create account

Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets! by pfunk

View this thread on: hive.blogpeakd.comecency.com
· @pfunk ·
$2,881.79
Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!
<center>![](http://i.imgur.com/7HbCdKx.jpg)</center>

Presently, Bittrex and Poloniex do not appear to be using any cold storage of their Steem account funds. As of now these are the balances of their accounts: @bittrex has 531,533.899 STEEM and $98,704.106 SD. @poloniex has 604,173.956 STEEM and $239,075.969 SD. 

<center>![](http://i.imgur.com/vN4o9LF.jpg)</center>

<center>![](http://i.imgur.com/OP7szvs.jpg)</center>

# Security Now
While I have confidence that both of these exchanges take security very seriously, it is a **bad idea** to have this much liquid currency on online accounts continuously using the active key to sign transactions. I have so far been aware of their lack of cold storage but I figured they'd work it out in time. Bitfinex reminds us that **now** is the time, always, for security.  If either of these accounts were compromised there would likely be a hardfork to fix the damage (re: [Draft Steem Constitution](https://steemit.com/steem/@dan/draft-steem-constitution)) but that would get messy and there would still be significant losses. 

As stakeholders in Steem, we must ask these exchanges to use better security practices for the value of our own accounts and the network as a whole.
👍  , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , and 232 others
👎  , , , , , , ,
properties (23)
authorpfunk
permlinksteem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets
categorysecurity
json_metadata{"tags":["security","steem","bittrex","poloniex"],"users":["bittrex","poloniex"],"image":["http://i.imgur.com/7HbCdKx.jpg","http://i.imgur.com/vN4o9LF.jpg","http://i.imgur.com/OP7szvs.jpg"],"links":["https://steemit.com/steem/@dan/draft-steem-constitution"]}
created2016-08-03 21:06:15
last_update2016-08-03 21:06:15
depth0
children33
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value2,591.924 HBD
curator_payout_value289.869 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length1,225
author_reputation221,632,045,904,452
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,188
net_rshares114,103,004,297,358
author_curate_reward""
vote details (304)
@bendjmiller222 ·
Great point! If we do not learn from others, we will be doomed to fail ourselves. Maybe you can make a post for newcomers about what happened in the hack and what they should do with their currency to be as safe as possible.
properties (22)
authorbendjmiller222
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t232558916z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 23:25:57
last_update2016-08-03 23:25:57
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length224
author_reputation24,513,111,975,788
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id591,436
net_rshares0
@clevecross ·
I agree. Having this much on hand can be terrible. Hardforks here on steem seem to have not had the impact on other crypto's (don't see steem classic). Still, it seemed a relatively minor hit last time and something harder hit can do it's damage. Since the days of Mt. Gox you think lessons would have been learned. Humans..... we're so slow lol
properties (22)
authorclevecross
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t211158911z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:11:57
last_update2016-08-03 21:11:57
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length345
author_reputation7,635,074,529,912
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,278
net_rshares0
@cryptoiskey ·
Exactly... There is some massive wealth building on steemit, and like any mass amounts of Cryptocurrency we need a secure safe to secure the jems.
properties (22)
authorcryptoiskey
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t212245364z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:22:48
last_update2016-08-03 21:22:48
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length146
author_reputation12,705,614,368,854
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,463
net_rshares0
@dantheman ·
$2.82
We are working on a solution where exchanges can set daily rate limits on withdraw activity from their account.  Their "warm storage account" could be online allowing them to withdraw X% per day to their "hot storage account".  

The downside from a user's perspective is that attempts to withdraw your funds would be rate limited by the same algorithm.  But at least it would be transparent why there is a delay in withdrawal.
👍  , , , , , , , , , , , , , , , , , , , , ,
properties (23)
authordantheman
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t212947254z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:29:45
last_update2016-08-03 21:29:45
depth1
children6
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value2.390 HBD
curator_payout_value0.428 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length427
author_reputation240,292,002,602,347
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,591
net_rshares2,114,928,177,785
author_curate_reward""
vote details (22)
@bless ·
Maybe the limit could be increased substantially for people that have 2fa?
properties (22)
authorbless
permlinkre-dantheman-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t233005288z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 23:30:09
last_update2016-08-03 23:30:09
depth2
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length74
author_reputation1,214,965,704,074
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id591,498
net_rshares0
@lukestokes ·
> The downside from a user's perspective is that attempts to withdraw your funds would be rate limited by the same algorithm.

As long as the default is hot storage and people have to opt in for warm storage (much like Coinbase does there vault), I think this would be a great feature to add.
👍  ,
properties (23)
authorlukestokes
permlinkre-dantheman-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t215742425z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:57:42
last_update2016-08-03 21:57:42
depth2
children1
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length292
author_reputation556,640,380,599,219
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id590,079
net_rshares2,952,019,416
author_curate_reward""
vote details (2)
@toroiskandar ·
I agree with your opinion @lukestokes
properties (22)
authortoroiskandar
permlinkre-lukestokes-re-dantheman-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t221632784z
categorysecurity
json_metadata{"tags":["security"],"users":["lukestokes"]}
created2016-08-03 22:16:39
last_update2016-08-03 22:16:39
depth3
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length37
author_reputation1,308,752,360,910
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id590,411
net_rshares0
@pfunk · (edited)
$0.04
This is really good to hear, but I'd still hope to see a third-tier cold storage with manual offline transactions to refill the hot/warm wallets. Forgive me if there's already a method, but are offline signing tools on the to-do list anywhere, by the way?
👍  ,
properties (23)
authorpfunk
permlinkre-dantheman-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t224021985z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 22:40:27
last_update2016-08-03 22:40:45
depth2
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.034 HBD
curator_payout_value0.007 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length255
author_reputation221,632,045,904,452
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id590,808
net_rshares50,116,047,168
author_curate_reward""
vote details (2)
@psychologyrad ·
Still 2FA is better. This makes very little sense. Security should come first.
properties (22)
authorpsychologyrad
permlinkre-dantheman-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t092701780z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 09:27:00
last_update2016-08-04 09:27:00
depth2
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length78
author_reputation3,797,529,143
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id598,016
net_rshares0
@satoshifpv ·
A possible solution would be to add [2 factor authorization](https://steemit.com/security/@satoshifpv/a-call-for-two-factor-authentication-important).  This would be great for users and exchanges could move a majority of funds to an account secured by a secondary hardware PIN.
👍  ,
properties (23)
authorsatoshifpv
permlinkre-dantheman-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t234212276z
categorysecurity
json_metadata{"tags":["security"],"links":["https://steemit.com/security/@satoshifpv/a-call-for-two-factor-authentication-important"]}
created2016-08-03 23:42:12
last_update2016-08-03 23:42:12
depth2
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length277
author_reputation4,742,036,843,307
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id591,709
net_rshares12,412,982,593
author_curate_reward""
vote details (2)
@deepsynergy · (edited)
$1.16
I would like to see a security audit for Steem in general. It could be crowd funded right here on Steemit. I really believe that a single serious breach can undermine the whole success of the project.
👍  , , , ,
properties (23)
authordeepsynergy
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t235251479z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 23:52:57
last_update2016-08-03 23:55:06
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.876 HBD
curator_payout_value0.285 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length200
author_reputation1,834,419,170,611
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id591,884
net_rshares1,055,042,123,593
author_curate_reward""
vote details (5)
@dotersvilic ·
Upvoted
👎  
properties (23)
authordotersvilic
permlinksteem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets
categorysecurity
json_metadata""
created2016-08-03 21:06:48
last_update2016-08-03 21:06:48
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length7
author_reputation-783,147,569,192
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,206
net_rshares-10,578,145
author_curate_reward""
vote details (1)
@ervin-lemark ·
How can we do that? I mean **"ask"**?
properties (22)
authorervin-lemark
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t212547366z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:28:06
last_update2016-08-03 21:28:06
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length37
author_reputation478,649,644,794,530
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,563
net_rshares0
@gikitiki ·
There is nothing I could say that isn't said in this earlier post.  If you haven't read it, it is worth the time.

>  https://steemit.com/steem/@dantheman/bitfinex-blockchain-hacks-and-replay-attacks-oh-my-all-things-that-steem-s-technology-is-designed-to-prevent
properties (22)
authorgikitiki
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t014228010z
categorysecurity
json_metadata{"tags":["security"],"links":["https://steemit.com/steem/@dantheman/bitfinex-blockchain-hacks-and-replay-attacks-oh-my-all-things-that-steem-s-technology-is-designed-to-prevent"]}
created2016-08-04 01:42:30
last_update2016-08-04 01:42:30
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length263
author_reputation16,572,681,158,525
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id593,299
net_rshares0
@greatone ·
Amazing I posted a story about this yesterday and got nothing, but now I see a post saying the same thing I did and it has tons of Votes. WTH

https://steemit.com/steemit/@greatone/proposal-steemit-vault-safeguard-your-investments
properties (22)
authorgreatone
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t000429592z
categorysecurity
json_metadata{"tags":["security"],"links":["https://steemit.com/steemit/@greatone/proposal-steemit-vault-safeguard-your-investments"]}
created2016-08-04 00:04:30
last_update2016-08-04 00:04:30
depth1
children2
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length230
author_reputation-30,777,811,950
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id592,056
net_rshares0
@pfunk · (edited)
It's actually not the same at all. What you are proposing sounds similar to what Dan said they're implementing. I want to see Bittrex, Poloniex, and any other exchange use one or more accounts (with different active keys) as cold storage, significantly reducing the risk of a large amount of liquid STEEM or SD from being stolen. 

As it stands, if someone were to get the active or owner keys of either of these accounts they could instantly send the liquid assets to another Steem account. We know their active keys are "hot" because both are sending withdraws from the account.
properties (22)
authorpfunk
permlinkre-greatone-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t025547028z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 02:55:54
last_update2016-08-04 02:58:21
depth2
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length580
author_reputation221,632,045,904,452
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id594,092
net_rshares0
@timcliff · (edited)
There are a lot of variables to a post being successful. People who have a larger following will have their posts get noticed sooner. The time you post, who is online/reading at that time, how attention grabbing it is, how well written, etc. all play a factor too. Try not to let it discourage you. Building a following takes time, but if you consistently keep posting good content - people will start to notice.
properties (22)
authortimcliff
permlinkre-greatone-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t014508765z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 01:45:12
last_update2016-08-04 01:46:15
depth2
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length412
author_reputation272,954,445,077,789
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id593,328
net_rshares0
@jphamer1 ·
Crypto is really showing itself up at the moment, it could get really ugly which would be very disappointing. I have a lot of faith in it but the security side of things is letting everything down bigtime.
properties (22)
authorjphamer1
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t212906765z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:29:06
last_update2016-08-03 21:29:06
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length205
author_reputation13,498,304,719,883
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,585
net_rshares0
@jrkirby ·
This is true,  they should be using better security standards. However, Steem has shown that it's antifragile - hacks can be  reverted. This makes me feel safer with steem than other cryptocurrencies.
properties (22)
authorjrkirby
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t211129559z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:11:30
last_update2016-08-03 21:11:30
depth1
children1
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length200
author_reputation327,516,342,713
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,270
net_rshares0
@tomkirkham ·
$0.14
Be careful what you wish for - ask Ethereum, although @dantheman had a great post about this. I am not opposed to hard-forks to recover stolen funds, it just opens a can of worms that without proper vetting, can be disastrous. If I read this post correctly, there is still a shoe to drop on the ETC/ETH problem at Coinbase:

https://steemit.com/steem/@dantheman/bitfinex-blockchain-hacks-and-replay-attacks-oh-my-all-things-that-steem-s-technology-is-designed-to-prevent
👍  
properties (23)
authortomkirkham
permlinkre-jrkirby-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t223556750z
categorysecurity
json_metadata{"tags":["security"],"users":["dantheman"],"links":["https://steemit.com/steem/@dantheman/bitfinex-blockchain-hacks-and-replay-attacks-oh-my-all-things-that-steem-s-technology-is-designed-to-prevent"]}
created2016-08-03 22:35:57
last_update2016-08-03 22:35:57
depth2
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.137 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length470
author_reputation4,066,503,527,973
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id590,730
net_rshares154,475,639,780
author_curate_reward""
vote details (1)
@klye · (edited)
You raise very valid concern here... What the hell are they thinking dangling such a large carrot.
👍  
properties (23)
authorklye
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t211148407z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:10:15
last_update2016-08-03 21:21:21
depth1
children6
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length98
author_reputation412,568,771,575,422
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,246
net_rshares2,783,376,604
author_curate_reward""
vote details (1)
@fubar-bdhr ·
I believe the system bitfinex was using was put in place because of government regulations they had to meet to be a legal exchange.  They couldn't keep the coins in cold storage and use ledgers to move the coins they had to move the coins from account to account to satisfy the regulations.  Same would have probably been true of any other coin on the exchange.
properties (22)
authorfubar-bdhr
permlinkre-klye-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t213402149z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:34:18
last_update2016-08-03 21:34:18
depth2
children5
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length361
author_reputation64,977,641,757,856
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,667
net_rshares0
@klye ·
I wonders if that means they'd have some type of insurance on the wallets?

Would make it pretty lucrative for an insider to come in and fill his pocket..!
properties (22)
authorklye
permlinkre-fubar-bdhr-re-klye-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t214125029z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:39:51
last_update2016-08-03 21:39:51
depth3
children4
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length155
author_reputation412,568,771,575,422
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,758
net_rshares0
@magdalena ·
Exchange should give serious attention about security, what happens to bitfinex should make them even more concerned about security, and we also need to save each of our assets in place is really safe, do not store all assets in one place it's much safer
👍  
properties (23)
authormagdalena
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t040954337z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 04:09:51
last_update2016-08-04 04:09:51
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length254
author_reputation212,715,183,142
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id594,845
net_rshares425,488,878
author_curate_reward""
vote details (1)
@metaflute ·
Nothing can stop bitcoin even falling exchanger. Every chrisis brings fresh air. That's Bitcoin.
👍  ,
properties (23)
authormetaflute
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t071150341z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 07:11:57
last_update2016-08-04 07:11:57
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length96
author_reputation69,073,849,011
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id596,634
net_rshares30,139,097,738
author_curate_reward""
vote details (2)
@suicidemime ·
$0.86
All true safety comes first!
As far as I Poloniex uses cold wallets.
It is very sad that we have to fight for freedom, for the development of technologies for cryptocurrency and blockchain. And then our money so easily disappear.
I hope all this story will end well.
And these negative factors will be as small as possible.
👍  
properties (23)
authorsuicidemime
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160803t213510327z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-03 21:35:03
last_update2016-08-03 21:35:03
depth1
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.684 HBD
curator_payout_value0.177 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length323
author_reputation-34,752,377,613
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id589,676
net_rshares821,912,888,297
author_curate_reward""
vote details (1)
@timcliff ·
What about the Steem/Steem Power/Steem Dollars that are in your Steemit.com wallet? Are they considered secure?
👍  ,
properties (23)
authortimcliff
permlinkre-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t014306412z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 01:43:12
last_update2016-08-04 01:43:12
depth1
children2
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length111
author_reputation272,954,445,077,789
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id593,310
net_rshares1,686,026,750
author_curate_reward""
vote details (2)
@pfunk · (edited)
They are as secure as your password/keys are secure. So far, a web exploit was able to compromise the keys of people who were logged in with a master password. That web exploit has been fixed and all lost funds have been promised to be reimbursed. I haven't read if there have been any changes to the way the keys are stored locally after that incident, but I have some faith that it's been made more secure now.
👍  
properties (23)
authorpfunk
permlinkre-timcliff-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t054856516z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 05:49:03
last_update2016-08-04 05:49:39
depth2
children1
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length412
author_reputation221,632,045,904,452
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id595,864
net_rshares1,801,898,282
author_curate_reward""
vote details (1)
@timcliff ·
Ok, cool. Thanks!
properties (22)
authortimcliff
permlinkre-pfunk-re-timcliff-re-pfunk-steem-s-ecosystem-needs-to-take-the-lesson-of-bitfinex-to-heart-bittrex-and-poloniex-need-cold-wallets-20160804t124337660z
categorysecurity
json_metadata{"tags":["security"]}
created2016-08-04 12:43:42
last_update2016-08-04 12:43:42
depth3
children0
last_payout2016-09-03 09:59:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length17
author_reputation272,954,445,077,789
root_title"Steem's ecosystem needs to take the lesson of Bitfinex to heart. Bittrex and Poloniex NEED cold wallets!"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id600,652
net_rshares0