Premium Only Content
2 Billion Wallets Hacked: Why Your Crypto Isn't Safe (And Never Was)
The Largest (detected) NPM Supply Chain Attack in History: What It Reveals About Crypto's Security Crisis
TIMESTAMPS:
00:00:00 NPM Dependency Dilemma
00:17:55 Supply Chain Vulnerabilities
00:26:52 Browser Security Vulnerabilities
00:35:40 Crypto Security Concerns
00:43:28 Building From Scratch
00:47:34 Decentralization Myths
00:52:09 Security Challenges in JavaScript
00:59:34 Out-of-the-Box Solutions
01:03:33 Decentralized Trust Solutions
01:12:48 Smart Contract Security Issues
01:16:26 Internet of Economics
01:23:44 Trust and Transparency in Tech
01:32:47 The Illusion of Crypto
The crypto industry just experienced its largest (detected, and yes, that is a very important word here) NPM supply chain attack ever - 18 packages with 2 billion weekly downloads compromised, targeting wallets across the ecosystem. While the community posts tearful "we're all in this together" responses, we break down the uncomfortable truth about what this attack reveals.
What We Cover:
How the leftpad incident should have been a wake-up call that the industry ignored
Why MetaMask's "LavaMote" security solution was architectural theater that solved nothing
The moral bankruptcy of building financial systems on unaudited mezzanine libraries replete with critical security vulnerabilities
What actual enterprise-grade blockchain security looks like (spoiler: not browser plugins)
Why we built Gajumaru wallet with zero dependencies while others cut corners
The difference between real decentralization and "peer-to-crypto-bro" theater
The Brutal Reality:
Every major wallet you're using - MetaMask, hardware wallets, mobile apps - relies on JavaScript frameworks with tens of thousands of unaudited dependencies. Each one is a potential attack vector that would never pass a financial institution's security review.
This wasn't a sophisticated nation-state attack. This was basic supply chain hygiene that the industry has ignored for years while claiming to handle "real money."
Featured:
Gregory Chew (CEO, Gajumaru/QPQ AG)
Craig Everett (CPO, Gajumaru/QPQ AG)
Ulf Wiger (CTO, Gajumaru/QPQ AG)
We don't just critique - we built the solution. While the crypto industry was compromising on security for convenience, we spent three years building enterprise-grade infrastructure with zero dependencies because we understood something the industry refuses to acknowledge: if you're minting real money, you need real security.
This is about economic sovereignty. Until we demand better, people will keep losing funds to preventable attacks.
The community can either keep pretending everything is fine, or start demanding the security standards that actual money deserves.
-
43:07
WanderingWithWine
6 days ago $1.29 earned5 Dreamy Italian Houses You Can Own Now! Homes for Sale in Italy
9.84K2 -
LIVE
Spartan
20 hours agoFirst playthrough of First Berserker Khazan
309 watching -
28:01
Living Your Wellness Life
2 days agoTrain Your Hormones
12.5K -
43:28
The Heidi St. John Podcast
1 day agoFan Mail Friday: Faith Over Fear and Finding Strength in Every Season
6.79K -
1:05:30
SGT Report
1 day agoTHE HORRIBLE TRUTH ABOUT EVERYTHING -- Harley Schlanger
48.7K89 -
11:04
Blackstone Griddles
16 hours agoCountry Fried Steaks on the Blackstone Griddle
92.7K14 -
49:47
Brad Owen Poker
1 day agoI Get My First BIIGGG Win! $25,000+ Buy-in! HORSE Championship! Don’t Miss! Poker Vlog Ep 324
17K1 -
9:53
Rethinking the Dollar
1 day agoWhen Detroit Bleeds, America Suffer! Layoffs Have Begun
20.8K32 -
18:36
Clownfish TV
1 day agoYouTube Just NERFED YouTube Gaming... | Clownfish TV
23.3K32 -
10:26
Silver Dragons
21 hours agoSilver is TAKING OFF Around the World
23.6K4