Charles Guillemet
@P3b7_
Followers
43K
Following
2K
Media
439
Statuses
5K
CTO at @ledger. Busy securing the blockchain revolution. Cryptography, (Hw) Security, Tech, Blockchain. Previously built the Donjon (@DonjonLedger)
Paris, France
Joined September 2018
MSCI’s move to exclude companies with more than 50% of their balance sheet in crypto (eg. Strategy), and S&P’s downgrade of USDT rating, are clear signs that legacy TradFi knows disruption is coming, and is desperately trying to push back. The paradigm shift is inevitable: you
9
11
51
MSCI’s move to exclude companies with more than 50% of their balance sheet in crypto (eg. Strategy), and S&P’s downgrade of USDT rating, are clear signs that legacy TradFi knows disruption is coming, and is desperately trying to push back. The paradigm shift is inevitable: you
4
0
14
MSCI’s move to exclude companies with more than 50% of their balance sheet in crypto (eg. Strategy), and S&P’s downgrade of USDT rating, are clear signs that legacy TradFi knows disruption is coming, and is desperately trying to push back. The paradigm shift is inevitable: you
6
6
30
The megaSaga is not over, the $500m pre-deposit will basically be rolled-back. MegaETH planned a “pre-deposit” sale ahead of its mainnet launch, letting verified users commit funds to secure allocations of its MEGA token with an initial cap of US$250 million, and an eventual
We've decided to return all funds raised from the Pre-Deposit Bridge. Execution was sloppy and expectations weren’t aligned with our goal of preloading collateral to guarantee 1:1 USDm conversion at mainnet. How this decision impacts you:
19
8
66
TEEs generally exclude physical attacks from their threat model, so when a physical attack breaks them, it’s hardly surprising. What is concerning is how often confidentiality and code-execution integrity, which are part of the threat model, are routinely compromised through
I have been saying countless times: TEEs offer no security if you can physically access the server. But you still need TEEs for defense in depth of MPC protocols and other key management solutions. So what can we do about it? Well, just put them in space, where they are out of
3
1
14
TEEs generally exclude physical attacks from their threat model, so when a physical attack breaks them, it’s hardly surprising. What is concerning is how often confidentiality and code-execution integrity, which are part of the threat model, are routinely compromised through
I have been saying countless times: TEEs offer no security if you can physically access the server. But you still need TEEs for defense in depth of MPC protocols and other key management solutions. So what can we do about it? Well, just put them in space, where they are out of
0
0
6
These zero-click vulnerabilities are bought by nation-state to spy on high-value targets or by criminal organizations to steal high value secrets, such as your crypto wallet. Don't leave your valuable on your phone.
🛑 State-linked hackers are hijacking Signal, WhatsApp, and Telegram accounts using spyware disguised as real apps — some use zero-click bugs on iPhones and Androids. Targets include diplomats and officials across the U.S., Europe, and the Middle East. Read the full report ↓
4
6
45
Quantum won't kill crypto, nor Bitcoin. And today, one can't deny that the market is driven by Bitcoin, so if it were do die, that would become a huge problem for crypto (to say the least).
I don’t believe the narrative “if bitcoin dies, then crypto dies with it”. Bitcoin’s technical shortcomings have always been Ethereum’s opportunity. As other chains rattle apart with age, or the curse of taking shortcuts, Ethereum’s long-term focus will shine
12
6
54
🚨 Shai-Hulud 2.0: A new wave of npm supply-chain attacks targeting major packages (Zapier, ENS, PostHog, Postman & more) is ongoing. Attackers inject malicious code into published versions, triggering during pre-install to gain code execution and exfiltrate environment vars,
wiz.io
Shai-Hulud is back, spreading an npm malware worm through thousands of GitHub repos. Learn the impact, attacker methods, and how to defend your supply chain.
8
18
54
What a mystery 😂 However, we don't know if this was the trigger...
🚨TOM LEE SAYS HE KNOWS WHO TRIGGERED THE OCT 10 CRASH. Tom says a stablecoin on one exchange suddenly dropped to $0.65 due to a code error, triggering the ADL liquidations. He said he knows the people responsible but refused to identify them.
2
0
11
You know how you wished you’d bought BTC when it was cheaper a few weeks ago? This is your chance to avoid repeating that regret. Not an investment advice.
10
5
51
Privacy matters, for everyone. ✊
Here's another French journalist participating in fearmongering about GrapheneOS. That article is not measured. It provided a platform to make both unsubstantiated and provably false claims about GrapheneOS while providing no opportunity to see and respond to those claims.
2
2
26
$100 million in crypto stolen in just one month. Read that again. The majority of it? Lost to poor security, such as using software wallets or storing backups on devices connected to the internet. All of it? Totally preventable. On the main stage at Ledger Op3n, @P3b7_
13
12
67
Nvidia published earnings above expectations, again. See you in 3 months :]
9
2
48
I don't know what are the fees on Robinhood prediction markets, but you currently have a 3pts arbitrage opportunity with Polymarket. You're welcome.
Markets now pricing 51% chance The Fed maintains current rate in December https://t.co/SvdkhclCpe
3
0
6
The real question to ask yourself is whether you’ll end up with more Bitcoin after this dip than before.
9
4
47
@halvingstein @P3b7_ @P3b7_ is correct about many pubkeys being reused and quantum. also with the taproot address there is an option to put a tweak, and that is quantum secure. but you still need a quantum secure signature scheme in future, so the tweak is a bit of readiness.
3
1
8