it's using a decoy.
4 Reply Quote Share
mr_apeNewbie
Posts: 401 · Reputation: 35
#4Feb 18, 2019, 02:16 AM
Exactly! If that’s all it’s aiming for, we’ve got passphrases for that. Just add a word to the seed phrase, and boom, it's like a secret code.
0 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#5Feb 19, 2019, 06:04 AM
Sure, but the way you add those passphrases matters. BIP39 has iterations to secure them. The method discussed here is increasing attempts by a lot, making it tough to brute force.
4 Reply Quote Share
Posts: 20 · Reputation: 30
#6Feb 19, 2019, 11:10 AM
But BIP39 isn’t just about iterations, it’s a bridge from random numbers to readable phrases. The private key is the real deal, and the seed is just a fun way to represent it.
1 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#7Feb 19, 2019, 01:37 PM
I get that, but you need to understand the whole BIP39 setup. It does go through some processes to ensure it’s secure, right? Those iterations do help.
1 Reply Quote Share
Posts: 20 · Reputation: 30
#8Feb 19, 2019, 02:14 PM
Yeah, but if you use known info like birthdays as part of a key, you’re just weakening your security. Entropy is key, don’t forget that!
3 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#9Feb 19, 2019, 06:13 PM
I think you’re missing the point. Encrypting doesn’t change the original randomness. Just adding extra layers doesn’t make it easier to guess.
0 Reply Quote Share
Posts: 83 · Reputation: 179
#10Feb 19, 2019, 08:11 PM
Some folks might say, using BIP39 passphrases makes extra encryption unnecessary. I mean, why overcomplicate things? But everyone has their own take on security.
4 Reply Quote Share
mr_apeNewbie
Posts: 401 · Reputation: 35
#11Feb 19, 2019, 08:40 PM
A passphrase isn’t a full-on encryption method, just an additional shield. Still, it’s a good idea to keep things simple and effective.
2 Reply Quote Share
0xLynxMember
Posts: 113 · Reputation: 205
#12Feb 19, 2019, 10:45 PM
Totally. You don’t wanna reinvent the wheel when PGP’s been solid for ages. It’s a proven method for masking, you know?
4 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#13Feb 20, 2019, 12:28 AM
But PGP has its issues too, right? It’s been hacked before. We need to think outside the box and find new ways to hide our keys.
1 Reply Quote Share
0xLynxMember
Posts: 113 · Reputation: 205
#14Feb 20, 2019, 06:39 AM
True, but a lot of PGP problems came from bad practices, not the system itself. You still have a point about exploring new methods, though.
3 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#15Feb 20, 2019, 07:52 AM
I feel like this is more about personalizing your own security. Even if the original data leaks, the whole idea is minimizing risk.
2 Reply Quote Share
0xLynxMember
Posts: 113 · Reputation: 205
#16Feb 21, 2019, 11:47 PM
Still, people reading this might think they’re safe when they’re really not. If someone gets their hands on your method, that false sense of security could be dangerous.
6 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#17Feb 22, 2019, 02:43 PM
Nah, I make it clear these ideas are experimental. Not saying go use them everywhere.
1 Reply Quote Share
Posts: 83 · Reputation: 179
#18Feb 22, 2019, 03:00 PM
But some people won't read the fine print. They might just think 'cool, I’m safe now'.
3 Reply Quote Share
Posts: 83 · Reputation: 179
#19Feb 22, 2019, 06:14 PM
Using solid methods like PGP is smart. I’ve got a few tricks up my sleeve too for encrypting, especially with decoy seeds.
4 Reply Quote Share
m1kes4tFull Member
Posts: 167 · Reputation: 252
#20Feb 22, 2019, 09:35 PM
About this code though... I'm worried all answers are mandatory? What if someone can guess those personal questions? Seems risky.
3 Reply Quote Share

Related topics