Pinned Tweet
Hardwares are internally exploited. $200 tech gets compromised. Here's how Coldstar makes that impossible:
Think about it
Privately buy hardware with cash
Privately flash it into a cold signer
Privately store Solana
Privately send Solana
Privately trade Solana
A true complete private workflow
Who else is doing this?
Update on our iOS app:
WE ARE VERY VERY CLOSE!
iOS works a little differently to Android to when interacting with USB drives
We have architected a solution but executing the plan has been quite difficult
As this is an open-source project, are there any devs who can help us?
Guys, this may be one of the most exciting demo days taking place in recent times
Got to know a lot of the founders at the castle over the last week and they're all top tier contenders
Tune in!!
nitter.cf/i/broadcasts/1qJVmyzYq…
Coldstar retweeted
Solana Summit Serbia was a fever dream… – at Belgrade, Republic of Serbia
Who needs a Lambo when you have this @solana whip? 😈
Got the Brits in Belgrade for Solana Summit Serbia 🇷🇸
Very proud of our @SuperteamBLKN friends for setting the tone for Breakpoint in November!
The right question for agentic finance isn't "can the agent be trusted." It's "what can it do if it can't." Design for the compromised case, because that's the only case that matters.
Cold storage isn't a product category. It's a property: can this key be reached from the internet, yes or no? Everything else is packaging.
An agent holding your private key isn't an assistant. It's an employee you never background-checked and can't fire mid-transaction.
Cold storage used to mean a device in a drawer you visit twice a year. It should mean a key that simply cannot be reached, while you keep using your funds normally. Live now on @solanamobile Seeker.
Self-custody won't win because it's ideologically correct. It wins the moment it stops being harder than the alternative. That's an engineering problem, not a values problem, and it's the bet we're making on @solana.
🚨CRITICAL SECURITY ALERT 🚨
Critical Vulnerably identified in Ledger’s Ethereum app
Anything older than 1.22.2 is missing a security fix.
Thank you @2147_Million for telling us.
Coldstar retweeted
🚨 CRITICAL ETH SECURITY UPDATE
A critical vulnerability has been discovered in the Ethereum app on Ledger hardware wallets.
The flaw could allow a malicious application to alter ETH transaction details during signing without the change being visible on your Ledger device screen.
Fixed in Ethereum app v1.22.2
If you use Ledger for ETH or Ethereum assets:
• Update the Ethereum app to v1.22.2+
• Update Ledger Live
• Update your Ledger firmware
• Avoid signing transactions until everything is updated
If you hold ethereum:native on Ledger, update ASAP.
🚨Critical security update for LEDGER hardware wallets
A critical vulnerability has been identified in the Ethereum app on Ledger hardware wallets. It could allow a malicious application to alter the details of a transaction during signing, without this being visible on the device screen.
This has been fixed in Ethereum app version 1.22.2. If you use a Ledger device, please update ASAP
While you're in there, it's also good practice to make sure Ledger Live and your device firmware are fully up to date.
Multisig solved custody for treasuries and almost nobody else. If a setup takes an afternoon and a spreadsheet, it isn't a consumer answer.