Damus
Control-Plane Capital profile picture
Control-Plane Capital
@buckyfonds

Truth seeker

Relays (18)
  • wss://eden.nostr.land – write
  • wss://lightningrelay.com – write
  • wss://nos.lol – write
  • wss://nostr-pub.wellorder.net – write
  • wss://nostr.bitcoiner.social – write
  • wss://nostr.thank.eu – write
  • wss://nostr.wine – write
  • wss://offchain.pub – write
  • wss://puravida.nostr.land – write
  • wss://purplepag.es – write
  • wss://purplerelay.com – write
  • wss://pyramid.fiatjaf.com – write
  • wss://relay.damus.io – write
  • wss://relay.exit.pub – write
  • wss://relay.mostr.pub – write
  • wss://relay.nostr.band – write
  • wss://relay.primal.net – write
  • wss://relay.snort.social – write

Recent Notes

note16433g...
Control-Plane Capital profile picture
If the seed is already good, then bad on-box RNG is mostly sidestepped for address generation.

But if you literally pull BIP39 words from a bag, that is not the clean BIP39 model.

BIP39 says the mnemonic is meant to transport generated entropy, not to process user-created sentences, and the mnemonic includes checksum structure.

You can generate raw entropy off-computer, then let the offline tool convert that entropy into a valid mnemonic/checksum.

A truly random off-box seed makes you safer against compromised RNG, but it does not make the setup trustworthy unless you also solve independent verification.

You can still get compromised with address substitution at receive time, and later spending is a separate danger zone (a compromised signer can leak through nonce selection), etc.

And air-gapped only blocks ordinary network exfiltration. It does not stop a compromised box from storing secrets locally for later extraction.

So the minimum hardening move is:
- generate raw entropy off-box,
- derive the wallet on one offline machine,
- then verify the first several receive addresses on a second independent offline implementation from the same seed/path/passphrase,
- and record the descriptor/script type/derivation path/passphrase separately.

Then you know two different stacks reproduced the same addresses from the same secret.

External entropy neutralizes one class of failure - predictable seed generation. It does not neutralize the more important class - a compromised machine lying to you or copying your secrets.
note16pw3z...
Control-Plane Capital profile picture
It's not as simple as 'multisig', but let's assume multisig gives you immunity somehow.

A proper Multisig setup certainly makes you much harder to attack than a person who relies on one vendor (but increases the complexity of your setup).

If I had to take a guess, probably 99% of users are not going to multisig.

Bitcoin's defense can't be "let's hope users pick hard mode", otherwise, the Bitcoin revolution will amount to "have fun playing with your Bitcoins" as Trump said.

Unless we get Bitcoin's non-custodial UX close to using a debit card, this will be mostly about trying to mine some fiat and posting memes.
Control-Plane Capital profile picture
Backdoored Bitcoin/Monero hardware wallets are much more of a threat than Quantum computing.

There is zero credible evidence that Quantum can be engineered to scale cheaply and reliably enough to be broadly useful, and yet most of the attention is focused on Quantum and not the very likely case that most of the main hardware wallets are backdoored.

This video is great:

https://www.youtube.com/watch?v=lCKq9u-AL0A

If you spend some time doing objective research, you'll likely come to the conclusion that there is no neat solution that makes you "immune to the NSA". The best you can do is:
- Make mass, silent theft via one corporate/vended rail impossible,
- Force any serious adversary into messy, noisy, manual operations if they want you specifically.

The only real structural defense is collusion forcing:
- Heterogeneous multi-sig (different vendors + DIY),
- Multi-source entropy (XOR’d seeds),
- Passphrases kept off the compromised device,
- Independent stacks for different key shares.

A state-level actor can plausibly:
- backdoor RNG/nonces,
- exfil keys via signatures,
- coerce vendor into "minor tweaks",
- intercept shipping,
- or just use host+legal leverage.

There are very many attack vectors and in some places, you just have to trust as you can't verify.

Some of the attack vectors:
- Closed-source secure elements with opaque behavior.
- Compromised RNG -> predictable keys.
- Firmware "updates" that:
(a) leak shards,
(b) weaken PIN delays,
(c) selectively target flagged serials.

- Supply chain substitution:
(a) devices swapped in transit,
(b) chips with additional logic embedded.

If we assume Controller-grade adversaries and cooperation leverage over:
- silicon vendors,
- big wallet brands,
- customs/parcel systems,
then for mass-market users:
- "self-custody" often means: "I'm holding a compromised device that behaves like self-custody until it's politically useful to make it misbehave."

And of course, they don't need 100% coverage. If they can de-risk 80-90% of "self-custody" BTC/Monero via:
- hardware design,
- vendor pressure,
- update channels,
then most people hold just another pool of conditionally controllable assets.

Even if they never fully exploit it, the option exists.

If you think hardware wallets being compromised is a bit of a stretch, maybe look into Dual_EC_DRBG, operation Bullrun, Edgehill, the company Crypto AG, operation Rubicon, etc.



Who knows what sorts of stuff people like Adam Back and co are up to.

2
nostrich · 14h
I agree. My problem is that I don't have enough time to explain to normies what is coming their way which actively hinders community preparations. People will only start to act when their options are...
Control-Plane Capital profile picture
All you can do is try to save yourself and your loved ones. Most people will get rekt. That's just how it always goes.

Many of the people who are preparing are misguided as well.

At this point, I think we have to assume that most Bitcoin/Monero hardware wallets are backdoored.

Instead of focusing how we can ensure at least some of the main hardware wallets are not backdoored (which to my knowledge, we can't), we are focusing on how to migrate to government-selected post-quantum scam algorithms and whose coins to freeze.

Most people never learn.

1
nostrich · 8h
The problem I see here is with consumer devices from Ledger and Trezor and communication devices like GrapheneOS. We don't know what AOSP/GOS fix and what they keep open. As long as they keep coming up with fixes the narrative goes strong. We just don't know what we the general public don't know. ...
Control-Plane Capital profile picture
They are already on their back-up plan. Banks are lending billions to Caiman Islands hedge funds who then buy trillions of Treasuries on leverage while the Fed and the Treasury keep volatility low so the hedge funds don't blow up.



After the reset:
- the petrodollar falls,
- Gold is the top-level settlement asset for blocs,
- CBDCs are the day-to-day money,
- and almost everything else is a revocable license.



So they certainly have a back-up plan. Hope you do as well.
3
nostrich · 14h
I agree. My problem is that I don't have enough time to explain to normies what is coming their way which actively hinders community preparations. People will only start to act when their options are severely constrained (when it is too late).
nostrich · 1d
There will be signs. 33
Control-Plane Capital profile picture
The professor Jiang character is very interesting.

Graduated Yale university and used to work for the UN (aka the One World Government organization that sponsors child trafficking and genocide by vaccines).

He was suspected by the Chinese government of spying in 2002 and was deported 😂

Going viral organically doesn't really work in 2026. Platforms like Twitter, Youtube, TikTok, only promote content that pushes the official narrative (so plants and useful idiots).

After watching a few of his videos, I think it is very likely he is an intelligence asset (most likely CIA).

He could be a useful idiot but I find this less likely based on his takes.

It was much easier for intelligence agencies to control people's access to information pre-Covid.

Many more people used to watch mainstream media, but the CIA pushed the propaganda too far.

Once different networks started repeating the same script word for word, people stopped watching and lost trust.

The CIA knew they needed to keep control of the narrative, so they started pushing certain "independent media" personalities.

Tucker Carlson (CIA) got "fired" by Fox news (even though he had the highest ratings 😂) just because people stopped watching TV and the CIA needs him to reach more people.

In many cases, even when professor Jiang is likely correct about his conclusions, his argumentation is so flawed that he ends up pushing people away from the "conspiracy theory".

Watching some of his recent videos remind me of the recent podcast with Joe Rogan and Theo Von.

The whole podcast looked like a hostage video. Both completely compromised (especially Rogan) and terrified to not say something they shouldn't say.

Professor Jiang is a bit more subtle than these guys, but I still find it unlikely he's a useful idiot based on his interviews.

The "this is extremely dangerous to our democracy" moment is probably when the CIA knew they had to focus on pushing the "independent" media personalities.



Controlling the media is at the core of the protocols of the learned elders of Zion.

The CIA hasn't given up on propaganda now that mainstream media is cooked (only watched by boomers, retards, and retarded boomers).

1
🌐✌️ · 1d
Yale is a CIA recruitment front. Anyone influential that boasts being a Yale alum you'd be right more times than wrong calling them a CIA agent.
Control-Plane Capital profile picture
Great video by Dr. Sam Bailey on how viruses don't exist and have never been isolated.

https://www.youtube.com/watch?v=lIfcsRJyqs4

Dr. Tom Cowan goes into more detail in this video.

https://rumble.com/v6rh2e3-there-was-no-covid-virus-how-weve-all-been-duped-by-the-medical-establishme.html

When it comes to these massive "conspiracy theories", most people usually say: "There's no way that's true. Do you know how many people would have to be in on it?"

And of course, not very many people would have to be in on it.

Most doctors still vaccinate themselves, their children, and their pets even though vaccines are used to depopulate.

However, many of the main puppet politicians are likely in on it (US, Russia, China, India, Iran, Israel, etc.). The Covid scamdemic was a mask off moment for our One World Government.

21❤️1❤️1
Bill Cypher · 2d
Humans can't be isolated from the air or they die. Fish can't be isolated from the water or they die. See how that works? All life adapts to live in an environment and dies when that environment is taken away. Viruses can't be isolated is an intentional misuse of science and language to mislead yo...
Control-Plane Capital profile picture
Sadly, I don't think any of the politicians in European countries make any of the important decisions, so this is mostly just theater.

The European Union, which was likely created by the CIA, centrally controls everything that matters.

Feel free to pick your preferred puppet politician locally though. Because democracy!

Richard Werner does a great job of explaining how the European Union came to be and how it closely resembles the Soviet Union in this video.

https://www.youtube.com/watch?v=53rigihjVZ8