Almost entire balance (2675 XMR) of Community Crowdfunding System (CCS) Monero wallet has been stolen
Seconded.
With only 2 known keyholders and likely 1 single person with physical access to the Qubes laptop, and where the whole key and wallet were probably stored in a standalone offline vault-vm, what the fuck happened?
As pointed out in the github thread by someone, the more useful opsec flow should have gone something like this.
And make the offline computer an offline vault-vm on a non-internet Qubes laptop .
It's worse than that.
Fiscal responsibility alone dictates that you have a duty to create a public Opsec Charter of sorts.
And that's nothing to say of an ideological-FOSS duty to create the same.
This reeks of more than incompetence.
@shortwavesurfer @Rucknium
I see. They held the hot wallet on Windows fucking 10.
Unbelievable. Opsec? What's Opsec?