Can hardware wallets actually display the amount of funds leaving your control?How can I verify the authenticity of a ledger Nano s hardware wallet?Is it possible to design a hardware wallet that can allow operation of a routing Lightning node with the security level of a hardware wallet?Possibility of hardware wallets being 'unsupported' in the future?Can the Large Bitcoin Collider project 'break' into offline hardware wallets like the Nano Ledger S?If anyone with your seed phrase can generate your wallet private keys, what is the advantage of a hardware wallet?Review sites for the hardware wallets?

Rampant sharing of authorship among colleagues in the name of "collaboration". Is not taking part in it a death knell for a future in academia?

Why would an invisible personal shield be necessary?

Microgravity indicators

What is a good example for artistic ND filter applications?

Boots or trail runners with reference to blisters?

Exploiting the delay when a festival ticket is scanned

Should I intervene when a colleague in a different department makes students run laps as part of their grade?

Correct word for a little toy that always stands up?

Why are we moving in circles with a tandem kayak?

May a hotel provide accommodation for fewer people than booked?

Did Vladimir Lenin have a cat?

Why didn't Stark and Nebula use jump points with their ship to go back to Earth?

Why does one get the wrong value when printing counters together?

Prepare a user to perform an action before proceeding to the next step

Do the books ever say oliphaunts aren’t elephants?

Would people understand me speaking German all over Europe?

Is it possible for a particle to decay via gravity?

Coworker mumbles to herself when working, how to ask her to stop?

How to have poached eggs in "sphere form"?

When encrypting twice with two separate keys, can a single key decrypt both steps?

What Marvel character has this 'W' symbol?

How to find parallel tangent lines

Circle symbol compatible with square and triangle

Is it possible to tell if a child will turn into a Hag?



Can hardware wallets actually display the amount of funds leaving your control?


How can I verify the authenticity of a ledger Nano s hardware wallet?Is it possible to design a hardware wallet that can allow operation of a routing Lightning node with the security level of a hardware wallet?Possibility of hardware wallets being 'unsupported' in the future?Can the Large Bitcoin Collider project 'break' into offline hardware wallets like the Nano Ledger S?If anyone with your seed phrase can generate your wallet private keys, what is the advantage of a hardware wallet?Review sites for the hardware wallets?






.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty margin-bottom:0;








1















It would seem the answer is no, because the hardware wallet is not a full node and cannot know the total value represented by the input transactions. It must trust the host software for this. Am I correct, or did I miss something?



Basically, the concern is that a malicious host software could trick the user+wallet into signing a transaction that has a low amount of output value but a high total amount of input value. This would convert the user's Bitcoins into a miner reward. Though admittedly the motivation behind such an attack would be low because the attacker can't profit from it.










share|improve this question






























    1















    It would seem the answer is no, because the hardware wallet is not a full node and cannot know the total value represented by the input transactions. It must trust the host software for this. Am I correct, or did I miss something?



    Basically, the concern is that a malicious host software could trick the user+wallet into signing a transaction that has a low amount of output value but a high total amount of input value. This would convert the user's Bitcoins into a miner reward. Though admittedly the motivation behind such an attack would be low because the attacker can't profit from it.










    share|improve this question


























      1












      1








      1








      It would seem the answer is no, because the hardware wallet is not a full node and cannot know the total value represented by the input transactions. It must trust the host software for this. Am I correct, or did I miss something?



      Basically, the concern is that a malicious host software could trick the user+wallet into signing a transaction that has a low amount of output value but a high total amount of input value. This would convert the user's Bitcoins into a miner reward. Though admittedly the motivation behind such an attack would be low because the attacker can't profit from it.










      share|improve this question














      It would seem the answer is no, because the hardware wallet is not a full node and cannot know the total value represented by the input transactions. It must trust the host software for this. Am I correct, or did I miss something?



      Basically, the concern is that a malicious host software could trick the user+wallet into signing a transaction that has a low amount of output value but a high total amount of input value. This would convert the user's Bitcoins into a miner reward. Though admittedly the motivation behind such an attack would be low because the attacker can't profit from it.







      hardware-wallet






      share|improve this question













      share|improve this question











      share|improve this question




      share|improve this question










      asked 8 hours ago









      HypertableHypertable

      584 bronze badges




      584 bronze badges























          1 Answer
          1






          active

          oldest

          votes


















          3














          That is correct, a hardware wallet does not have access to any information from the blockchain except that provided by the host computer. So it does not know anything about the amounts unless the host provides it to them.



          Because of this, hardware wallets have some extra requirements for signing. Many devices, for non-segwit inputs, require the entire previous transaction to be sent to the device. This way they can compute its txid and compare that to the txid specified for that input. In this way they can be sure of the amounts being sent as they can look at the output amount(s) in the previous transaction.



          However Segwit actually fixes this issue for them. In Segwit, the amount for the input being signed is part of the data that is signed. So it directly commits to the amount being sent and therefore the host cannot lie about that amount or it will receive an invalid signature.






          share|improve this answer



























            Your Answer








            StackExchange.ready(function()
            var channelOptions =
            tags: "".split(" "),
            id: "308"
            ;
            initTagRenderer("".split(" "), "".split(" "), channelOptions);

            StackExchange.using("externalEditor", function()
            // Have to fire editor after snippets, if snippets enabled
            if (StackExchange.settings.snippets.snippetsEnabled)
            StackExchange.using("snippets", function()
            createEditor();
            );

            else
            createEditor();

            );

            function createEditor()
            StackExchange.prepareEditor(
            heartbeatType: 'answer',
            autoActivateHeartbeat: false,
            convertImagesToLinks: false,
            noModals: true,
            showLowRepImageUploadWarning: true,
            reputationToPostImages: null,
            bindNavPrevention: true,
            postfix: "",
            imageUploader:
            brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
            contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
            allowUrls: true
            ,
            noCode: true, onDemand: true,
            discardSelector: ".discard-answer"
            ,immediatelyShowMarkdownHelp:true
            );



            );













            draft saved

            draft discarded


















            StackExchange.ready(
            function ()
            StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fbitcoin.stackexchange.com%2fquestions%2f89508%2fcan-hardware-wallets-actually-display-the-amount-of-funds-leaving-your-control%23new-answer', 'question_page');

            );

            Post as a guest















            Required, but never shown

























            1 Answer
            1






            active

            oldest

            votes








            1 Answer
            1






            active

            oldest

            votes









            active

            oldest

            votes






            active

            oldest

            votes









            3














            That is correct, a hardware wallet does not have access to any information from the blockchain except that provided by the host computer. So it does not know anything about the amounts unless the host provides it to them.



            Because of this, hardware wallets have some extra requirements for signing. Many devices, for non-segwit inputs, require the entire previous transaction to be sent to the device. This way they can compute its txid and compare that to the txid specified for that input. In this way they can be sure of the amounts being sent as they can look at the output amount(s) in the previous transaction.



            However Segwit actually fixes this issue for them. In Segwit, the amount for the input being signed is part of the data that is signed. So it directly commits to the amount being sent and therefore the host cannot lie about that amount or it will receive an invalid signature.






            share|improve this answer





























              3














              That is correct, a hardware wallet does not have access to any information from the blockchain except that provided by the host computer. So it does not know anything about the amounts unless the host provides it to them.



              Because of this, hardware wallets have some extra requirements for signing. Many devices, for non-segwit inputs, require the entire previous transaction to be sent to the device. This way they can compute its txid and compare that to the txid specified for that input. In this way they can be sure of the amounts being sent as they can look at the output amount(s) in the previous transaction.



              However Segwit actually fixes this issue for them. In Segwit, the amount for the input being signed is part of the data that is signed. So it directly commits to the amount being sent and therefore the host cannot lie about that amount or it will receive an invalid signature.






              share|improve this answer



























                3












                3








                3







                That is correct, a hardware wallet does not have access to any information from the blockchain except that provided by the host computer. So it does not know anything about the amounts unless the host provides it to them.



                Because of this, hardware wallets have some extra requirements for signing. Many devices, for non-segwit inputs, require the entire previous transaction to be sent to the device. This way they can compute its txid and compare that to the txid specified for that input. In this way they can be sure of the amounts being sent as they can look at the output amount(s) in the previous transaction.



                However Segwit actually fixes this issue for them. In Segwit, the amount for the input being signed is part of the data that is signed. So it directly commits to the amount being sent and therefore the host cannot lie about that amount or it will receive an invalid signature.






                share|improve this answer













                That is correct, a hardware wallet does not have access to any information from the blockchain except that provided by the host computer. So it does not know anything about the amounts unless the host provides it to them.



                Because of this, hardware wallets have some extra requirements for signing. Many devices, for non-segwit inputs, require the entire previous transaction to be sent to the device. This way they can compute its txid and compare that to the txid specified for that input. In this way they can be sure of the amounts being sent as they can look at the output amount(s) in the previous transaction.



                However Segwit actually fixes this issue for them. In Segwit, the amount for the input being signed is part of the data that is signed. So it directly commits to the amount being sent and therefore the host cannot lie about that amount or it will receive an invalid signature.







                share|improve this answer












                share|improve this answer



                share|improve this answer










                answered 7 hours ago









                Andrew ChowAndrew Chow

                37.2k4 gold badges28 silver badges68 bronze badges




                37.2k4 gold badges28 silver badges68 bronze badges






























                    draft saved

                    draft discarded
















































                    Thanks for contributing an answer to Bitcoin Stack Exchange!


                    • Please be sure to answer the question. Provide details and share your research!

                    But avoid


                    • Asking for help, clarification, or responding to other answers.

                    • Making statements based on opinion; back them up with references or personal experience.

                    To learn more, see our tips on writing great answers.




                    draft saved


                    draft discarded














                    StackExchange.ready(
                    function ()
                    StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fbitcoin.stackexchange.com%2fquestions%2f89508%2fcan-hardware-wallets-actually-display-the-amount-of-funds-leaving-your-control%23new-answer', 'question_page');

                    );

                    Post as a guest















                    Required, but never shown





















































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown

































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown







                    Popular posts from this blog

                    Invision Community Contents History See also References External links Navigation menuProprietaryinvisioncommunity.comIPS Community ForumsIPS Community Forumsthis blog entry"License Changes, IP.Board 3.4, and the Future""Interview -- Matt Mecham of Ibforums""CEO Invision Power Board, Matt Mecham Is a Liar, Thief!"IPB License Explanation 1.3, 1.3.1, 2.0, and 2.1ArchivedSecurity Fixes, Updates And Enhancements For IPB 1.3.1Archived"New Demo Accounts - Invision Power Services"the original"New Default Skin"the original"Invision Power Board 3.0.0 and Applications Released"the original"Archived copy"the original"Perpetual licenses being done away with""Release Notes - Invision Power Services""Introducing: IPS Community Suite 4!"Invision Community Release Notes

                    Canceling a color specificationRandomly assigning color to Graphics3D objects?Default color for Filling in Mathematica 9Coloring specific elements of sets with a prime modified order in an array plotHow to pick a color differing significantly from the colors already in a given color list?Detection of the text colorColor numbers based on their valueCan color schemes for use with ColorData include opacity specification?My dynamic color schemes

                    Ласкавець круглолистий Зміст Опис | Поширення | Галерея | Примітки | Посилання | Навігаційне меню58171138361-22960890446Bupleurum rotundifoliumEuro+Med PlantbasePlants of the World Online — Kew ScienceGermplasm Resources Information Network (GRIN)Ласкавецькн. VI : Літери Ком — Левиправивши або дописавши її