Skip to content
Curriculum 10 posts · ~1.8h total

Wallet Security & Custody Architecture

MPC, HSM, and multisig - after the Bybit postmortem

Institutional custody from first principles: the $1.5B Bybit attack chain, MPC-CMP vs HSM vs multisig tradeoffs, hot/warm/cold tiering, AWS Nitro Enclaves for signing, and DPRK threat modelling.

What you'll master

  • MPC-CMP vs GG20 vs FROST threshold schemes
  • AWS Nitro Enclaves with vsock + KMS PCR policy
  • Hot/warm/cold wallet tiering
  • DPRK TraderTraitor TTP mapping
  • Key ceremony procedures

Why this matters

Bybit lost $1.5B not because their keys were weak - but because the interface operators used to review transactions was compromised. Custody architecture is not about key strength; it is about removing trust from every layer of the stack. These ten posts are the curriculum I wish existed before that incident.

The Curriculum - 10 modules