Lightning development update:
One of the many benefits of Lightning in the BitBoxApp is that you can receive a transaction on your desktop and spend it on your smartphone (and vice versa)!
Watch how the received transaction immediately shows up in both BitBoxApps:
BitBox
support@bitbox.swiss
npub1tg77...cxmt
Makers of the BitBox swiss hardware wallet.
Proudly open source.


Undecided about what hardware wallet to get? π€
Here's the tutorial you will probably never need:
β© Setting up the BitBox02 in less than 2 minutes. β©
π Our Black Friday Sale is on! π
Save 10% OFF EVERYTHING
or get 21% OFF our Black Friday Bundle, which contains everything you could need for your secure self custody!
Head over to bitbox.shop and take control of your coins now! π


Should we update our cap design?


π¨ Two days ago, we received a concerning support request: An app that appeared to be the BitBoxApp asked the user to enter their recovery words.
This was clearly a phishing attempt by an attacker trying to steal the users funds.
Here's what happened: π
The victim has had his BitBox02 for multiple months already. One day, after plugging in their BitBox02, the BitBoxApp flashed and displayed the above screen.
Knowing he wasn't supposed to enter his recovery words on a computer, he immediately contacted our support. πͺ
Together with the victim, we figured out that a malicious BitBoxApp clone was placed on his computer. It does not replace the BitBoxApp, but is installed in another folder.
Once the original BitBoxApp has been opened, it minimizes the original BitBoxApp and displays the malicious "Bitbox.exe" over all other content.
The malware also appear to take screenshots to surveil the victim. π¨
We were able to trace the origin of the malware to a malicious website.
The victim used DuckDuckGo to search for "wasabi wallet" and ended up downloading a malicious installer.
This is an extremely easy mistake to make, as there are multiple phishing sites in the top results.
We have reached out to Wasabi Wallet and they assured us they do everything in their power to get rid of these fake sites.
It is necessary for DuckDuckGo to take action and make sure these malicious websites don't appear in their search results.
To make sure this does not happen to you, you should always verify exactly where you are downloading programs from.
This is also why we provide instructions on how to verify the signatures for our BitBoxApp before you run them:
Thank you again to the victim for helping us figure this out as quickly as possible!
Their fast and correct response made it possible for us to figure this out really fast and warn other users. We've already shipped them a small 'thank you' package to show our gratitude. π
In the end the BitBox02 did exactly what it was supposed to:
It protected the users wallet when their PC got compromised.
Would the victim have used a software wallet, chances are high that their money would have been stolen.

The victim has had his BitBox02 for multiple months already. One day, after plugging in their BitBox02, the BitBoxApp flashed and displayed the above screen.
Knowing he wasn't supposed to enter his recovery words on a computer, he immediately contacted our support. πͺ
Together with the victim, we figured out that a malicious BitBoxApp clone was placed on his computer. It does not replace the BitBoxApp, but is installed in another folder.
Once the original BitBoxApp has been opened, it minimizes the original BitBoxApp and displays the malicious "Bitbox.exe" over all other content.
The malware also appear to take screenshots to surveil the victim. π¨
We were able to trace the origin of the malware to a malicious website.
The victim used DuckDuckGo to search for "wasabi wallet" and ended up downloading a malicious installer.
This is an extremely easy mistake to make, as there are multiple phishing sites in the top results.
We have reached out to Wasabi Wallet and they assured us they do everything in their power to get rid of these fake sites.
It is necessary for DuckDuckGo to take action and make sure these malicious websites don't appear in their search results.
To make sure this does not happen to you, you should always verify exactly where you are downloading programs from.
This is also why we provide instructions on how to verify the signatures for our BitBoxApp before you run them:
GitHub
Release v4.39.0 Β· BitBoxSwiss/bitbox-wallet-app
Release notes
Bundle BitBox02 Bitcoin-only firmware version 9.15.0
Bundle BitBox02 Multi firmware version 9.15.0
Display the wallet root fingerpri...

We are happy to announce that we are supporting the Bitcoin Design Foundation with 3 million satoshis.
Their work on open source design has helped many apps become more user friendly. π
This donation was made possible by the bitcoin whitepaper copies sold in our shop.


With its invisible touch sensors on its sides, the BitBox02 keeps a stealthy appearance while having excellent flexibility for its inputs.
The 6 touch zones enable alphanumeric device passwords, which increase the security of your wallet compared to simple numerical passwords.
New blog post! π¨π
In our newest article we explore how Miniscript can be used for safer backups and show you how you can use Liana with the BitBox02 to create timelocked backup for your wallet.
TL;DR: π

BitBox Blog
Exploring Bitcoin Miniscript with Liana and the BitBox02
Create powerful recovery solutions for your Bitcoin wallet
We've seen an increase in posts about hotwallet hacks in the last couple of days:
reddit.com/r/CryptoCurrenβ¦
Don't keep large amounts of money in a hotwallet.
Upgrade your security and withdraw your coins to the easiest hardware wallet, the BitBox02:
bitbox.swiss/bitbox02/
Bringing Lightning to the BitBoxApp! β‘οΈ
We are exploring seamless, non-custodial Lightning payments directly within the BitBoxApp by partnering with Breeze.
Watch us pay a Bitrefill lightning invoice from within our BitBoxApp prototype:
If you wait long enough, the banks will make themselves obsolete! π


With its invisible touch buttons and OLED display, the BitBox02 remains stealthy when unplugged, showing no signs of being anything more than a microSD card reader. π€«


Should we add send to silent payment support to the BitBox02?
Here's Miniscript support! π
We have just released the BitBox02 Moterrascio update, which brings you Miniscript support, a security fix and various usability improvements!
Read all about it in our blog post:


BitBox Blog
BitBox 08.2023 Motterascio update
This update contains Miniscript support, a security fix and various usability enhancements
The new BitBox update is now available! π
It includes:
- Encrypted seed in RAM
- Removal of account limit
- Automatic account scan
- Redesigned settings page
- Option to skip microSD backup
- Option for 12-word seed
And much more! π
More info: ππ


BitBox Blog
BitBox 06.2023 Bellinzona update
This release adds security features, usability improvements and new features for advanced users
You asked for it and we implemented it. π
With the upcoming BitBoxApp update, you can choose to skip the microSD backup and create a 12 instead of a 24 word seed during setup.


Miniscript support on the BitBox02 is progressing nicely!
If you're wondering what Miniscript is, check out our three part series on it:

BitBox Blog
Understanding Bitcoin Miniscript
In this first part of our Miniscript series, we explain how Bitcoin Script works and why it's difficult to use in practice
With the upcoming BitBoxApp release, we are improving the way accounts work! π
When restoring a BitBox02 or plugging into a new host device, the BitBoxApp will automatically check if there are any used accounts.
You will also be able to create more than 5 bitcoin accounts!
