{"id":21596,"date":"2020-10-02T11:39:28","date_gmt":"2020-10-02T10:39:28","guid":{"rendered":"https:\/\/www.kaspersky.co.uk\/blog\/safe-cryptotrading-for-dummies\/21596\/"},"modified":"2020-10-02T11:39:28","modified_gmt":"2020-10-02T10:39:28","slug":"safe-cryptotrading-for-dummies","status":"publish","type":"post","link":"https:\/\/www.kaspersky.co.uk\/blog\/safe-cryptotrading-for-dummies\/21596\/","title":{"rendered":"Safe cryptotrading 101"},"content":{"rendered":"<p>Ten years after the emergence of the first Bitcoin exchange, cryptocurrency landscape still resembles the Wild West. For some, one good decision can reap profits of several hundred percent while others can lose everything in a single day. How can you protect your initial capital against exchange rate fluctuations, and your profit against fraudsters?<\/p>\n<h2>How to choose a cryptocurrency and minimize the risks<\/h2>\n<p>The first step is deciding which cryptocurrency you want to invest in. There are no hard-and-fast rules here; almost any token <a href=\"https:\/\/en.wikipedia.org\/wiki\/Cryptocurrency_bubble\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">can soar one day and collapse the next<\/a>. A novice cryptoinvestor needs a lot of luck to anticipate these movements. That said, you can take a few measures to protect your investment.<\/p>\n<p>Total newcomers should choose a currency such as Bitcoin or Ethereum with a track record and demand among traders. Such currencies tend not to surge in price as quickly as altcoins (little-known cryptocurrencies), and in case you need to offload tokens in a hurry, you\u2019ll have an easier time finding a buyer for them. You can view a list of the most popular currencies and their exchange-rate dynamics <a href=\"https:\/\/coinmarketcap.com\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">here<\/a>, for example; higher market capitalization usually means lower risk.<\/p>\n<p>If you\u2019re an aggressive investor, sure of your abilities and prepared to risk your spare cash, take a look at up-and-coming altcoins. They are cheaper and promise faster profits, but they also come with disadvantages, such as low demand among traders, which, as mentioned, makes them hard to convert into real money. And don\u2019t put all your eggs in one basket \u2014 invest in different cryptocurrencies to hedge your bets.<\/p>\n<h2>Read the small print<\/h2>\n<p>When selecting a cryptocurrency and an exchange, don\u2019t get swept away by fantastically generous offers. Even in the unique environment of cryptocurrency investment, there\u2019s no such thing as a free lunch. If you\u2019re promised super profits, look for the catch.<\/p>\n<p>Recall the cautionary tale of the <a href=\"https:\/\/bitcoinmagazine.com\/articles\/how-the-plustoken-scam-absconded-with-over-1-percent-of-the-bitcoin-supply\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Chinese service PlusToken<\/a>, which promised investors a return of 10%\u201330% per month. More than 3 million people (many not in China) took the bait, making PlusToken worth $17 billion in its prime, in the spring of 2019.<\/p>\n<p>Early investors did get their promised return, but others were less fortunate. The \u201crevolutionary platform\u201d was nothing more than a Ponzi scheme. Chinese authorities arrested some of the scammers, but most of the money vanished without a trace.<\/p>\n<p>Most Ponzi schemes don\u2019t go as far as PlusToken did, but that doesn\u2019t mean their creators are any less crafty. For example, the <a href=\"https:\/\/www.zdnet.com\/article\/uk-court-shuts-down-cryptocurrency-platform-after-losing-1-5-million-in-client-funds\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">XtraderFX platform<\/a>, recently closed down in the United Kingdom, used well-known, trusted faces from the worlds of TV and finance to fraudulently advertise its services.<\/p>\n<p>Typical signs of dubious cryptoprojects are:<\/p>\n<ul>\n<li>The people on the project team have no previous mentions in cryptorelated news. In some cases, the project team might even contain the <a href=\"https:\/\/blockgeeks.com\/guides\/how-to-invest-in-cryptocurrencies\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">faces of famous actors<\/a> under different names, but that is rare;<\/li>\n<li>The cryptocurrency creators promise guaranteed profits. This smells of a Ponzi scheme;<\/li>\n<li>The project code repository on GitHub is almost never updated. That means either no such project exists, or no one is permanently assigned to it.<\/li>\n<\/ul>\n<p>If any of the above apply to your favored cryptocurrency, rethink your involvement.<\/p>\n<h2>What are cryptowallets, and how do they store tokens?<\/h2>\n<p>Tokens are stored in cryptowallets, so you need one of those. This <a href=\"https:\/\/www.kaspersky.com\/blog\/cryptowallets\/22025\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">previous post<\/a> discusses how they work and how to choose the most secure one.<\/p>\n<p>In a nutshell, \u201chot\u201d and \u201cwarm\u201d wallets are software-based, permanently connected to the Internet, and allow for the quick transference of funds. However they are relatively vulnerable to hacking because of that constant Internet connection. If you\u2019re going to use a hot wallet, be sure to enable <a href=\"https:\/\/encyclopedia.kaspersky.com\/glossary\/two-factor-authentication\/?utm_source=kdaily&amp;utm_medium=blog&amp;utm_campaign=termin-explanation\" target=\"_blank\" rel=\"noopener noreferrer\">two-factor authentication<\/a> to increase security and make hacking, as happened to <a href=\"https:\/\/www.reddit.com\/r\/Bitcoin\/comments\/1pxcif\/i_just_lost_301btc_70000_on_blockchaininfo_use\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">one investor who lost more than $70,000<\/a>, harder. And it\u2019s better if the two-factor authentication code arrives not by text, but through an app or by other means, to eliminate the risk of SIM cloning.<\/p>\n<p>More secure \u201ccold\u201d wallets are standalone devices. Usually resembling a flash drive or keychain, the most popular models cost about $50 to $200.<\/p>\n<p>Cryptoexchanges provide users with a hot wallet, but we don\u2019t recommend keeping all of your tokens in it, because trading platforms are <a href=\"https:\/\/www.wired.com\/story\/hack-binance-cryptocurrency-exchange\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">constantly in the crosshairs of cybercriminals<\/a>. Use it only for near-term transactions, and store most of your assets in a cold wallet.<\/p>\n<p>Also, save any passwords and codes you see while setting up and using your wallet. For your own safety, many wallet developers display them only once. Jot them down on paper if you\u2019re sure you won\u2019t lose them (or children won\u2019t scribble over them, or anything else might compromise them), but no matter how confident you are, secure storage, such as a <a href=\"https:\/\/www.kaspersky.co.uk\/password-manager?icid=gb_kdailyplacehold_acq_ona_smm__onl_b2c_kasperskydaily_wpplaceholder____kpm___\" target=\"_blank\" rel=\"noopener\">password manager<\/a>, is safer.<\/p>\n<p>Remember: If you forget a key, you will not be able to restore access to your cryptowallet, and your assets will be lost. You don\u2019t want to emulate the Silicon Valley worker who accidentally threw out a flash drive with a wallet worth millions, do you?<\/p>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kpm-download\">\n<h2>How cryptocurrency gets stolen without hacking<\/h2>\n<p>Sometimes attackers don\u2019t even need direct access to a victim\u2019s wallet to steal their money. Sometimes, owners just spill the beans.<\/p>\n<p>In the middle of 2020, for example, scammers <a href=\"https:\/\/www.theverge.com\/2020\/7\/15\/21326200\/elon-musk-bill-gates-twitter-hack-bitcoin-scam-compromised\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">compromised<\/a> the Twitter accounts of Elon Musk, Bill Gates, Kanye West, and several other celebrities, and then posted promises on their behalf to double the number of coins any users sent. In just a few hours, the scammers enriched themselves by more than $100,000.<\/p>\n<p>Even if you\u2019re sure you would never be duped that way, stay vigilant; attack schemes are constantly evolving. If someone offers you free coins, think carefully about what their motives might be. And if an offer involves a request to deposit a certain amount in advance, most likely you\u2019re being lured into a trap.<\/p>\n<p>Bear in mind that cryptocurrencies attract scammers like a flame attracts moths, because such projects are speculative by nature, and cybercriminals exploit the risk-taking nature of cryptoinvestors.<\/p>\n<h2>How to stay protected when trading cryptocurrencies<\/h2>\n<p>Using a secure communication channel for all of your cryptotransactions is vital. If you access a platform\u2019s website using public Wi-Fi, for example, criminals can intercept transaction details or spoof a Web page to steal your assets.<\/p>\n<p>Trading over your home network rather than a public one is safer, but you need to secure it properly. For starters, you should replace the default router password with one of your own. The factory password is often the same for all routers of the same model, making your Wi-Fi vulnerable to <a href=\"https:\/\/encyclopedia.kaspersky.com\/glossary\/brute-force\/?utm_source=kdaily&amp;utm_medium=blog&amp;utm_campaign=termin-explanation\" target=\"_blank\" rel=\"noopener noreferrer\">brute-force attacks<\/a>.<\/p>\n<p>In any event, it is always best to conduct all cryptotrading over an encrypted VPN channel, which adds an extra layer of security.<\/p>\n<p>When choosing a VPN service, pay attention to the connection speed (which depends on the number and quality of the provider\u2019s server pool) and the availability of a kill switch. The latter is especially important for high-risk transactions: If the secure communication channel drops for any reason, the kill switch automatically disconnects your device from the Internet, preventing data from being sent unencrypted.<\/p>\n<p>For cryptoinvestors, we recommend our <a href=\"https:\/\/www.kaspersky.co.uk\/vpn-secure-connection?icid=gb_kdailyplacehold_acq_ona_smm__onl_b2c_kasperskydaily_wpplaceholder____vpn___\" target=\"_blank\" rel=\"noopener\">Kaspersky VPN Secure Connection<\/a>, which is optimized for such tasks.<\/p>\n<p>That, of course, is in addition to running a reliable security solution <a href=\"https:\/\/www.kaspersky.co.uk\/premium?icid=gb_bb2022-kdplacehd_acq_ona_smm__onl_b2c_kdaily_lnk_sm-team___kprem___\" target=\"_blank\" rel=\"noopener\">on your computer or smartphone<\/a>. A lot of money circulates in the cryptoworld, and that naturally entices cybercriminals. So, unfortunately, the chances of encountering a malware specialized for stealing cryptowallet keys are fairly high.<\/p>\n<h2>Summary<\/h2>\n<ul>\n<li>Study the market before signing up to an exchange, and don\u2019t dabble in risky transactions \u2014 at least to start with.<\/li>\n<li>Diversify your risks by investing in several cryptocurrencies to hedge against sudden price falls.<\/li>\n<li>Carefully examine altcoins before investing to avoid Ponzi schemes.<\/li>\n<li>Keep the bulk of your cryptocurrency in an offline (aka \u201ccold\u201d) wallet and your password in a <a href=\"https:\/\/www.kaspersky.co.uk\/password-manager?icid=gb_kdailyplacehold_acq_ona_smm__onl_b2c_kasperskydaily_wpplaceholder____kpm___\" target=\"_blank\" rel=\"noopener\">safe place<\/a>.<\/li>\n<li>Don\u2019t swallow promises of free coins, even \u2014 or perhaps especially \u2014 from celebrities: Their accounts may have been hacked, but even if they haven\u2019t, it\u2019s almost certainly a hoax.<\/li>\n<li>Protect your Internet connection, and install an <a href=\"https:\/\/www.kaspersky.co.uk\/premium?icid=gb_bb2022-kdplacehd_acq_ona_smm__onl_b2c_kdaily_lnk_sm-team___kprem___\" target=\"_blank\" rel=\"noopener\">antivirus<\/a> on all devices you use for cryptotrading.<\/li>\n<\/ul>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"ksec\">\n","protected":false},"excerpt":{"rendered":"<p>Decided to invest in cryptocurrency? Read our guide to avoid the most common rookie mistakes and not lose money.<\/p>\n","protected":false},"author":2463,"featured_media":21597,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[7,9],"tags":[2672,374,1922,3044,1998,1610,502,131,422],"class_list":{"0":"post-21596","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-products","8":"category-tips","9":"tag-tips","10":"tag-bitcoin","11":"tag-cryptocurrencies","12":"tag-cryptowallets","13":"tag-ethereum","14":"tag-kaspersky-secure-connection","15":"tag-products-2","16":"tag-tips-2","17":"tag-vpn"},"hreflang":[{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/safe-cryptotrading-for-dummies\/21596\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/safe-cryptotrading-for-dummies\/21964\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/safe-cryptotrading-for-dummies\/17442\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/safe-cryptotrading-for-dummies\/23408\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/safe-cryptotrading-for-dummies\/20230\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/safe-cryptotrading-for-dummies\/24023\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/safe-cryptotrading-for-dummies\/22999\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/safe-cryptotrading-for-dummies\/29193\/"},{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/safe-cryptotrading-for-dummies\/8888\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/safe-cryptotrading-for-dummies\/37224\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/safe-cryptotrading-for-dummies\/15763\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/safe-cryptotrading-for-dummies\/16180\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/safe-cryptotrading-for-dummies\/14022\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/safe-cryptotrading-for-dummies\/25344\/"},{"hreflang":"zh","url":"https:\/\/www.kaspersky.com.cn\/blog\/safe-cryptotrading-for-dummies\/12029\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/safe-cryptotrading-for-dummies\/29329\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/safe-cryptotrading-for-dummies\/26179\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/safe-cryptotrading-for-dummies\/22960\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/safe-cryptotrading-for-dummies\/28249\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/safe-cryptotrading-for-dummies\/28083\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.co.uk\/blog\/tag\/tips-2\/","name":"tips"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/posts\/21596","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/users\/2463"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/comments?post=21596"}],"version-history":[{"count":0,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/posts\/21596\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/media\/21597"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/media?parent=21596"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/categories?post=21596"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/tags?post=21596"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}