Events

ElevenPaths Talks Code for Devs

 

Latch Integration in a Cryptocurrency Wallet Using Exfiltration by Danilo Ninabanda, Ignacio Jiménez and Lucas Fernández

March 21, 2018. Don't miss this #CodeTalks4Devs in which we present a proyecto that was created in order to implement Latch as a extra security layer in a Coinbase cryptocurrency wallet. Join to the webinar!


#CodeTalks4Devs: Latch Integration in a Cryptocurrency Wallet Using Exfiltration

Code Talks for Devs webinar cybersecurity Latch Integration in a Cryptocurrency Wallet Using Exfiltration
Latch Integration in a Cryptocurrency Wallet Using Exfiltration Danilo Ninabanda, Ignacio Jiménez... March 21, 2018.
Code Talks for Devs webinar cybersecurity UAC-A-Mola, a Framework for Research, Detect and Mitigate UAC Bypasses
UAC-A-Mola, a Framework for Research, Detect and Mitigate... Pablo González y Santiago Hernández June 20, 2018.
Code Talks for Devs webinar cybersecurity Evil Foca in a nutshell
Evil Foca in a nutshell, get to know it! Álvaro Núñez-Romero July 18, 2018.
Code Talks for Devs webinar cybersecurity LiLaS, a Project to Protect Data Networks
LiLaS, a Project to Protect Data Networks Santiago Hernández August 22, 2018.
Code Talks for Devs webinar cybersecurity WordPress in Paranoid Mode
WordPress in Paranoid Mode Pablo González September 19, 2018.
Code Talks for Devs webinar cybersecurity How to Create a FOCA Plugin
How to Create a FOCA Plugin José Sperk October 17, 2018.
Code Talks for Devs webinar cybersecurity Joomla in Paranoid Mode
Joomla in Paranoid Mode Mateo González November 21, 2018.

This proyect chosen a Coinbase cryptocurrency wallet because it has wide documentation and several SDKs. Coinbase is a digital and multiplatform cryptocurrency wallet that supports several cryptocurrencies such as Bitcoin, Etherum or Litecoin. As there are Python SDKs for Coinbase and Latch, we decided start from scratch when creating the implementation. For this reason, Django and JQuery were chosen. This project has the aim of protecting all the functionalities of the wallet, blocking and redirecting to an error webpage when the Latch lock is closed.

On the other hand, accessing the application was implemented with a secret key and through OAuth. An exfiltration module was also added which allowed sharing the cryptocurrency wallet´s secret key between all the registered accounts.

In addition, protecting the Coinbase main account through 2FA using Latch was considered, making stronger both our wallet implementation and the official main server.

Find out more about this subject:
Latch Web