Avatar
Seth For Privacy
58ead82fa15b550094f7f5fe4804e0fe75b779dbef2e9b20511eccd69e6d08f9
Privacy is a human right and necessary for freedom. - VP of Operations at Cake Wallet - Privacy advocate - Host of optoutpod.com, a privacy-focused podcast

No addressing scheme can prevent those. Has to be handled client-side to ignore dust and allow strong coin control.

Say hello to https://silentpayments.xyz/

Wanting to learn more about Silent Payments, see which wallets support them, or find out how to integrate them into your wallet?

I've built out a website with all of that info and more to do what I can to speed up Silent Payments adoption.

Full blog post version:

note16vjz9czztqwgwz876pvmtggltuu9yrazqdm4skwvncdfk57c0fxq8kdw4x

There are no Whirlpool coordinators anymore.

Whirlpool is dead.

Your mixes with Sparrow rely on the other participants true spend not being known.

If LE are able to recover xpubs and know a large % of true spends, your anon set is likely much smaller than you think.

No, normally customers/users aren't affected, especially when it's not a sanctions issue.

If you were a Samourai Wallet user and confused about how to restore your funds elsewhere, we've got you covered:

https://freedom.tech/samourai-to-sparrow/

https://v.nostr.build/4oMGr.mp4

finally recorded two new episodes this week! publishing this week or next and multiple more already scheduled 🙂

Everything actionable you need to know about what this indictment means for you as a Samourai Wallet (SW) or Whirlpool user 👇

As a Samourai Wallet user (no Dojo)

Unfortunately, the architecture of SW meant that your xpub (a master public key, allowing anyone holding it to derive all your past/present/future Bitcoin addresses) was at some point in time held by Samourai, and could now possible in the hands of the DOJ.

Though it's a worst-case scenario, you should assume that your xpub was compromised, and thus all previous mixes you have done have been unwound and are now traceable. You should also assume that the gov can now derive all past/present/future addresses of yours and track movement of funds if so desired.

In addition, Samourai's coordinator and backend sync server was seized, and so SW will no longer sync, show received funds, or allow sending funds out. As such, you have to migrate funds to another wallet like @SparrowWallet following the docs here:

https://docs.samourai.io/wallet/restore-recovery#export-to-external-wallet

In addition, I would recommend migrating funds to a new seed phrase to prevent anyone holding the xpub from seeing all future received/spent funds.

You should also disable automatic updates in the Play Store (if used) to ensure no malicious updates are pushed.

As a Samourai Wallet user (using your own Dojo)

Thankfully, you avoided having your xpub potentially compromised. The worst case scenario for you is that your previous mixes may not have the full anon set you expected if non-Dojo users xpubs were compromised.

You will still be able to sync/send/receive from your Samourai Wallet app, but should also migrate funds eventually as no further updates will come out for Samourai Wallet. If you want to migrate, use the docs below:

https://docs.samourai.io/wallet/restore-recovery#export-to-external-wallet

You should, however, disable automatic updates in the Play Store (if used) to ensure no malicious updates are pushed.

As a Sparrow Wallet user

Thankfully, you avoided having your xpub potentially compromised as well. The worst case scenario for you is that your previous mixes may not have the full anon set you expected if non-Dojo/Sparrow users xpubs were compromised.

There is no real need to rotate to a new wallet etc, and Sparrow is still an excellent option. Unfortunately you will no longer be able to mix in Sparrow as the Samourai coordinator was seized.

Next steps for privacy

If you (like me) relied on Samourai Wallet for privacy on Bitcoin, it's time to look elsewhere sadly. As of today I have two recommendations:

Use Monero for spending, keep using Bitcoin for savings

Yes, this isn't Bitcoin, but its by far the most used and most practical privacy coin out there with strong (and growing) ways to swap in/out of it without a centralized, KYC exchange. My recommendation is buying enough to cover your normal spending of Bitcoin for a month at least, and spend out of that lump sum as needed.

Learn more:

getmonero.org

Where to get Monero:

bisq.network

Trocador.app

In Cake Wallet's exchange feature

Wallets:

Feather Wallet

Cake Wallet

Monerujo Wallet

Merchants that accept Monero:

monerica.com

cryptwerk.com/pay-with/xmr/

Use JoinMarket

JoinMarket is a decentralized Coinjoin protocol that brings together peers to mix funds together, gaining strong privacy without relying on a central coordinator, without giving fees to a central entity, etc.

The best way to get started today is using the new UI built around JoinMarket, @jamapporg:

jamapp.org

Have any more questions? Drop them below and I'll do my best to answer them.

No kidding, love how simple and seamless this is making it with very little (but still present) tradeoffs.

Yeah, I switched it back to my Primal LNURL for Zaps 😅