The #nostr private key topic is one I’ve been thinking about lately. If you have a private key compromise there is no recovery from that. You could have an account that has 1 million followers and there is no way to get back complete control as far as I know.

We know account compromises happen to celebrities on X all the time.

You need to protect your #nostr private key as well as you do your other social credentials. This probably means a password manager or keeping it offline.

The problem we are faced with is that there isn’t any sort of multi factor authentication with your #nostr private key. An attacker could easily phish someone into entering their private key into a form or UI they control and it will be game over for that user.

Reply to this note

Please Login to reply.

Discussion

No replies yet.