Cointime

Download App
iOS & Android

The Wallet Segment: A Shining Star in the Crypto Winter–The Status Quo, Challenges and Opportunities

Validated Venture

1. Wallet

A cryptocurrency wallet is often referred to as a crypto wallet or digital wallet. In the Web3 world, a wallet does not only serve the role as managing assets by literal meaning, but also it is the necessary tool to participate in the Web3 world. Academically, a wallet takes custody of private keys, which can be deemed as the username and password of an account.

1.1 Public and Private Keys

In the concept of wallet, private keys, public keys and their respective mechanism are the underlying base. The following diagram reflects the relationship between random numbers, public and private keys, addresses, mnemonic phrase and KeyStore. It is briefly clarified as follows.

● Random number: A random number is to select a number randomly within a computer with 64 to the 16th power possibilities, a number approximately equal to the number of all atoms in the universe;

● Private key: a private key is generated by processing a random number, and a public key is asymmetrically encrypted (elliptic algorithm) based on it.

(a)Private keys and mnemonics: a converted mnemonic phrase to assist with memorizing the key.

(b)Private Key and KeyStore: KeyStore is a file format (JSON) for storing private keys. KeyStore is used to keep private keys in a convenient way without compromising security.

● Public key and address: a public key is derived from private key unilaterally. After hashing and format conversion by coding, a commonly seen address starting with “0x” is generated.

Compared to real wallet and account, public key is the address of the wallet, which can be understood as a bank account. Private key can be understood as “debit card number + CVV”, and the mnemonic phrase serves the same function. Therefore, the relationship can be expressed as “KeyStore + password = private key = debit card number + CVV”.

The above is an introduction to public and private key taking Ethereum as an example. Although the format and standard of non-Evm-compatible L1 chains are different, the underlying mechanisms and the process are the same.

1.2 Types of Wallets

The most critical thing about wallet is to distinct public and private keys. There are many ways to classify wallets, by generally accepted classification, it is summarized as the following:

●Criterion 1: According to whether the user holds the private key or not, it can be divided into decentralized wallet and centralized wallet. Users of decentralized wallets hold their own private keys, such as MetaMask, TokenPocket, imToken, etc.; while centralized wallets are also known as escrow wallets, i.e., the private key is in the custody of a third-party centralized organization, such as Binance, Huobi and other trading platforms.

● Criterion 2: Depending on whether the wallet private key is connected with the Internet, it can be divided into cold and hot wallets. The concept of cold wallets in a broad sense includes “paper wallets” that contain mnemonics, offline mobile phones, hardware wallets, etc. Hot wallets, on the other hand, are wallets whose private keys are connected to the Internet when signing for transactions, including wallets as APP, plug-in wallet on browsers, etc.

2. The Status Quo of the Wallet Segment

2.1 Overview

In terms of the number of users, total number of crypto users are around 300 million. According to data from statistica.com as of November 2022, total wallet users worldwide are approximately 85 million, an increase of about 6.3% from 80M at the end of 2021, and a decrease in the growth rate compared to that of the previous year. With expectation of next cycle to come after the end of current round of bear market, now is the dark before dawn.

In terms of revenue size, according to a study by future market insight, total revenue of the global crypto wallet market in 2022 is about $1.398 billion, and it is expected to exceed $3.371 billion in the next decade, with a compound annual growth rate of 9.2%, which demonstrates a high growth trend. The winners will still be winners, dominating the market by 35% of market share.

In terms of regional distribution, North America was an early player and still dominates with a market share of over 30.0% in revenue last year. There are several key players in the North America region, including Coinbase Global, Inc. and BitGo and BitPay among others. In June 2022, PayPal Holdings, Inc. announced that all eligible PayPal account holders in the U.S. can send and receive cryptocurrencies on PayPal, which has also accelerated the growth of wallet users to some extent. The second fastest growing regional market is Asia Pacific, particularly Mainland China and Hong Kong. The Asia Pacific region will play a crucial role in blockchain innovation. The region has large population with high financial awareness and technical enthusiasts, driving innovation in crypto wallets in the region.

2.2 Business model

Current business models of crypto wallets are evolving along with the industry development. In early days, most wallets (hot wallet) mainly served as private key storage and management tool, i.e., it was to store money. Until various on-chain apps came out in 2020, the main business model is by collecting transaction fees, and this revenue stream is relatively weak.

As Defi and cross-chain demand soared, crypto wallets have continued to launch various on-chain services such as built-in cross-chain, staking, flash pay, etc. Some have launched financial products, such as mining, wealth management and subscription of relevant information. Some companies embedded exchanges as a built-in function in the form of H5 in an attempt to start exchange services with the wallet as the portal.

After a study on most wallets offered on current market, ranging from average hot wallets, custodial wallets to hardware wallets, the revenue streams and business models are summarized as the following:

2.3 Leading Projects

From the publicly available information, the leading wallets are mostly big companies, either as internal product or as equity investment. Table 3 illustrates the participation method of big companies in wallets: one type is as direct development of big companies, such as MetaMask, Coinbase Wallet, wallet from Facebook; and the other type is as investment received from big companies, such as Trust Wallet with Binance’s investment, C98, etc.

Overall, Meatmask, a giant entry wallet, has the highest revenue (at $200M), with the second tier being wallets owned by Coinan, and the particular highlight being the Coin98 wallet, which focuses on aggregated transactions and DEFI and has a market cap of $2.1B. Among the fast-growing wallets, imToken and TokenPocket are the most well known, and in the Chinese community topping the list.

3. Challenges

In current market cycle (2020-present), the overall development of the wallet segment has been on the fast track that numerous innovations that have added momentum, such as DeFi Summer in 2020 and the blossom of L1 chains in 2021. However, user-friendliness, security, privacy and regulation have always been the challenges on the path.

3.1 User-friendliness

Wallets are more intricate than centralized treasury platforms: as long as exchanges or centralized WM platforms provide convenient services, users do not need to understand the whole logic, while wallets require every step of interaction to be completed by users themselves, which mandates some basic understandings of blockchain. Once any problem is encountered by users on authentication or interaction, there will be no customer service team from the wallet team, which hinders new users that do not have certain level of technical background from entering the Web3 world

Most wallet brands have poor interaction with users, and there are plenty of room for development, such as more user-friendly interactive anti-phishing (security) alerts can be inserted on the plug-in side and mobile side, more convenient settings and user-friendly NFT\Token integration tools can be added, and more widely applicable Dapp environment adaptations can be designed (Table 4). In addition to the interactive experience, the function/login /UI of wallet is different from that of the Web2 applications. Many new and existing users end up choosing traditional centralized wallets again due to the drawbacks mentioned above. While centralized wallets may be vulnerable to human manipulations, they are simple to use and the interface is user-friendly; if decentralized wallets were to desire more users, user-friendliness must be addressed.

3.2 Privacy and regulation

Discussions on privacy and compliance are inevitable in Web3, data privacy and compliance issue remain concerned by wallets. Recently, unauthorized privacy collection of MetaMask has eventually brought the privacy issue on the table. According to the updated privacy disclaimer of Alchemy in October, IP addresses, user settings, MAC addresses, cookie identifiers, mobile carrier, browser or device information, location information, internet service providers may be automatically collected or to obtain such personal information by third-party. On November 23, ConsenSys (the parent company of MetaMask and Infura) updated privacy policy and state that when Infura is used as the default RPC in MetaMask, the corresponding IP address and ETH address will be collected when the user initiates a transaction (Figure 3); it lighted the bomb for more aggressive discussions on privacy invasion.

The subject matter has sparked another discussion on decentralization, after all, one of the best features of the Web3 narrative is that users can take full control of their own data, disrupting the landscape that most platforms are in possession of user data. MetaMask, as the most popular wallet at the moment, violated the grain of most Web3 users. However, decentralization of data inevitably leads to a lack of regulation, making it difficult for any third parties and law enforcement agencies to step in when disputes or theft of assets are encountered.

Wallets are essentially the largest traffic portal in the Web3 ecosystem, but with current unstable business model, wallets are confronted with the intractable issues with compliance that wallet service providers, which offer exchange of digital assets, lending or borrowing, and hardware wallets should comply with the policies and regulations of the country where the services are provided.

3.3 Security

Wallets typically have a high level of security that no third-party is necessary, and wallet users have complete control over their assets in the wallet. Compared to centralized wallets, users of decentralized wallets are worry-free on misappropriation or abuse of authentication on assets by banks or exchanges. Furthermore, decentralized wallets are less dependent on centralized institutions, which is less likely to be subject to single point of failure or attacks. However, most current wallet users are responsible for managing their private keys and assets themselves, and it is more vulnerable to threats such as social engineering attacks and virus (Table 5).

The biggest security challenges for users remain the custody of private keys and anti-social-engineering-attacks. The lack of knowledge and awareness on security, as well as careless operating habits, can create excellent opportunities for hackers. For wallet developers, the underlying security of the wallet is also challenging. In addition to the open-source wallet code, developers must conduct thorough auditing on the security of the codes for each major update and the storage and management of the private keys.

4. Outlook

The Dapp ecosystem of wallets has grown significantly in the current market cycle (2020-present), and as a traffic portal for Web3, wallets have become a must-have for new users to enter the crypto world being one of the most critical blockchain infrastructures. The current influx of startups in the wallet segment compete in multiple ways, such as EOA wallets, smart contract wallets & MPC multi-sig wallets, etc. With a forward looking, the significance of wallet as portal will likely surpass all trading platforms and become the traffic hub for Web3, and a rapid growth may be first spotted in identity portal, payment portal, non-self-custodial wallets and multi-chain wallets.

4.1 As Identification to Enter Web3

Web3 is a decentralized version of the current Web2 Internet powered by blockchain and cryptographic technology. Not only does Web3 ensure the fairness of users in accessing the Internet, but users will be also able to control over their own data, as well as host their own websites and applications; transactions can be initiated at free will by crypto applications without the administrative privileges of a centralized company, bypassing the centralized power of Web2. The decentralized nature of Web3 offers a variety of advantages and endless possibilities. According to the GrandView report, the global Web 3.0 blockchain market size is expected to reach $33.53 billion by 2030, a compound growth rate of 44.9% from 2022 to 2030.

Web3 does not require a variety of different logins compared to Web2, and the decentralized wallets are compatible with all Web3 application ecosystems, which endows wallet with the most dominant status as Web3 traffic portal. According to MetaMask in July 2022 during the 6th anniversary retrospective that current total number of Metamask users exceeded 80 million, with more than 30 million are monthly active. Other wallets that disclosed user acquisition data, such as Trust and TokenPocket, have acquired users over 10 million, which is undoubtedly the most dominant traffic entrance in the crypto world, covering almost all mainstream cryptocurrency users. Wallet is expected to achieve the functions of off-chain KYC, on-chain user profiling, on-chain credit evaluation with the enormous user base, eventually realizing on-chain regulations and compliance.

Future crypto wallets will not only serve as identification portals in accessing any digital assets or virtual assets in Metaverse (land, real estate, game props, and many other NFTs), but also enhancing the ability engaging in projects that are suitable to on-chain indemnifications.

4.2 As Portal for Payments

Currently, retail cryptocurrency payments are still in the very early stage due to incomplete global regulatory environment and low awareness of cryptocurrency among merchants, etc. However, as cryptocurrency gradually becomes popular and the regulatory environment is upgrading, project developers and users of cryptocurrency payments skyrocket. Wallets, as portals for Web3, can integrate all crypto projects of payments, forming a new generation of Web3 payment ecosystem. All relevant offline and online operations can be carried out through the wallet, including shopping, ordering food, taking a cab, traveling and other P2P payments.

4.3 Non-self-custodial Wallets

Non-self-custodial wallets are those custodial wallets without mnemonics, which include two main types of wallets, MPC wallets and smart contract wallets. MPC (Multi-Party Computation) wallets are multi-sig wallets enhanced by authentication of performing multi-party computation on private keys off-chain. Smart contract wallets are based on smart contracts rather than EOA. Compared to traditional wallets that require users to keep their private keys (Figure 4), non-self-custodial wallets do not involve traditional private key generation and storage, effectively lowering the threshold for Web2 users to enter Web3.

For novice Web3 users, the login experience may be somewhat unfavorable, even difficult to get started. Traditional EOA wallets require a series of complex and tedious processes, such as wallet generation, private key management, and saving mnemonics before secured login. The next generation of non-self-custodial wallets without mnemonics is reducing the barrier of entry for Web2 users by simplifying the login process and complexity. In the foreseeable future, non-self-custodial wallets have the potential to be the next growth point by introducing Web2 users to enter Web3.

4.4 Multi-chain Wallets

Current competitive landscape of multi-chain has been in shape, and each L1 chain has created its own wallet for the sake of the ecological development, but it is still incompetent to meet current demand of multi-chain and cross-chain. Furthermore, the management of private keys on multi-chain will be problematic with chaos; only one identity is necessary to create a multi-chain wallet with the absence of other tools managing private keys, so that one identity is sufficient to manage assets on different chains. At the same time, users are able to cross chains and redeem assets on multiple chains with utilization of the wallet ecosystem.

As mentioned earlier, multi-chain wallets already covered most mobile and desktop wallets as well as hardware wallets. Plug-in wallets are currently slower in growth, mainly on EVM-compatible multi-chain wallets, Polkadot’s Polkadot.js cross-chain wallet and Cosmos’s multi-chain wallet. The competition for multi-chain wallets is expected to become more intense in the future as the demand for interoperability increases among multiple chains and multiple smart contracts.

Comments

All Comments

Recommended for you

  • SlowMist: Beware of watering hole attacks launched by malicious attackers using WordPress plugin vulnerabilities

    SlowMist Security has issued a warning that attackers have recently been exploiting vulnerabilities in WordPress plugins to inject malicious JS code into normal websites and launch watering hole attacks. These attacks involve popping up malicious windows when users visit the site, deceiving them into executing malicious code or performing Web3 wallet signatures, thereby stealing their assets. It is recommended that sites using WordPress plugins check for vulnerabilities, update plugins in a timely manner, and avoid being attacked. When visiting any website, users should carefully identify the downloaded programs and Web3 signature content to avoid downloading malicious programs or having their assets stolen due to malicious signatures.

  • Unverified Ember Sword NFT auction contract vulnerability has caused nearly $200,000 in losses

    Certik has discovered a vulnerability in the unverified Ember Sword NFT auction contract, which has earned 60 WETH (approximately $195,000) from 159 victims who approved the contract. Certik reminds users to revoke their approval of the relevant contract on Polygon.

  • zkSync ecological lending platform xBank Finance suspected of RUG

    xBank Finance, a zkSync ecosystem lending platform, was suspected of being a RUG, and the protocol's TVL was close to zero. The project's official Twitter account has been frozen.

  • Scammers use fake USDT balances to defraud cryptocurrency users

    SlowMist has partnered with Imtoken to uncover a new cryptocurrency scam that uses offline transactions and USDT. Scammers manipulate the Ethereum RPC to falsify the USDT balance in the victim's wallet. The scammer lures the victim to change their Ethereum RPC URL to a URL controlled by them, making it appear that the victim has deposited USDT funds, but in reality, the victim is left empty-handed when attempting to trade. In addition, the scam also deceives users through small transfers to gain trust, then manipulates account balances and contract information, posing serious risks to unsuspecting users and is related to a wider range of pig slaughter scam activities.

  • Cointime April 27th News Express

    1. ETH falls below $3,100

  • HKEX: Accepts BOS HashKey, Huaxia, Harvest Bitcoin and Ethereum ETFs as eligible securities for multiple counters in the central clearing system

    On April 27th, the Hong Kong Stock Exchange issued three notices, announcing the inclusion of Bo Shi HashKey Bitcoin ETF shares and Bo Shi HashKey Ethereum ETF shares, Huaxia Bitcoin ETF shares and Huaxia Ethereum ETF shares, and Jia Shi Bitcoin Spot ETF shares and Jia Shi Ethereum Spot ETF shares as Central Clearing System multi-counterparty eligible securities. It is reported that:

  • Russia’s Central Bank and Rosfinmonitoring unveil pilot of fiat-to-crypto tracking system

    According to reports, since 2023, Russia has been trying to track cryptocurrency transactions and their sources. The Russian Central Bank and the Federal Financial Monitoring Service (Rosfinmonitoring) revealed that there is currently a system that allows private banks to track the connection between fiat-based transactions and cryptocurrency business.

  • PolkaWorld: Coretime trading on Kusama has started

    On April 27th, PolkaWorld announced that Coretime trading on Kusama has begun, marking the end of the era of parallel chains. With the approval and implementation of Kusama proposal 373, the proposal will upgrade the Kusama relay chain runtime to v1.2.0 and bring Coretime functionality. Shortly thereafter, the Kusama community approved Kusmaa proposal 375 last Friday, allowing Coretime chain to begin selling Coretime. Currently, Kusama is in the Renew Period and is selling batches of Coretime.

  • Over $155 million worth of MEME will be unlocked on May 3, accounting for 31.96% of the circulating supply

    According to Token Unlocks data, 5.31 billion MEME tokens, worth over $155 million, will be unlocked on May 3, 2024, accounting for 31.96% of the circulating supply. These tokens will be unlocked and distributed to airdrops, advisors, and investors.

  • Wu Jiezhuang, a member of the National Committee of the Chinese People's Political Consultative Conference, suggested that Hong Kong refer to IPO to provide innovative financing models for Web3

    Wu Jiezhuang, a member of the National Committee of the Chinese People's Political Consultative Conference and a member of the Hong Kong Legislative Council, wrote an article in the Hong Kong Wen Wei Po titled "Leading the Digital Economy by Adapting to the Web3 Trend". The article pointed out that developing Web3+ has both advantages and new challenges. The Hong Kong government has taken an important step in the direction of developing Web3 and the digital economy by formulating a short- to medium-term strategic development blueprint, ensuring that policies and resources are in place, and promoting the construction of Web3+ application scenarios. Focusing on Web3, establishing an international innovation financing platform can not only help Hong Kong leverage its traditional financial advantages, but also help it become a global digital technology center. It is suggested to refer to the mature mode of existing enterprises' IPOs in Hong Kong, provide an innovative financing model for Web3, and create a market trend and service competitive advantage to promote the development of the industry and attract upstream and downstream of the industry chain at home and abroad to gather in Hong Kong.