c7five on Nostr: The #nostr private key topic is one I’ve been thinking about lately. If you have a ...
The #nostr private key topic is one I’ve been thinking about lately. If you have a private key compromise there is no recovery from that. You could have an account that has 1 million followers and there is no way to get back complete control as far as I know.
We know account compromises happen to celebrities on X all the time.
You need to protect your #nostr private key as well as you do your other social credentials. This probably means a password manager or keeping it offline.
The problem we are faced with is that there isn’t any sort of multi factor authentication with your #nostr private key. An attacker could easily phish someone into entering their private key into a form or UI they control and it will be game over for that user.
We know account compromises happen to celebrities on X all the time.
You need to protect your #nostr private key as well as you do your other social credentials. This probably means a password manager or keeping it offline.
The problem we are faced with is that there isn’t any sort of multi factor authentication with your #nostr private key. An attacker could easily phish someone into entering their private key into a form or UI they control and it will be game over for that user.