{"id":111,"date":"2020-04-02T15:55:00","date_gmt":"2020-04-02T15:55:00","guid":{"rendered":"https:\/\/kinesis.money\/uncategorized\/kinesis-wallet-security-3\/"},"modified":"2023-02-23T12:37:36","modified_gmt":"2023-02-23T12:37:36","slug":"kinesis-wallet-security-3","status":"publish","type":"post","link":"https:\/\/kinesis.money\/es\/blog\/kinesis-wallet-security-3\/","title":{"rendered":"Kinesis Wallet Security"},"content":{"rendered":"\n<p>We would like to remind you that Kinesis currencies are digital ownership of gold and silver on the blockchain; inherently there are processes and methodologies that need to exist in order to align with the core principles fundamental to operating on the blockchain.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-secure-codebase-runtime-hosting\">SECURE CODEBASE, RUNTIME &amp; HOSTING<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-1-encryption-everywhere\">1) Encryption Everywhere:<\/h3>\n\n\n\n<p>User details such as private keys are encrypted at rest using AES 256-bit cypher encryption and all traffic (both to serve the wallet app and communicate with the blockchain) takes place over secure HTTPS. This protects users in the event of their devices becoming compromised as well as against \u2018man in the middle attacks\u2019.<br> Furthermore, the password created by a user and used for browser-based (eWallet) decryption is not stored anywhere.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-what-does-this-mean-to-me\">What does this mean to me?<\/h3>\n\n\n\n<p>If someone attempts to fake the Kinesis Blockchain Network and get the app running in the browser to communicate with it, it will fail<\/p>\n\n\n\n<p>If malicious JavaScript attempts to load into the running eWallet on the user&#8217;s machine, the stored user details are not readable since they are encrypted with the user\u2019s password<\/p>\n\n\n\n<p>If someone compromises the user\u2019s machine and somehow finds the browser data where the user\u2019s data is stored (which is itself encrypted), the user\u2019s private keys are encrypted using their password, making it unreadable\/usable.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-2-distributed-by-design-for-better-security\">2. Distributed by design for better security:<\/h2>\n\n\n\n<p>The eWallet user details such as their \u2018name\u2019, \u2018contacts\u2019 as well as encrypted private &amp; public keys are stored in the browser. No eWallet user details or keys are stored centrally by Kinesis and this is by design.<\/p>\n\n\n\n<p><strong>By not storing details centrally,<\/strong> it makes large-scale attacks that target Kinesis users very difficult since there is no server or data store that contains all user data, i.e. anyone that has an eWallet. Furthermore, browsers are not addressable (i.e. they don\u2019t have an IP address) that remote attackers can use to target.<\/p>\n\n\n\n<p>Finally, it is worth bearing in mind that this design is <strong>intended to protect the Kinesis community<\/strong> as a whole, since as the Kinesis user base numbers increase, so does the scale of this problem for attackers attempting to perform malicious acts; the more Kinesis users, the harder it is to perform a large scale attack to get user data.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-what-does-this-mean-to-me-1\">What does this mean to me?<\/h3>\n\n\n\n<p>If a user decides to use password managers, air-gapped laptops, encrypted hard drive storage or any other manner of increased security policies, then the Kinesis wallet benefits as a result and an attacker&#8217;s ability to attack the whole network reduces.<\/p>\n\n\n\n<p><strong>Remember, Kinesis is here to allow you to become your own Central Bank \u2014 one where you should be able to find a way to securely store your own private key.<\/strong><\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-3-blockchain-auditable-extendable-by-design\">3. Blockchain = auditable &amp; extendable by design:<\/h2>\n\n\n\n<p>Since Kinesis runs over a public API, custom third-party monitoring tools can be used by users should they want to monitor transactions emanating from an account.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-what-does-this-mean-to-me-2\">What does this mean to me?<\/h3>\n\n\n\n<p>Our blockchain uses the standard Stellar Horizon API and is entirely public. If users want to augment their own individual security postures, e.g. extra things like multi-signature, then they should, by all means, be allowed to do so. Users can use third-party integrations\/monitoring solutions (or even build their own) to watch their accounts and alert them in the event that transactions occur that they are unfamiliar with.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-4-some-common-questions\">4. Some common questions:<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-what-if-my-machine-is-compromised\">What if my machine is compromised?<\/h3>\n\n\n\n<p>The security of a user&#8217;s machine is their responsibility and something that Kinesis (nor any other website) will ever be able to fully take responsibility for. The scope of what is compromised and how is simply too great.<\/p>\n\n\n\n<p>With Kinesis there is no central database of usernames &amp; passwords waiting to be compromised. In the present day, this is the far more common security liability<\/p>\n\n\n\n<p>No plain text stored API tokens for communicating with backend systems are cached. With Kinesis, only the personal key is stored in the user browser, but it is encrypted and decrypted by the user-supplied password on every interaction with the blockchain<\/p>\n\n\n\n<p>There is no ability to \u201cRemember me\u201d with the wallet. If a laptop is found on a train, they will still need to log in with a password<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-should-a-user-use-a-standalone-air-gapped-locked-down-another-laptop-to-store-wallet-funds\">Should a user use a standalone\/air-gapped\/locked-down\/another laptop to store wallet funds?<\/h3>\n\n\n\n<p>Any additional security the user wants to place around their wallet should be encouraged.<\/p>\n\n\n\n<p>The wallet is secure at an application &amp; infrastructure level, but enhanced security and practices by the user should always be encouraged. This is analogous to using password managers, or IT security policies around locking down sensitive data on laptops.<\/p>\n\n\n\n<p><em>Disclaimer: The content of this Kinesis Wallet Security article is provided for general information only. It is not intended to amount to advice on which you should rely. You must obtain professional or specialist advice before taking, or refraining from, any action on the basis of the content in this article.<br>\nWe make no representations, warranties or guarantees, whether express or implied, that the content of the article is accurate, complete or up to date.<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>We would like to remind you that Kinesis currencies are digital ownership of gold and silver on the blockchain; inherently there are processes and methodologies that need to exist in order to align with the core principles fundamental to operating on the blockchain. SECURE CODEBASE, RUNTIME &amp; HOSTING 1) Encryption Everywhere: User details such as [&hellip;]<\/p>\n","protected":false},"author":9,"featured_media":6262,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[20],"tags":[146,4,6],"class_list":["post-111","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blog","tag-guides","tag-security","tag-technology"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.2 (Yoast SEO v27.2) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Kinesis Wallet Security information from our CTO - Kinesis<\/title>\n<meta name=\"description\" content=\"In response to comments being made around the Kinesis Wallet Security, our CTO, Nigel Owens is pleased to provide further information.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<meta property=\"og:locale\" content=\"es_ES\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Kinesis Wallet Security\" \/>\n<meta property=\"og:description\" content=\"In response to comments being made around the Kinesis Wallet Security, our CTO, Nigel Owens is pleased to provide further information.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/\" \/>\n<meta property=\"og:site_name\" content=\"Kinesis\" \/>\n<meta property=\"article:published_time\" content=\"2020-04-02T15:55:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-02-23T12:37:36+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1006\" \/>\n\t<meta property=\"og:image:height\" content=\"571\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Zubair Bukhari\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Zubair Bukhari\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/\"},\"author\":{\"name\":\"Zubair Bukhari\",\"@id\":\"https:\/\/kinesis.money\/#\/schema\/person\/c3df6de2ad69a26ff6ec562593bc2e3f\"},\"headline\":\"Kinesis Wallet Security\",\"datePublished\":\"2020-04-02T15:55:00+00:00\",\"dateModified\":\"2023-02-23T12:37:36+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/\"},\"wordCount\":854,\"commentCount\":0,\"image\":{\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg\",\"keywords\":[\"Guides\",\"Security\",\"Technology\"],\"articleSection\":[\"Blog\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#respond\"]}],\"copyrightYear\":\"2020\",\"copyrightHolder\":{\"@id\":\"https:\/\/kinesis.money\/#organization\"}},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/\",\"url\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/\",\"name\":\"Kinesis Wallet Security information from our CTO - Kinesis\",\"isPartOf\":{\"@id\":\"https:\/\/kinesis.money\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg\",\"datePublished\":\"2020-04-02T15:55:00+00:00\",\"dateModified\":\"2023-02-23T12:37:36+00:00\",\"author\":{\"@id\":\"https:\/\/kinesis.money\/#\/schema\/person\/c3df6de2ad69a26ff6ec562593bc2e3f\"},\"description\":\"In response to comments being made around the Kinesis Wallet Security, our CTO, Nigel Owens is pleased to provide further information.\",\"breadcrumb\":{\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage\",\"url\":\"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg\",\"contentUrl\":\"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg\",\"width\":1006,\"height\":571,\"caption\":\"Kinesis Wallet Security Kinesis money uses blockchain Technology\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/kinesis.money\/es\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Kinesis Wallet Security\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/kinesis.money\/#website\",\"url\":\"https:\/\/kinesis.money\/\",\"name\":\"Kinesis\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/kinesis.money\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/kinesis.money\/#\/schema\/person\/c3df6de2ad69a26ff6ec562593bc2e3f\",\"name\":\"Zubair Bukhari\",\"description\":\"As the first member to join the London PR and Content team in 2018, Zubair harnesses a measured focus on the production, development, and strategic deployment of marketing content. Responsible for the outreach of company press releases, and product announcements, he has developed a number of long-lasting relationships with leading outlets in the crypto, FinTech and precious metals space A driving force in the overhaul of the company\u2019s website content throughout the years, Zubair has optimised content in line with SEO keyword and ranking objectives, contributing to Kinesis\u2019 successful rebranding and introduction of its new, current site. With a strong interest in cryptocurrency, Zubair is a strong advocate for the global adoption of blockchain technology aiding everyday banking, in addition to being an avid crypto trader himself. His maintained global awareness of cryptocurrency innovations and updates, Blockchain technology, ICOs and IEOs, positions him as an authoritative voice in the FinTech space.\",\"sameAs\":[\"https:\/\/www.linkedin.com\/company\/kinesismoney\/\"],\"jobTitle\":\"Marketing Operations Executive\",\"worksFor\":\"Read about the latest technological solutions in fintech and the Kinesis system developments.\",\"url\":\"https:\/\/kinesis.money\/es\/author\/zubair-bukhari\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Kinesis Wallet Security information from our CTO - Kinesis","description":"In response to comments being made around the Kinesis Wallet Security, our CTO, Nigel Owens is pleased to provide further information.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"og_locale":"es_ES","og_type":"article","og_title":"Kinesis Wallet Security","og_description":"In response to comments being made around the Kinesis Wallet Security, our CTO, Nigel Owens is pleased to provide further information.","og_url":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/","og_site_name":"Kinesis","article_published_time":"2020-04-02T15:55:00+00:00","article_modified_time":"2023-02-23T12:37:36+00:00","og_image":[{"width":1006,"height":571,"url":"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg","type":"image\/jpeg"}],"author":"Zubair Bukhari","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Zubair Bukhari","Tiempo de lectura":"4 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#article","isPartOf":{"@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/"},"author":{"name":"Zubair Bukhari","@id":"https:\/\/kinesis.money\/#\/schema\/person\/c3df6de2ad69a26ff6ec562593bc2e3f"},"headline":"Kinesis Wallet Security","datePublished":"2020-04-02T15:55:00+00:00","dateModified":"2023-02-23T12:37:36+00:00","mainEntityOfPage":{"@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/"},"wordCount":854,"commentCount":0,"image":{"@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage"},"thumbnailUrl":"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg","keywords":["Guides","Security","Technology"],"articleSection":["Blog"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#respond"]}],"copyrightYear":"2020","copyrightHolder":{"@id":"https:\/\/kinesis.money\/#organization"}},{"@type":"WebPage","@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/","url":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/","name":"Kinesis Wallet Security information from our CTO - Kinesis","isPartOf":{"@id":"https:\/\/kinesis.money\/#website"},"primaryImageOfPage":{"@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage"},"image":{"@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage"},"thumbnailUrl":"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg","datePublished":"2020-04-02T15:55:00+00:00","dateModified":"2023-02-23T12:37:36+00:00","author":{"@id":"https:\/\/kinesis.money\/#\/schema\/person\/c3df6de2ad69a26ff6ec562593bc2e3f"},"description":"In response to comments being made around the Kinesis Wallet Security, our CTO, Nigel Owens is pleased to provide further information.","breadcrumb":{"@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#primaryimage","url":"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg","contentUrl":"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg","width":1006,"height":571,"caption":"Kinesis Wallet Security Kinesis money uses blockchain Technology"},{"@type":"BreadcrumbList","@id":"https:\/\/kinesis.money\/blog\/kinesis-wallet-security-3\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/kinesis.money\/es\/"},{"@type":"ListItem","position":2,"name":"Kinesis Wallet Security"}]},{"@type":"WebSite","@id":"https:\/\/kinesis.money\/#website","url":"https:\/\/kinesis.money\/","name":"Kinesis","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/kinesis.money\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Person","@id":"https:\/\/kinesis.money\/#\/schema\/person\/c3df6de2ad69a26ff6ec562593bc2e3f","name":"Zubair Bukhari","description":"As the first member to join the London PR and Content team in 2018, Zubair harnesses a measured focus on the production, development, and strategic deployment of marketing content. Responsible for the outreach of company press releases, and product announcements, he has developed a number of long-lasting relationships with leading outlets in the crypto, FinTech and precious metals space A driving force in the overhaul of the company\u2019s website content throughout the years, Zubair has optimised content in line with SEO keyword and ranking objectives, contributing to Kinesis\u2019 successful rebranding and introduction of its new, current site. With a strong interest in cryptocurrency, Zubair is a strong advocate for the global adoption of blockchain technology aiding everyday banking, in addition to being an avid crypto trader himself. His maintained global awareness of cryptocurrency innovations and updates, Blockchain technology, ICOs and IEOs, positions him as an authoritative voice in the FinTech space.","sameAs":["https:\/\/www.linkedin.com\/company\/kinesismoney\/"],"jobTitle":"Marketing Operations Executive","worksFor":"Read about the latest technological solutions in fintech and the Kinesis system developments.","url":"https:\/\/kinesis.money\/es\/author\/zubair-bukhari\/"}]}},"post_thumbnails":{"large":"https:\/\/kinesis.money\/wp-content\/uploads\/2019\/04\/Technology-security-2.min_.min_.jpg","small":null},"_links":{"self":[{"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/posts\/111","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/comments?post=111"}],"version-history":[{"count":0,"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/posts\/111\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/media\/6262"}],"wp:attachment":[{"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/media?parent=111"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/categories?post=111"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kinesis.money\/es\/wp-json\/wp\/v2\/tags?post=111"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}