the willingness of an attacker to apply money to the problem.
I agree but I think the problem here is that hardware wallets don't give up their hashes easily so the attacker either knows a secret hardware backdoor in which case ciphers are entirely bypassed, or they know how to coax the hashes out of those devices. Has this become a thing? I know some of them are vulnerable to side channel attacks and some of them only use sha256 but I have not seen a simple way to extract the hashes, at least not in the forums I visit. There are a few really cheap hardware wallets that people have reverse engineered the firmware and worked backwards to extract pins but I think that is for specific models.
Is there a common attack vector that applies to all the hardware wallets to extract the hashes?
For hardware wallets, provided there are no backdoors/side channels/JTAG holes, they are probably safe from this rig.
But, the OP's original statement: "for your crypto wallet or personal notes/ diary" encompasses by far more than merely "hardware wallets". So the relative safety of hardware wallets as a minority subset is not overall indicative of the safety of your proposed method for all the other members of the majority of the set.
Comments
the willingness of an attacker to apply money to the problem.
I agree but I think the problem here is that hardware wallets don't give up their hashes easily so the attacker either knows a secret hardware backdoor in which case ciphers are entirely bypassed, or they know how to coax the hashes out of those devices. Has this become a thing? I know some of them are vulnerable to side channel attacks and some of them only use sha256 but I have not seen a simple way to extract the hashes, at least not in the forums I visit. There are a few really cheap hardware wallets that people have reverse engineered the firmware and worked backwards to extract pins but I think that is for specific models.
Is there a common attack vector that applies to all the hardware wallets to extract the hashes?
For hardware wallets, provided there are no backdoors/side channels/JTAG holes, they are probably safe from this rig.
But, the OP's original statement: "for your crypto wallet or personal notes/ diary" encompasses by far more than merely "hardware wallets". So the relative safety of hardware wallets as a minority subset is not overall indicative of the safety of your proposed method for all the other members of the majority of the set.
Very interesting conversation for me. Thank you! Specifically I want to encrypt a folder with VeraCrypt for my data.